Update 8Apr24
diff --git a/CHANGES.md b/CHANGES.md index f7d60ea..b3de079 100644 --- a/CHANGES.md +++ b/CHANGES.md
@@ -1,101 +1,708 @@ # **Linux Kernel CVE Changes** -## Last Update - 25Feb24 00:13 +## Last Update - 09Apr24 14:45 ### **New CVEs Added:** -[CVE-2023-52429](cves/CVE-2023-52429) -[CVE-2023-52433](cves/CVE-2023-52433) +[CVE-2019-25160](cves/CVE-2019-25160) +[CVE-2019-25162](cves/CVE-2019-25162) +[CVE-2020-36775](cves/CVE-2020-36775) +[CVE-2020-36776](cves/CVE-2020-36776) +[CVE-2020-36777](cves/CVE-2020-36777) +[CVE-2020-36778](cves/CVE-2020-36778) +[CVE-2020-36779](cves/CVE-2020-36779) +[CVE-2020-36780](cves/CVE-2020-36780) +[CVE-2020-36781](cves/CVE-2020-36781) +[CVE-2020-36782](cves/CVE-2020-36782) +[CVE-2020-36783](cves/CVE-2020-36783) +[CVE-2020-36784](cves/CVE-2020-36784) +[CVE-2020-36785](cves/CVE-2020-36785) +[CVE-2020-36786](cves/CVE-2020-36786) +[CVE-2020-36787](cves/CVE-2020-36787) +[CVE-2021-46904](cves/CVE-2021-46904) +[CVE-2021-46905](cves/CVE-2021-46905) +[CVE-2021-46906](cves/CVE-2021-46906) +[CVE-2021-46908](cves/CVE-2021-46908) +[CVE-2021-46909](cves/CVE-2021-46909) +[CVE-2021-46910](cves/CVE-2021-46910) +[CVE-2021-46911](cves/CVE-2021-46911) +[CVE-2021-46912](cves/CVE-2021-46912) +[CVE-2021-46913](cves/CVE-2021-46913) +[CVE-2021-46914](cves/CVE-2021-46914) +[CVE-2021-46915](cves/CVE-2021-46915) +[CVE-2021-46916](cves/CVE-2021-46916) +[CVE-2021-46917](cves/CVE-2021-46917) +[CVE-2021-46918](cves/CVE-2021-46918) +[CVE-2021-46919](cves/CVE-2021-46919) +[CVE-2021-46920](cves/CVE-2021-46920) +[CVE-2021-46921](cves/CVE-2021-46921) +[CVE-2021-46922](cves/CVE-2021-46922) +[CVE-2021-46923](cves/CVE-2021-46923) +[CVE-2021-46924](cves/CVE-2021-46924) +[CVE-2021-46925](cves/CVE-2021-46925) +[CVE-2021-46926](cves/CVE-2021-46926) +[CVE-2021-46927](cves/CVE-2021-46927) +[CVE-2021-46928](cves/CVE-2021-46928) +[CVE-2021-46929](cves/CVE-2021-46929) +[CVE-2021-46930](cves/CVE-2021-46930) +[CVE-2021-46931](cves/CVE-2021-46931) +[CVE-2021-46932](cves/CVE-2021-46932) +[CVE-2021-46933](cves/CVE-2021-46933) +[CVE-2021-46934](cves/CVE-2021-46934) +[CVE-2021-46935](cves/CVE-2021-46935) +[CVE-2021-46936](cves/CVE-2021-46936) +[CVE-2021-46937](cves/CVE-2021-46937) +[CVE-2021-46938](cves/CVE-2021-46938) +[CVE-2021-46939](cves/CVE-2021-46939) +[CVE-2021-46940](cves/CVE-2021-46940) +[CVE-2021-46941](cves/CVE-2021-46941) +[CVE-2021-46942](cves/CVE-2021-46942) +[CVE-2021-46943](cves/CVE-2021-46943) +[CVE-2021-46944](cves/CVE-2021-46944) +[CVE-2021-46945](cves/CVE-2021-46945) +[CVE-2021-46947](cves/CVE-2021-46947) +[CVE-2021-46948](cves/CVE-2021-46948) +[CVE-2021-46949](cves/CVE-2021-46949) +[CVE-2021-46950](cves/CVE-2021-46950) +[CVE-2021-46951](cves/CVE-2021-46951) +[CVE-2021-46952](cves/CVE-2021-46952) +[CVE-2021-46953](cves/CVE-2021-46953) +[CVE-2021-46954](cves/CVE-2021-46954) +[CVE-2021-46955](cves/CVE-2021-46955) +[CVE-2021-46956](cves/CVE-2021-46956) +[CVE-2021-46957](cves/CVE-2021-46957) +[CVE-2021-46958](cves/CVE-2021-46958) +[CVE-2021-46959](cves/CVE-2021-46959) +[CVE-2021-46960](cves/CVE-2021-46960) +[CVE-2021-46961](cves/CVE-2021-46961) +[CVE-2021-46962](cves/CVE-2021-46962) +[CVE-2021-46963](cves/CVE-2021-46963) +[CVE-2021-46964](cves/CVE-2021-46964) +[CVE-2021-46965](cves/CVE-2021-46965) +[CVE-2021-46966](cves/CVE-2021-46966) +[CVE-2021-46967](cves/CVE-2021-46967) +[CVE-2021-46968](cves/CVE-2021-46968) +[CVE-2021-46969](cves/CVE-2021-46969) +[CVE-2021-46970](cves/CVE-2021-46970) +[CVE-2021-46971](cves/CVE-2021-46971) +[CVE-2021-46972](cves/CVE-2021-46972) +[CVE-2021-46973](cves/CVE-2021-46973) +[CVE-2021-46974](cves/CVE-2021-46974) +[CVE-2021-46976](cves/CVE-2021-46976) +[CVE-2021-46977](cves/CVE-2021-46977) +[CVE-2021-46978](cves/CVE-2021-46978) +[CVE-2021-46979](cves/CVE-2021-46979) +[CVE-2021-46980](cves/CVE-2021-46980) +[CVE-2021-46981](cves/CVE-2021-46981) +[CVE-2021-46982](cves/CVE-2021-46982) +[CVE-2021-46983](cves/CVE-2021-46983) +[CVE-2021-46984](cves/CVE-2021-46984) +[CVE-2021-46985](cves/CVE-2021-46985) +[CVE-2021-46986](cves/CVE-2021-46986) +[CVE-2021-46987](cves/CVE-2021-46987) +[CVE-2021-46988](cves/CVE-2021-46988) +[CVE-2021-46989](cves/CVE-2021-46989) +[CVE-2021-46990](cves/CVE-2021-46990) +[CVE-2021-46991](cves/CVE-2021-46991) +[CVE-2021-46992](cves/CVE-2021-46992) +[CVE-2021-46993](cves/CVE-2021-46993) +[CVE-2021-46994](cves/CVE-2021-46994) +[CVE-2021-46995](cves/CVE-2021-46995) +[CVE-2021-46996](cves/CVE-2021-46996) +[CVE-2021-46997](cves/CVE-2021-46997) +[CVE-2021-46998](cves/CVE-2021-46998) +[CVE-2021-46999](cves/CVE-2021-46999) +[CVE-2021-47000](cves/CVE-2021-47000) +[CVE-2021-47001](cves/CVE-2021-47001) +[CVE-2021-47002](cves/CVE-2021-47002) +[CVE-2021-47003](cves/CVE-2021-47003) +[CVE-2021-47004](cves/CVE-2021-47004) +[CVE-2021-47005](cves/CVE-2021-47005) +[CVE-2021-47006](cves/CVE-2021-47006) +[CVE-2021-47007](cves/CVE-2021-47007) +[CVE-2021-47008](cves/CVE-2021-47008) +[CVE-2021-47009](cves/CVE-2021-47009) +[CVE-2021-47010](cves/CVE-2021-47010) +[CVE-2021-47011](cves/CVE-2021-47011) +[CVE-2021-47012](cves/CVE-2021-47012) +[CVE-2021-47013](cves/CVE-2021-47013) +[CVE-2021-47014](cves/CVE-2021-47014) +[CVE-2021-47015](cves/CVE-2021-47015) +[CVE-2021-47016](cves/CVE-2021-47016) +[CVE-2021-47017](cves/CVE-2021-47017) +[CVE-2021-47018](cves/CVE-2021-47018) +[CVE-2021-47019](cves/CVE-2021-47019) +[CVE-2021-47020](cves/CVE-2021-47020) +[CVE-2021-47021](cves/CVE-2021-47021) +[CVE-2021-47022](cves/CVE-2021-47022) +[CVE-2021-47023](cves/CVE-2021-47023) +[CVE-2021-47024](cves/CVE-2021-47024) +[CVE-2021-47025](cves/CVE-2021-47025) +[CVE-2021-47026](cves/CVE-2021-47026) +[CVE-2021-47027](cves/CVE-2021-47027) +[CVE-2021-47028](cves/CVE-2021-47028) +[CVE-2021-47029](cves/CVE-2021-47029) +[CVE-2021-47030](cves/CVE-2021-47030) +[CVE-2021-47031](cves/CVE-2021-47031) +[CVE-2021-47032](cves/CVE-2021-47032) +[CVE-2021-47033](cves/CVE-2021-47033) +[CVE-2021-47034](cves/CVE-2021-47034) +[CVE-2021-47035](cves/CVE-2021-47035) +[CVE-2021-47036](cves/CVE-2021-47036) +[CVE-2021-47037](cves/CVE-2021-47037) +[CVE-2021-47038](cves/CVE-2021-47038) +[CVE-2021-47039](cves/CVE-2021-47039) +[CVE-2021-47040](cves/CVE-2021-47040) +[CVE-2021-47041](cves/CVE-2021-47041) +[CVE-2021-47042](cves/CVE-2021-47042) +[CVE-2021-47043](cves/CVE-2021-47043) +[CVE-2021-47044](cves/CVE-2021-47044) +[CVE-2021-47045](cves/CVE-2021-47045) +[CVE-2021-47046](cves/CVE-2021-47046) +[CVE-2021-47047](cves/CVE-2021-47047) +[CVE-2021-47048](cves/CVE-2021-47048) +[CVE-2021-47049](cves/CVE-2021-47049) +[CVE-2021-47050](cves/CVE-2021-47050) +[CVE-2021-47051](cves/CVE-2021-47051) +[CVE-2021-47052](cves/CVE-2021-47052) +[CVE-2021-47053](cves/CVE-2021-47053) +[CVE-2021-47054](cves/CVE-2021-47054) +[CVE-2021-47055](cves/CVE-2021-47055) +[CVE-2021-47056](cves/CVE-2021-47056) +[CVE-2021-47057](cves/CVE-2021-47057) +[CVE-2021-47058](cves/CVE-2021-47058) +[CVE-2021-47059](cves/CVE-2021-47059) +[CVE-2021-47060](cves/CVE-2021-47060) +[CVE-2021-47061](cves/CVE-2021-47061) +[CVE-2021-47062](cves/CVE-2021-47062) +[CVE-2021-47063](cves/CVE-2021-47063) +[CVE-2021-47064](cves/CVE-2021-47064) +[CVE-2021-47065](cves/CVE-2021-47065) +[CVE-2021-47066](cves/CVE-2021-47066) +[CVE-2021-47067](cves/CVE-2021-47067) +[CVE-2021-47068](cves/CVE-2021-47068) +[CVE-2021-47069](cves/CVE-2021-47069) +[CVE-2021-47070](cves/CVE-2021-47070) +[CVE-2021-47071](cves/CVE-2021-47071) +[CVE-2021-47072](cves/CVE-2021-47072) +[CVE-2021-47073](cves/CVE-2021-47073) +[CVE-2021-47074](cves/CVE-2021-47074) +[CVE-2021-47075](cves/CVE-2021-47075) +[CVE-2021-47076](cves/CVE-2021-47076) +[CVE-2021-47077](cves/CVE-2021-47077) +[CVE-2021-47078](cves/CVE-2021-47078) +[CVE-2021-47079](cves/CVE-2021-47079) +[CVE-2021-47080](cves/CVE-2021-47080) +[CVE-2021-47081](cves/CVE-2021-47081) +[CVE-2021-47082](cves/CVE-2021-47082) +[CVE-2021-47083](cves/CVE-2021-47083) +[CVE-2021-47086](cves/CVE-2021-47086) +[CVE-2021-47087](cves/CVE-2021-47087) +[CVE-2021-47088](cves/CVE-2021-47088) +[CVE-2021-47089](cves/CVE-2021-47089) +[CVE-2021-47090](cves/CVE-2021-47090) +[CVE-2021-47091](cves/CVE-2021-47091) +[CVE-2021-47092](cves/CVE-2021-47092) +[CVE-2021-47093](cves/CVE-2021-47093) +[CVE-2021-47094](cves/CVE-2021-47094) +[CVE-2021-47095](cves/CVE-2021-47095) +[CVE-2021-47096](cves/CVE-2021-47096) +[CVE-2021-47097](cves/CVE-2021-47097) +[CVE-2021-47098](cves/CVE-2021-47098) +[CVE-2021-47099](cves/CVE-2021-47099) +[CVE-2021-47100](cves/CVE-2021-47100) +[CVE-2021-47101](cves/CVE-2021-47101) +[CVE-2021-47102](cves/CVE-2021-47102) +[CVE-2021-47103](cves/CVE-2021-47103) +[CVE-2021-47104](cves/CVE-2021-47104) +[CVE-2021-47105](cves/CVE-2021-47105) +[CVE-2021-47106](cves/CVE-2021-47106) +[CVE-2021-47107](cves/CVE-2021-47107) +[CVE-2021-47108](cves/CVE-2021-47108) +[CVE-2021-47109](cves/CVE-2021-47109) +[CVE-2021-47110](cves/CVE-2021-47110) +[CVE-2021-47111](cves/CVE-2021-47111) +[CVE-2021-47112](cves/CVE-2021-47112) +[CVE-2021-47113](cves/CVE-2021-47113) +[CVE-2021-47114](cves/CVE-2021-47114) +[CVE-2021-47116](cves/CVE-2021-47116) +[CVE-2021-47117](cves/CVE-2021-47117) +[CVE-2021-47118](cves/CVE-2021-47118) +[CVE-2021-47119](cves/CVE-2021-47119) +[CVE-2021-47120](cves/CVE-2021-47120) +[CVE-2021-47121](cves/CVE-2021-47121) +[CVE-2021-47122](cves/CVE-2021-47122) +[CVE-2021-47123](cves/CVE-2021-47123) +[CVE-2021-47124](cves/CVE-2021-47124) +[CVE-2021-47125](cves/CVE-2021-47125) +[CVE-2021-47126](cves/CVE-2021-47126) +[CVE-2021-47127](cves/CVE-2021-47127) +[CVE-2021-47128](cves/CVE-2021-47128) +[CVE-2021-47129](cves/CVE-2021-47129) +[CVE-2021-47130](cves/CVE-2021-47130) +[CVE-2021-47131](cves/CVE-2021-47131) +[CVE-2021-47132](cves/CVE-2021-47132) +[CVE-2021-47133](cves/CVE-2021-47133) +[CVE-2021-47134](cves/CVE-2021-47134) +[CVE-2021-47135](cves/CVE-2021-47135) +[CVE-2021-47136](cves/CVE-2021-47136) +[CVE-2021-47137](cves/CVE-2021-47137) +[CVE-2021-47138](cves/CVE-2021-47138) +[CVE-2021-47139](cves/CVE-2021-47139) +[CVE-2021-47140](cves/CVE-2021-47140) +[CVE-2021-47141](cves/CVE-2021-47141) +[CVE-2021-47142](cves/CVE-2021-47142) +[CVE-2021-47143](cves/CVE-2021-47143) +[CVE-2021-47144](cves/CVE-2021-47144) +[CVE-2021-47145](cves/CVE-2021-47145) +[CVE-2021-47146](cves/CVE-2021-47146) +[CVE-2021-47147](cves/CVE-2021-47147) +[CVE-2021-47148](cves/CVE-2021-47148) +[CVE-2021-47149](cves/CVE-2021-47149) +[CVE-2021-47150](cves/CVE-2021-47150) +[CVE-2021-47151](cves/CVE-2021-47151) +[CVE-2021-47152](cves/CVE-2021-47152) +[CVE-2021-47153](cves/CVE-2021-47153) +[CVE-2021-47158](cves/CVE-2021-47158) +[CVE-2021-47159](cves/CVE-2021-47159) +[CVE-2021-47160](cves/CVE-2021-47160) +[CVE-2021-47161](cves/CVE-2021-47161) +[CVE-2021-47162](cves/CVE-2021-47162) +[CVE-2021-47163](cves/CVE-2021-47163) +[CVE-2021-47164](cves/CVE-2021-47164) +[CVE-2021-47165](cves/CVE-2021-47165) +[CVE-2021-47166](cves/CVE-2021-47166) +[CVE-2021-47167](cves/CVE-2021-47167) +[CVE-2021-47168](cves/CVE-2021-47168) +[CVE-2021-47169](cves/CVE-2021-47169) +[CVE-2021-47170](cves/CVE-2021-47170) +[CVE-2021-47171](cves/CVE-2021-47171) +[CVE-2021-47172](cves/CVE-2021-47172) +[CVE-2021-47173](cves/CVE-2021-47173) +[CVE-2021-47174](cves/CVE-2021-47174) +[CVE-2021-47175](cves/CVE-2021-47175) +[CVE-2021-47176](cves/CVE-2021-47176) +[CVE-2021-47177](cves/CVE-2021-47177) +[CVE-2021-47178](cves/CVE-2021-47178) +[CVE-2021-47179](cves/CVE-2021-47179) +[CVE-2021-47180](cves/CVE-2021-47180) +[CVE-2022-48626](cves/CVE-2022-48626) +[CVE-2022-48627](cves/CVE-2022-48627) +[CVE-2022-48628](cves/CVE-2022-48628) +[CVE-2022-48629](cves/CVE-2022-48629) +[CVE-2022-48630](cves/CVE-2022-48630) +[CVE-2023-28746](cves/CVE-2023-28746) +[CVE-2023-52465](cves/CVE-2023-52465) +[CVE-2023-52467](cves/CVE-2023-52467) +[CVE-2023-52468](cves/CVE-2023-52468) +[CVE-2023-52469](cves/CVE-2023-52469) +[CVE-2023-52470](cves/CVE-2023-52470) +[CVE-2023-52471](cves/CVE-2023-52471) +[CVE-2023-52472](cves/CVE-2023-52472) +[CVE-2023-52473](cves/CVE-2023-52473) +[CVE-2023-52474](cves/CVE-2023-52474) +[CVE-2023-52475](cves/CVE-2023-52475) +[CVE-2023-52476](cves/CVE-2023-52476) +[CVE-2023-52477](cves/CVE-2023-52477) +[CVE-2023-52478](cves/CVE-2023-52478) +[CVE-2023-52479](cves/CVE-2023-52479) +[CVE-2023-52480](cves/CVE-2023-52480) +[CVE-2023-52481](cves/CVE-2023-52481) +[CVE-2023-52482](cves/CVE-2023-52482) +[CVE-2023-52483](cves/CVE-2023-52483) +[CVE-2023-52484](cves/CVE-2023-52484) +[CVE-2023-52485](cves/CVE-2023-52485) +[CVE-2023-52486](cves/CVE-2023-52486) +[CVE-2023-52487](cves/CVE-2023-52487) +[CVE-2023-52488](cves/CVE-2023-52488) +[CVE-2023-52489](cves/CVE-2023-52489) +[CVE-2023-52490](cves/CVE-2023-52490) +[CVE-2023-52491](cves/CVE-2023-52491) +[CVE-2023-52492](cves/CVE-2023-52492) +[CVE-2023-52493](cves/CVE-2023-52493) +[CVE-2023-52494](cves/CVE-2023-52494) +[CVE-2023-52495](cves/CVE-2023-52495) +[CVE-2023-52497](cves/CVE-2023-52497) +[CVE-2023-52498](cves/CVE-2023-52498) +[CVE-2023-52499](cves/CVE-2023-52499) +[CVE-2023-52500](cves/CVE-2023-52500) +[CVE-2023-52501](cves/CVE-2023-52501) +[CVE-2023-52502](cves/CVE-2023-52502) +[CVE-2023-52503](cves/CVE-2023-52503) +[CVE-2023-52504](cves/CVE-2023-52504) +[CVE-2023-52505](cves/CVE-2023-52505) +[CVE-2023-52506](cves/CVE-2023-52506) +[CVE-2023-52507](cves/CVE-2023-52507) +[CVE-2023-52508](cves/CVE-2023-52508) +[CVE-2023-52509](cves/CVE-2023-52509) +[CVE-2023-52510](cves/CVE-2023-52510) +[CVE-2023-52511](cves/CVE-2023-52511) +[CVE-2023-52512](cves/CVE-2023-52512) +[CVE-2023-52513](cves/CVE-2023-52513) +[CVE-2023-52515](cves/CVE-2023-52515) +[CVE-2023-52516](cves/CVE-2023-52516) +[CVE-2023-52517](cves/CVE-2023-52517) +[CVE-2023-52518](cves/CVE-2023-52518) +[CVE-2023-52519](cves/CVE-2023-52519) +[CVE-2023-52520](cves/CVE-2023-52520) +[CVE-2023-52522](cves/CVE-2023-52522) +[CVE-2023-52523](cves/CVE-2023-52523) +[CVE-2023-52524](cves/CVE-2023-52524) +[CVE-2023-52525](cves/CVE-2023-52525) +[CVE-2023-52526](cves/CVE-2023-52526) +[CVE-2023-52527](cves/CVE-2023-52527) +[CVE-2023-52528](cves/CVE-2023-52528) +[CVE-2023-52529](cves/CVE-2023-52529) +[CVE-2023-52530](cves/CVE-2023-52530) +[CVE-2023-52531](cves/CVE-2023-52531) +[CVE-2023-52532](cves/CVE-2023-52532) +[CVE-2023-52559](cves/CVE-2023-52559) +[CVE-2023-52560](cves/CVE-2023-52560) +[CVE-2023-52561](cves/CVE-2023-52561) +[CVE-2023-52562](cves/CVE-2023-52562) +[CVE-2023-52563](cves/CVE-2023-52563) +[CVE-2023-52564](cves/CVE-2023-52564) +[CVE-2023-52565](cves/CVE-2023-52565) +[CVE-2023-52566](cves/CVE-2023-52566) +[CVE-2023-52567](cves/CVE-2023-52567) +[CVE-2023-52568](cves/CVE-2023-52568) +[CVE-2023-52569](cves/CVE-2023-52569) +[CVE-2023-52570](cves/CVE-2023-52570) +[CVE-2023-52571](cves/CVE-2023-52571) +[CVE-2023-52572](cves/CVE-2023-52572) +[CVE-2023-52573](cves/CVE-2023-52573) +[CVE-2023-52574](cves/CVE-2023-52574) +[CVE-2023-52575](cves/CVE-2023-52575) +[CVE-2023-52576](cves/CVE-2023-52576) +[CVE-2023-52577](cves/CVE-2023-52577) +[CVE-2023-52578](cves/CVE-2023-52578) +[CVE-2023-52580](cves/CVE-2023-52580) +[CVE-2023-52581](cves/CVE-2023-52581) +[CVE-2023-52582](cves/CVE-2023-52582) +[CVE-2023-52583](cves/CVE-2023-52583) +[CVE-2023-52584](cves/CVE-2023-52584) +[CVE-2023-52585](cves/CVE-2023-52585) +[CVE-2023-52586](cves/CVE-2023-52586) +[CVE-2023-52587](cves/CVE-2023-52587) +[CVE-2023-52588](cves/CVE-2023-52588) +[CVE-2023-52589](cves/CVE-2023-52589) +[CVE-2023-52590](cves/CVE-2023-52590) +[CVE-2023-52591](cves/CVE-2023-52591) +[CVE-2023-52593](cves/CVE-2023-52593) +[CVE-2023-52594](cves/CVE-2023-52594) +[CVE-2023-52595](cves/CVE-2023-52595) +[CVE-2023-52596](cves/CVE-2023-52596) +[CVE-2023-52597](cves/CVE-2023-52597) +[CVE-2023-52598](cves/CVE-2023-52598) +[CVE-2023-52599](cves/CVE-2023-52599) +[CVE-2023-52600](cves/CVE-2023-52600) +[CVE-2023-52601](cves/CVE-2023-52601) +[CVE-2023-52602](cves/CVE-2023-52602) +[CVE-2023-52603](cves/CVE-2023-52603) +[CVE-2023-52604](cves/CVE-2023-52604) +[CVE-2023-52606](cves/CVE-2023-52606) +[CVE-2023-52607](cves/CVE-2023-52607) +[CVE-2023-52608](cves/CVE-2023-52608) +[CVE-2023-52609](cves/CVE-2023-52609) +[CVE-2023-52610](cves/CVE-2023-52610) +[CVE-2023-52611](cves/CVE-2023-52611) +[CVE-2023-52612](cves/CVE-2023-52612) +[CVE-2023-52613](cves/CVE-2023-52613) +[CVE-2023-52614](cves/CVE-2023-52614) +[CVE-2023-52615](cves/CVE-2023-52615) +[CVE-2023-52616](cves/CVE-2023-52616) +[CVE-2023-52617](cves/CVE-2023-52617) +[CVE-2023-52618](cves/CVE-2023-52618) +[CVE-2023-52619](cves/CVE-2023-52619) +[CVE-2023-52620](cves/CVE-2023-52620) +[CVE-2023-52621](cves/CVE-2023-52621) +[CVE-2023-52622](cves/CVE-2023-52622) +[CVE-2023-52623](cves/CVE-2023-52623) +[CVE-2023-52624](cves/CVE-2023-52624) +[CVE-2023-52625](cves/CVE-2023-52625) +[CVE-2023-52626](cves/CVE-2023-52626) +[CVE-2023-52627](cves/CVE-2023-52627) +[CVE-2023-52628](cves/CVE-2023-52628) +[CVE-2023-52629](cves/CVE-2023-52629) +[CVE-2023-52630](cves/CVE-2023-52630) +[CVE-2023-52631](cves/CVE-2023-52631) +[CVE-2023-52632](cves/CVE-2023-52632) +[CVE-2023-52633](cves/CVE-2023-52633) +[CVE-2023-52634](cves/CVE-2023-52634) +[CVE-2023-52635](cves/CVE-2023-52635) +[CVE-2023-52636](cves/CVE-2023-52636) +[CVE-2023-52637](cves/CVE-2023-52637) +[CVE-2023-52638](cves/CVE-2023-52638) +[CVE-2023-52639](cves/CVE-2023-52639) +[CVE-2023-52640](cves/CVE-2023-52640) +[CVE-2023-52641](cves/CVE-2023-52641) +[CVE-2024-2193](cves/CVE-2024-2193) +[CVE-2024-26600](cves/CVE-2024-26600) +[CVE-2024-26601](cves/CVE-2024-26601) +[CVE-2024-26602](cves/CVE-2024-26602) +[CVE-2024-26603](cves/CVE-2024-26603) +[CVE-2024-26604](cves/CVE-2024-26604) +[CVE-2024-26605](cves/CVE-2024-26605) +[CVE-2024-26606](cves/CVE-2024-26606) +[CVE-2024-26607](cves/CVE-2024-26607) +[CVE-2024-26608](cves/CVE-2024-26608) +[CVE-2024-26610](cves/CVE-2024-26610) +[CVE-2024-26611](cves/CVE-2024-26611) +[CVE-2024-26612](cves/CVE-2024-26612) +[CVE-2024-26614](cves/CVE-2024-26614) +[CVE-2024-26615](cves/CVE-2024-26615) +[CVE-2024-26616](cves/CVE-2024-26616) +[CVE-2024-26617](cves/CVE-2024-26617) +[CVE-2024-26618](cves/CVE-2024-26618) +[CVE-2024-26619](cves/CVE-2024-26619) +[CVE-2024-26620](cves/CVE-2024-26620) +[CVE-2024-26621](cves/CVE-2024-26621) +[CVE-2024-26622](cves/CVE-2024-26622) +[CVE-2024-26623](cves/CVE-2024-26623) +[CVE-2024-26625](cves/CVE-2024-26625) +[CVE-2024-26626](cves/CVE-2024-26626) +[CVE-2024-26627](cves/CVE-2024-26627) +[CVE-2024-26629](cves/CVE-2024-26629) +[CVE-2024-26630](cves/CVE-2024-26630) +[CVE-2024-26631](cves/CVE-2024-26631) +[CVE-2024-26632](cves/CVE-2024-26632) +[CVE-2024-26633](cves/CVE-2024-26633) +[CVE-2024-26634](cves/CVE-2024-26634) +[CVE-2024-26635](cves/CVE-2024-26635) +[CVE-2024-26636](cves/CVE-2024-26636) +[CVE-2024-26637](cves/CVE-2024-26637) +[CVE-2024-26638](cves/CVE-2024-26638) +[CVE-2024-26639](cves/CVE-2024-26639) +[CVE-2024-26640](cves/CVE-2024-26640) +[CVE-2024-26641](cves/CVE-2024-26641) +[CVE-2024-26642](cves/CVE-2024-26642) +[CVE-2024-26643](cves/CVE-2024-26643) +[CVE-2024-26644](cves/CVE-2024-26644) +[CVE-2024-26645](cves/CVE-2024-26645) +[CVE-2024-26646](cves/CVE-2024-26646) +[CVE-2024-26647](cves/CVE-2024-26647) +[CVE-2024-26648](cves/CVE-2024-26648) +[CVE-2024-26649](cves/CVE-2024-26649) +[CVE-2024-26650](cves/CVE-2024-26650) +[CVE-2024-26651](cves/CVE-2024-26651) +[CVE-2024-26652](cves/CVE-2024-26652) +[CVE-2024-26653](cves/CVE-2024-26653) +[CVE-2024-26654](cves/CVE-2024-26654) +[CVE-2024-26655](cves/CVE-2024-26655) +[CVE-2024-26656](cves/CVE-2024-26656) +[CVE-2024-26657](cves/CVE-2024-26657) +[CVE-2024-26658](cves/CVE-2024-26658) +[CVE-2024-26659](cves/CVE-2024-26659) +[CVE-2024-26660](cves/CVE-2024-26660) +[CVE-2024-26661](cves/CVE-2024-26661) +[CVE-2024-26662](cves/CVE-2024-26662) +[CVE-2024-26663](cves/CVE-2024-26663) +[CVE-2024-26664](cves/CVE-2024-26664) +[CVE-2024-26665](cves/CVE-2024-26665) +[CVE-2024-26666](cves/CVE-2024-26666) +[CVE-2024-26667](cves/CVE-2024-26667) +[CVE-2024-26668](cves/CVE-2024-26668) +[CVE-2024-26669](cves/CVE-2024-26669) +[CVE-2024-26670](cves/CVE-2024-26670) +[CVE-2024-26671](cves/CVE-2024-26671) +[CVE-2024-26672](cves/CVE-2024-26672) +[CVE-2024-26673](cves/CVE-2024-26673) +[CVE-2024-26674](cves/CVE-2024-26674) +[CVE-2024-26675](cves/CVE-2024-26675) +[CVE-2024-26676](cves/CVE-2024-26676) +[CVE-2024-26677](cves/CVE-2024-26677) +[CVE-2024-26678](cves/CVE-2024-26678) +[CVE-2024-26679](cves/CVE-2024-26679) +[CVE-2024-26680](cves/CVE-2024-26680) +[CVE-2024-26681](cves/CVE-2024-26681) +[CVE-2024-26682](cves/CVE-2024-26682) +[CVE-2024-26683](cves/CVE-2024-26683) +[CVE-2024-26684](cves/CVE-2024-26684) +[CVE-2024-26685](cves/CVE-2024-26685) +[CVE-2024-26686](cves/CVE-2024-26686) +[CVE-2024-26687](cves/CVE-2024-26687) +[CVE-2024-26688](cves/CVE-2024-26688) +[CVE-2024-26689](cves/CVE-2024-26689) +[CVE-2024-26690](cves/CVE-2024-26690) +[CVE-2024-26691](cves/CVE-2024-26691) +[CVE-2024-26692](cves/CVE-2024-26692) +[CVE-2024-26693](cves/CVE-2024-26693) +[CVE-2024-26694](cves/CVE-2024-26694) +[CVE-2024-26695](cves/CVE-2024-26695) +[CVE-2024-26696](cves/CVE-2024-26696) +[CVE-2024-26697](cves/CVE-2024-26697) +[CVE-2024-26698](cves/CVE-2024-26698) +[CVE-2024-26699](cves/CVE-2024-26699) +[CVE-2024-26700](cves/CVE-2024-26700) +[CVE-2024-26702](cves/CVE-2024-26702) +[CVE-2024-26703](cves/CVE-2024-26703) +[CVE-2024-26704](cves/CVE-2024-26704) +[CVE-2024-26705](cves/CVE-2024-26705) +[CVE-2024-26706](cves/CVE-2024-26706) +[CVE-2024-26707](cves/CVE-2024-26707) +[CVE-2024-26708](cves/CVE-2024-26708) +[CVE-2024-26709](cves/CVE-2024-26709) +[CVE-2024-26710](cves/CVE-2024-26710) +[CVE-2024-26711](cves/CVE-2024-26711) +[CVE-2024-26712](cves/CVE-2024-26712) +[CVE-2024-26713](cves/CVE-2024-26713) +[CVE-2024-26714](cves/CVE-2024-26714) +[CVE-2024-26715](cves/CVE-2024-26715) +[CVE-2024-26716](cves/CVE-2024-26716) +[CVE-2024-26717](cves/CVE-2024-26717) +[CVE-2024-26718](cves/CVE-2024-26718) +[CVE-2024-26719](cves/CVE-2024-26719) +[CVE-2024-26720](cves/CVE-2024-26720) +[CVE-2024-26721](cves/CVE-2024-26721) +[CVE-2024-26722](cves/CVE-2024-26722) +[CVE-2024-26723](cves/CVE-2024-26723) +[CVE-2024-26724](cves/CVE-2024-26724) +[CVE-2024-26725](cves/CVE-2024-26725) +[CVE-2024-26726](cves/CVE-2024-26726) +[CVE-2024-26727](cves/CVE-2024-26727) +[CVE-2024-26728](cves/CVE-2024-26728) +[CVE-2024-26729](cves/CVE-2024-26729) +[CVE-2024-26730](cves/CVE-2024-26730) +[CVE-2024-26731](cves/CVE-2024-26731) +[CVE-2024-26732](cves/CVE-2024-26732) +[CVE-2024-26733](cves/CVE-2024-26733) +[CVE-2024-26734](cves/CVE-2024-26734) +[CVE-2024-26735](cves/CVE-2024-26735) +[CVE-2024-26736](cves/CVE-2024-26736) +[CVE-2024-26737](cves/CVE-2024-26737) +[CVE-2024-26738](cves/CVE-2024-26738) +[CVE-2024-26739](cves/CVE-2024-26739) +[CVE-2024-26740](cves/CVE-2024-26740) +[CVE-2024-26741](cves/CVE-2024-26741) +[CVE-2024-26742](cves/CVE-2024-26742) +[CVE-2024-26743](cves/CVE-2024-26743) +[CVE-2024-26744](cves/CVE-2024-26744) +[CVE-2024-26745](cves/CVE-2024-26745) +[CVE-2024-26746](cves/CVE-2024-26746) +[CVE-2024-26747](cves/CVE-2024-26747) +[CVE-2024-26748](cves/CVE-2024-26748) +[CVE-2024-26749](cves/CVE-2024-26749) +[CVE-2024-26750](cves/CVE-2024-26750) +[CVE-2024-26751](cves/CVE-2024-26751) +[CVE-2024-26752](cves/CVE-2024-26752) +[CVE-2024-26753](cves/CVE-2024-26753) +[CVE-2024-26754](cves/CVE-2024-26754) +[CVE-2024-26755](cves/CVE-2024-26755) +[CVE-2024-26756](cves/CVE-2024-26756) +[CVE-2024-26757](cves/CVE-2024-26757) +[CVE-2024-26758](cves/CVE-2024-26758) +[CVE-2024-26759](cves/CVE-2024-26759) +[CVE-2024-26760](cves/CVE-2024-26760) +[CVE-2024-26761](cves/CVE-2024-26761) +[CVE-2024-26762](cves/CVE-2024-26762) +[CVE-2024-26763](cves/CVE-2024-26763) +[CVE-2024-26764](cves/CVE-2024-26764) +[CVE-2024-26765](cves/CVE-2024-26765) +[CVE-2024-26766](cves/CVE-2024-26766) +[CVE-2024-26767](cves/CVE-2024-26767) +[CVE-2024-26768](cves/CVE-2024-26768) +[CVE-2024-26769](cves/CVE-2024-26769) +[CVE-2024-26770](cves/CVE-2024-26770) +[CVE-2024-26771](cves/CVE-2024-26771) +[CVE-2024-26772](cves/CVE-2024-26772) +[CVE-2024-26773](cves/CVE-2024-26773) +[CVE-2024-26774](cves/CVE-2024-26774) +[CVE-2024-26775](cves/CVE-2024-26775) +[CVE-2024-26776](cves/CVE-2024-26776) +[CVE-2024-26777](cves/CVE-2024-26777) +[CVE-2024-26778](cves/CVE-2024-26778) +[CVE-2024-26779](cves/CVE-2024-26779) +[CVE-2024-26780](cves/CVE-2024-26780) +[CVE-2024-26781](cves/CVE-2024-26781) +[CVE-2024-26782](cves/CVE-2024-26782) +[CVE-2024-26783](cves/CVE-2024-26783) +[CVE-2024-26784](cves/CVE-2024-26784) +[CVE-2024-26785](cves/CVE-2024-26785) +[CVE-2024-26786](cves/CVE-2024-26786) +[CVE-2024-26787](cves/CVE-2024-26787) +[CVE-2024-26788](cves/CVE-2024-26788) +[CVE-2024-26789](cves/CVE-2024-26789) +[CVE-2024-26790](cves/CVE-2024-26790) +[CVE-2024-26791](cves/CVE-2024-26791) +[CVE-2024-26792](cves/CVE-2024-26792) +[CVE-2024-26793](cves/CVE-2024-26793) +[CVE-2024-26794](cves/CVE-2024-26794) +[CVE-2024-26795](cves/CVE-2024-26795) +[CVE-2024-26796](cves/CVE-2024-26796) +[CVE-2024-26797](cves/CVE-2024-26797) +[CVE-2024-26798](cves/CVE-2024-26798) +[CVE-2024-26799](cves/CVE-2024-26799) +[CVE-2024-26800](cves/CVE-2024-26800) +[CVE-2024-26801](cves/CVE-2024-26801) +[CVE-2024-26802](cves/CVE-2024-26802) +[CVE-2024-26803](cves/CVE-2024-26803) +[CVE-2024-26804](cves/CVE-2024-26804) +[CVE-2024-26805](cves/CVE-2024-26805) +[CVE-2024-26806](cves/CVE-2024-26806) +[CVE-2024-26807](cves/CVE-2024-26807) +[CVE-2024-26808](cves/CVE-2024-26808) +[CVE-2024-26809](cves/CVE-2024-26809) + + +### **New Versions Checked:** + +[4.19.311](streams/4.19) +[5.10.214](streams/5.10) +[5.15.153](streams/5.15) +[5.4.273](streams/5.4) +[6.1.84](streams/6.1) +[6.6.25](streams/6.6) +[6.7.12](streams/6.7) + + +### **Updated CVEs:** + +[CVE-2022-41850](cves/CVE-2022-41850) +[CVE-2023-2176](cves/CVE-2023-2176) +[CVE-2023-47233](cves/CVE-2023-47233) [CVE-2023-52434](cves/CVE-2023-52434) [CVE-2023-52435](cves/CVE-2023-52435) -[CVE-2023-52436](cves/CVE-2023-52436) +[CVE-2023-52447](cves/CVE-2023-52447) +[CVE-2023-52456](cves/CVE-2023-52456) +[CVE-2023-52457](cves/CVE-2023-52457) +[CVE-2023-52458](cves/CVE-2023-52458) +[CVE-2023-6270](cves/CVE-2023-6270) +[CVE-2023-6356](cves/CVE-2023-6356) +[CVE-2023-6536](cves/CVE-2023-6536) +[CVE-2023-7042](cves/CVE-2023-7042) +[CVE-2024-0565](cves/CVE-2024-0565) +[CVE-2024-0841](cves/CVE-2024-0841) +[CVE-2024-22099](cves/CVE-2024-22099) +[CVE-2024-23196](cves/CVE-2024-23196) +[CVE-2024-23307](cves/CVE-2024-23307) +[CVE-2024-23851](cves/CVE-2024-23851) +[CVE-2024-24861](cves/CVE-2024-24861) +[CVE-2024-26584](cves/CVE-2024-26584) +[CVE-2024-26585](cves/CVE-2024-26585) +[CVE-2024-26587](cves/CVE-2024-26587) +[CVE-2024-26588](cves/CVE-2024-26588) +[CVE-2024-26590](cves/CVE-2024-26590) +[CVE-2024-26591](cves/CVE-2024-26591) +[CVE-2021-42739](cves/CVE-2021-42739) +[CVE-2023-51779](cves/CVE-2023-51779) +[CVE-2023-52429](cves/CVE-2023-52429) [CVE-2023-52438](cves/CVE-2023-52438) [CVE-2023-52439](cves/CVE-2023-52439) [CVE-2023-52440](cves/CVE-2023-52440) [CVE-2023-52441](cves/CVE-2023-52441) -[CVE-2023-52442](cves/CVE-2023-52442) [CVE-2023-52443](cves/CVE-2023-52443) [CVE-2023-52444](cves/CVE-2023-52444) [CVE-2023-52445](cves/CVE-2023-52445) [CVE-2023-52446](cves/CVE-2023-52446) -[CVE-2023-52447](cves/CVE-2023-52447) [CVE-2023-52448](cves/CVE-2023-52448) [CVE-2023-52449](cves/CVE-2023-52449) [CVE-2023-52450](cves/CVE-2023-52450) [CVE-2023-52451](cves/CVE-2023-52451) [CVE-2023-52452](cves/CVE-2023-52452) -[CVE-2023-52453](cves/CVE-2023-52453) -[CVE-2023-52454](cves/CVE-2023-52454) -[CVE-2023-52455](cves/CVE-2023-52455) -[CVE-2023-52456](cves/CVE-2023-52456) -[CVE-2023-52457](cves/CVE-2023-52457) -[CVE-2023-52458](cves/CVE-2023-52458) -[CVE-2023-52459](cves/CVE-2023-52459) -[CVE-2023-52460](cves/CVE-2023-52460) -[CVE-2023-52461](cves/CVE-2023-52461) -[CVE-2023-52462](cves/CVE-2023-52462) -[CVE-2023-52463](cves/CVE-2023-52463) -[CVE-2023-52464](cves/CVE-2023-52464) -[CVE-2024-1151](cves/CVE-2024-1151) [CVE-2024-25739](cves/CVE-2024-25739) [CVE-2024-25740](cves/CVE-2024-25740) -[CVE-2024-25741](cves/CVE-2024-25741) -[CVE-2024-25744](cves/CVE-2024-25744) -[CVE-2024-26581](cves/CVE-2024-26581) [CVE-2024-26582](cves/CVE-2024-26582) [CVE-2024-26583](cves/CVE-2024-26583) -[CVE-2024-26584](cves/CVE-2024-26584) -[CVE-2024-26585](cves/CVE-2024-26585) [CVE-2024-26586](cves/CVE-2024-26586) -[CVE-2024-26587](cves/CVE-2024-26587) -[CVE-2024-26588](cves/CVE-2024-26588) [CVE-2024-26589](cves/CVE-2024-26589) -[CVE-2024-26590](cves/CVE-2024-26590) -[CVE-2024-26591](cves/CVE-2024-26591) -[CVE-2024-26592](cves/CVE-2024-26592) -[CVE-2024-26593](cves/CVE-2024-26593) -[CVE-2024-26594](cves/CVE-2024-26594) -[CVE-2024-26595](cves/CVE-2024-26595) -[CVE-2024-26596](cves/CVE-2024-26596) -[CVE-2024-26597](cves/CVE-2024-26597) -[CVE-2024-26598](cves/CVE-2024-26598) -[CVE-2024-26599](cves/CVE-2024-26599) - - -### **New Versions Checked:** - -[4.19.307](streams/4.19) -[5.10.210](streams/5.10) -[5.15.149](streams/5.15) -[5.4.269](streams/5.4) -[6.1.79](streams/6.1) -[6.6.18](streams/6.6) -[6.7.6](streams/6.7) - - -### **Updated CVEs:** - -[CVE-2021-33630](cves/CVE-2021-33630) -[CVE-2023-52340](cves/CVE-2023-52340) -[CVE-2024-0340](cves/CVE-2024-0340) -[CVE-2024-0607](cves/CVE-2024-0607) -[CVE-2024-1086](cves/CVE-2024-1086) -[CVE-2024-1312](cves/CVE-2024-1312) -[CVE-2024-23849](cves/CVE-2024-23849) -[CVE-2024-23850](cves/CVE-2024-23850) -[CVE-2024-23851](cves/CVE-2024-23851) -[CVE-2024-24855](cves/CVE-2024-24855) -[CVE-2024-24857](cves/CVE-2024-24857) -[CVE-2024-24858](cves/CVE-2024-24858) -[CVE-2024-24859](cves/CVE-2024-24859) -[CVE-2024-24860](cves/CVE-2024-24860) -[CVE-2023-6240](cves/CVE-2023-6240) -[CVE-2023-6356](cves/CVE-2023-6356) -[CVE-2023-6535](cves/CVE-2023-6535) -[CVE-2023-6536](cves/CVE-2023-6536) -[CVE-2024-0584](cves/CVE-2024-0584) -[CVE-2024-22386](cves/CVE-2024-22386) -[CVE-2024-23196](cves/CVE-2024-23196) -[CVE-2024-24861](cves/CVE-2024-24861) -[CVE-2024-24864](cves/CVE-2024-24864)
diff --git a/data/3.12/3.12_CVEs.txt b/data/3.12/3.12_CVEs.txt index c980a28..71222fe 100644 --- a/data/3.12/3.12_CVEs.txt +++ b/data/3.12/3.12_CVEs.txt
@@ -805,6 +805,7 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -962,6 +963,9 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -1081,6 +1085,76 @@ CVE-2021-45469: Fix not seen in stream CVE-2021-45485: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1231,6 +1305,9 @@ CVE-2022-4662: Fix not seen in stream CVE-2022-4744: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1272,6 +1349,7 @@ CVE-2023-2513: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1323,7 +1401,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream CVE-2023-51779: Fix not seen in stream @@ -1334,49 +1412,207 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream CVE-2024-0775: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown +CVE-2024-23196: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream CVE-2024-24859: Fix unknown -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/3.12/3.12_security.txt b/data/3.12/3.12_security.txt index 313e5e2..605b525 100644 --- a/data/3.12/3.12_security.txt +++ b/data/3.12/3.12_security.txt
@@ -944,6 +944,7 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -1101,6 +1102,9 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -1219,6 +1223,76 @@ CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1369,6 +1443,9 @@ CVE-2022-4662: (unk) USB: core: Prevent nested device-reset calls CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1410,6 +1487,7 @@ CVE-2023-2513: (unk) ext4: fix use-after-free in ext4_xattr_set_entry CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1461,7 +1539,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg @@ -1472,49 +1550,207 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/3.14/3.14_CVEs.txt b/data/3.14/3.14_CVEs.txt index fa7e850..f782218 100644 --- a/data/3.14/3.14_CVEs.txt +++ b/data/3.14/3.14_CVEs.txt
@@ -769,6 +769,7 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -927,6 +928,9 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -1048,6 +1052,76 @@ CVE-2021-45469: Fix not seen in stream CVE-2021-45485: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1200,6 +1274,9 @@ CVE-2022-4662: Fix not seen in stream CVE-2022-4744: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1241,6 +1318,7 @@ CVE-2023-2513: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1293,7 +1371,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream CVE-2023-51779: Fix not seen in stream @@ -1304,50 +1382,208 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream CVE-2024-0775: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown +CVE-2024-23196: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/3.14/3.14_security.txt b/data/3.14/3.14_security.txt index bd3d323..8c85a67 100644 --- a/data/3.14/3.14_security.txt +++ b/data/3.14/3.14_security.txt
@@ -903,6 +903,7 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -1061,6 +1062,9 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -1182,6 +1186,76 @@ CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1334,6 +1408,9 @@ CVE-2022-4662: (unk) USB: core: Prevent nested device-reset calls CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1375,6 +1452,7 @@ CVE-2023-2513: (unk) ext4: fix use-after-free in ext4_xattr_set_entry CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1427,7 +1505,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg @@ -1438,50 +1516,208 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/3.16/3.16_CVEs.txt b/data/3.16/3.16_CVEs.txt index 91aa968..d6a29af 100644 --- a/data/3.16/3.16_CVEs.txt +++ b/data/3.16/3.16_CVEs.txt
@@ -741,6 +741,7 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fixed with 3.16.79 +CVE-2019-25160: Fixed with 3.16.66 CVE-2019-3459: Fixed with 3.16.66 CVE-2019-3460: Fixed with 3.16.66 CVE-2019-3701: Fixed with 3.16.64 @@ -903,6 +904,9 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fixed with 3.16.83 @@ -1029,6 +1033,77 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1186,6 +1261,9 @@ CVE-2022-4662: Fix not seen in stream CVE-2022-4744: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1229,6 +1307,7 @@ CVE-2023-2513: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1285,7 +1364,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream CVE-2023-51779: Fix not seen in stream @@ -1296,26 +1375,110 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1323,25 +1486,102 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown +CVE-2024-23196: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream CVE-2024-24857: Fix unknown CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/3.16/3.16_security.txt b/data/3.16/3.16_security.txt index cbe4663..7c84265 100644 --- a/data/3.16/3.16_security.txt +++ b/data/3.16/3.16_security.txt
@@ -569,6 +569,7 @@ CVE-2019-12819: 8a5e2f4be5d08d16964ce2adb8da6fc42052c6f1 mdio_bus: Fix use-after-free on device_register fails CVE-2019-15927: cacb39e5e4b7de790939b174165503bbe8c82208 ALSA: usb-audio: Avoid access before bLength check in build_audio_procunit() CVE-2019-2024: abbb5cf0c8e9995defed43a6c98296f357098b5b media: em28xx: Fix use-after-free when disconnecting + CVE-2019-25160: 97bc3683c24999ee621d847c9348c75d2fe86272 netlabel: fix out-of-bounds memory accesses CVE-2019-3459: 78c2887130f1a7d1883195732be1b6cdab667487 Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: c5c6a5c7eb7e3d7859e7ec78a2872360e4bab6aa Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3882: d3334471c34797ab1729cbadddd411118d51c584 vfio/type1: Limit DMA mappings per container @@ -1016,6 +1017,9 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8694: (unk) powercap: restrict energy meter to root access @@ -1136,6 +1140,77 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1293,6 +1368,9 @@ CVE-2022-4662: (unk) USB: core: Prevent nested device-reset calls CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1336,6 +1414,7 @@ CVE-2023-2513: (unk) ext4: fix use-after-free in ext4_xattr_set_entry CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1391,7 +1470,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg @@ -1402,26 +1481,110 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1429,25 +1592,102 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/3.18/3.18_CVEs.txt b/data/3.18/3.18_CVEs.txt index 1b0d116..e4a6599 100644 --- a/data/3.18/3.18_CVEs.txt +++ b/data/3.18/3.18_CVEs.txt
@@ -720,6 +720,7 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fixed with 3.18.137 CVE-2019-3459: Fixed with 3.18.138 CVE-2019-3460: Fixed with 3.18.138 CVE-2019-3701: Fixed with 3.18.133 @@ -884,6 +885,9 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -1013,6 +1017,78 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1171,6 +1247,9 @@ CVE-2022-4662: Fix not seen in stream CVE-2022-4744: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1216,6 +1295,7 @@ CVE-2023-2513: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1276,7 +1356,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream CVE-2023-51779: Fix not seen in stream @@ -1287,26 +1367,110 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1314,25 +1478,104 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown +CVE-2024-23196: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream CVE-2024-24857: Fix unknown CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/3.18/3.18_security.txt b/data/3.18/3.18_security.txt index 4902ed0..2869bda 100644 --- a/data/3.18/3.18_security.txt +++ b/data/3.18/3.18_security.txt
@@ -628,6 +628,7 @@ CVE-2019-15916: a7053bc3aeefb24b94290a5c438fbcfe635ee4c7 net-sysfs: Fix mem leak in netdev_register_kobject CVE-2019-16995: e3d6490ad2b47f41bd534a6a5f8655549a754665 net: hsr: fix memory leak in hsr_dev_finalize() CVE-2019-2101: 7828fe7452f151cc1107a5c28ed042aeb64c1166 media: uvcvideo: Fix 'type' check leading to overflow + CVE-2019-25160: c61d01faa5550e06794dcf86125ccd325bfad950 netlabel: fix out-of-bounds memory accesses CVE-2019-9213: f290a73f3e919c4d5482632284ccb0aa17f7380c mm: enforce min addr even if capable() in expand_downwards() CVE-2020-0066: 5821948648caf10f8c8f7e9c9f8ac8fd22c640ba netlink: Trim skb to alloc size to avoid MSG_TRUNC @@ -1120,6 +1121,9 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -1249,6 +1253,78 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1407,6 +1483,9 @@ CVE-2022-4662: (unk) USB: core: Prevent nested device-reset calls CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1452,6 +1531,7 @@ CVE-2023-2513: (unk) ext4: fix use-after-free in ext4_xattr_set_entry CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1512,7 +1592,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg @@ -1523,26 +1603,110 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1550,25 +1714,104 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/3.2/3.2_CVEs.txt b/data/3.2/3.2_CVEs.txt index 9f48d13..b55ae45 100644 --- a/data/3.2/3.2_CVEs.txt +++ b/data/3.2/3.2_CVEs.txt
@@ -821,6 +821,7 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -958,6 +959,9 @@ CVE-2020-36386: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -1065,6 +1069,72 @@ CVE-2021-45095: Fix not seen in stream CVE-2021-45485: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1202,6 +1272,8 @@ CVE-2022-4662: Fix not seen in stream CVE-2022-4744: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1239,6 +1311,7 @@ CVE-2023-2513: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1292,20 +1365,98 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream @@ -1315,23 +1466,95 @@ CVE-2024-0584: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown +CVE-2024-23196: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream CVE-2024-24859: Fix unknown -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/3.2/3.2_security.txt b/data/3.2/3.2_security.txt index 21a28ad..3cc3b8d 100644 --- a/data/3.2/3.2_security.txt +++ b/data/3.2/3.2_security.txt
@@ -985,6 +985,7 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -1118,6 +1119,9 @@ CVE-2020-36386: (unk) Bluetooth: Fix slab-out-of-bounds read in hci_extended_inquiry_result_evt() CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -1223,6 +1227,72 @@ CVE-2021-45095: (unk) phonet: refcount leak in pep_sock_accep CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1360,6 +1430,8 @@ CVE-2022-4662: (unk) USB: core: Prevent nested device-reset calls CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1397,6 +1469,7 @@ CVE-2023-2513: (unk) ext4: fix use-after-free in ext4_xattr_set_entry CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1450,20 +1523,98 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() @@ -1473,23 +1624,95 @@ CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.1/4.1_CVEs.txt b/data/4.1/4.1_CVEs.txt index b68f420..4ab618f 100644 --- a/data/4.1/4.1_CVEs.txt +++ b/data/4.1/4.1_CVEs.txt
@@ -672,6 +672,7 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -838,6 +839,9 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -970,6 +974,82 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1136,6 +1216,9 @@ CVE-2022-4662: Fix not seen in stream CVE-2022-4744: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1182,6 +1265,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1243,7 +1327,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1255,27 +1339,112 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1283,26 +1452,107 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream CVE-2024-24857: Fix unknown CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.1/4.1_security.txt b/data/4.1/4.1_security.txt index 2ebbd97..d239f63 100644 --- a/data/4.1/4.1_security.txt +++ b/data/4.1/4.1_security.txt
@@ -775,6 +775,7 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -937,6 +938,9 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -1068,6 +1072,82 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1234,6 +1314,9 @@ CVE-2022-4662: (unk) USB: core: Prevent nested device-reset calls CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1280,6 +1363,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1341,7 +1425,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1353,27 +1437,112 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1381,26 +1550,107 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.10/4.10_CVEs.txt b/data/4.10/4.10_CVEs.txt index 57d5d2d..cfbbbb5 100644 --- a/data/4.10/4.10_CVEs.txt +++ b/data/4.10/4.10_CVEs.txt
@@ -536,6 +536,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -720,6 +722,11 @@ CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -862,6 +869,93 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1042,6 +1136,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1096,6 +1193,7 @@ CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1162,7 +1260,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1181,24 +1279,112 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1207,10 +1393,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1218,16 +1405,106 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.10/4.10_security.txt b/data/4.10/4.10_security.txt index 3672219..389ebc1 100644 --- a/data/4.10/4.10_security.txt +++ b/data/4.10/4.10_security.txt
@@ -570,6 +570,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -754,6 +756,11 @@ CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -896,6 +903,93 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1076,6 +1170,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1130,6 +1227,7 @@ CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1196,7 +1294,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1215,24 +1313,112 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1241,10 +1427,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1252,16 +1439,106 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.11/4.11_CVEs.txt b/data/4.11/4.11_CVEs.txt index f193bf5..840bad3 100644 --- a/data/4.11/4.11_CVEs.txt +++ b/data/4.11/4.11_CVEs.txt
@@ -503,6 +503,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -689,6 +691,11 @@ CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -832,6 +839,98 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1014,6 +1113,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1068,6 +1170,7 @@ CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1134,7 +1237,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1154,24 +1257,112 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1180,10 +1371,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1192,17 +1384,107 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.11/4.11_security.txt b/data/4.11/4.11_security.txt index 3b4f0e9..bcaf4ce 100644 --- a/data/4.11/4.11_security.txt +++ b/data/4.11/4.11_security.txt
@@ -526,6 +526,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -711,6 +713,11 @@ CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -854,6 +861,98 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1036,6 +1135,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1090,6 +1192,7 @@ CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1156,7 +1259,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1176,24 +1279,112 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1202,10 +1393,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1214,17 +1406,107 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.12/4.12_CVEs.txt b/data/4.12/4.12_CVEs.txt index e871d86..abc7080 100644 --- a/data/4.12/4.12_CVEs.txt +++ b/data/4.12/4.12_CVEs.txt
@@ -477,6 +477,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -664,6 +666,11 @@ CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -813,6 +820,100 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -999,6 +1100,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1055,6 +1159,7 @@ CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1121,7 +1226,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1141,25 +1246,115 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1169,10 +1364,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1181,17 +1377,107 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.12/4.12_security.txt b/data/4.12/4.12_security.txt index 0aff772..9390be6 100644 --- a/data/4.12/4.12_security.txt +++ b/data/4.12/4.12_security.txt
@@ -504,6 +504,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -690,6 +692,11 @@ CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -839,6 +846,100 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1025,6 +1126,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1081,6 +1185,7 @@ CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1147,7 +1252,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1167,25 +1272,115 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1195,10 +1390,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1207,17 +1403,107 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.13/4.13_CVEs.txt b/data/4.13/4.13_CVEs.txt index 4cf1fc0..aaf5978 100644 --- a/data/4.13/4.13_CVEs.txt +++ b/data/4.13/4.13_CVEs.txt
@@ -457,6 +457,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -646,6 +648,11 @@ CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -796,6 +803,103 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -982,6 +1086,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1040,6 +1147,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1106,7 +1214,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1126,25 +1234,115 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1155,10 +1353,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1167,17 +1366,107 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.13/4.13_security.txt b/data/4.13/4.13_security.txt index 30ebdfd..30c8aaa 100644 --- a/data/4.13/4.13_security.txt +++ b/data/4.13/4.13_security.txt
@@ -487,6 +487,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -674,6 +676,11 @@ CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -824,6 +831,103 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1010,6 +1114,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1068,6 +1175,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1134,7 +1242,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1154,25 +1262,115 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1183,10 +1381,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1195,17 +1394,107 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.14/4.14_CVEs.txt b/data/4.14/4.14_CVEs.txt index 7586e41..85e6bac 100644 --- a/data/4.14/4.14_CVEs.txt +++ b/data/4.14/4.14_CVEs.txt
@@ -422,6 +422,8 @@ CVE-2019-2182: Fixed with 4.14.166 CVE-2019-2213: Fixed with 4.14.136 CVE-2019-2215: Fixed with 4.14.17 +CVE-2019-25160: Fixed with 4.14.106 +CVE-2019-25162: Fixed with 4.14.291 CVE-2019-3016: Fixed with 4.14.192 CVE-2019-3459: Fixed with 4.14.110 CVE-2019-3460: Fixed with 4.14.110 @@ -610,6 +612,11 @@ CVE-2020-36558: Fixed with 4.14.172 CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fixed with 4.14.196 +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fixed with 4.14.233 +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fixed with 4.14.245 CVE-2020-4788: Fixed with 4.14.208 CVE-2020-7053: Fix not seen in stream @@ -761,6 +768,106 @@ CVE-2021-45485: Fixed with 4.14.240 CVE-2021-45486: Fixed with 4.14.238 CVE-2021-45868: Fixed with 4.14.256 +CVE-2021-46904: Fixed with 4.14.232 +CVE-2021-46906: Fixed with 4.14.238 +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fixed with 4.14.232 +CVE-2021-46915: Fixed with 4.14.232 +CVE-2021-46924: Fixed with 4.14.261 +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fixed with 4.14.261 +CVE-2021-46932: Fixed with 4.14.261 +CVE-2021-46933: Fixed with 4.14.261 +CVE-2021-46935: Fixed with 4.14.261 +CVE-2021-46936: Fixed with 4.14.261 +CVE-2021-46938: Fixed with 4.14.233 +CVE-2021-46939: Fixed with 4.14.233 +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fixed with 4.14.233 +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fixed with 4.14.233 +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fixed with 4.14.233 +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fixed with 4.14.233 +CVE-2021-46992: Fixed with 4.14.233 +CVE-2021-47006: Fixed with 4.14.233 +CVE-2021-47013: Fixed with 4.14.233 +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fixed with 4.14.233 +CVE-2021-47056: Fixed with 4.14.233 +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fixed with 4.14.234 +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fixed with 4.14.260 +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fixed with 4.14.296 +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fixed with 4.14.236 +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fixed with 4.14.236 +CVE-2021-47118: Fixed with 4.14.236 +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fixed with 4.14.236 +CVE-2021-47122: Fixed with 4.14.236 +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fixed with 4.14.235 +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fixed with 4.14.235 +CVE-2021-47146: Fixed with 4.14.235 +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fixed with 4.14.235 +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fixed with 4.14.235 +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fixed with 4.14.241 +CVE-2021-47162: Fixed with 4.14.235 +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fixed with 4.14.235 +CVE-2021-47166: Fixed with 4.14.235 +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fixed with 4.14.235 +CVE-2021-47169: Fixed with 4.14.235 +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fixed with 4.14.235 +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fixed with 4.14.235 +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fixed with 4.14.235 +CVE-2021-47179: Fixed with 4.14.235 +CVE-2021-47180: Fixed with 4.14.235 CVE-2022-0001: Fixed with 4.14.271 CVE-2022-0002: Fixed with 4.14.271 CVE-2022-0168: Fix not seen in stream @@ -951,6 +1058,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fixed with 4.14.303 CVE-2022-48619: Fixed with 4.14.281 +CVE-2022-48626: Fixed with 4.14.266 +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fixed with 4.14.256 CVE-2023-0266: Fixed with 4.14.303 @@ -1011,6 +1121,7 @@ CVE-2023-28328: Fixed with 4.14.303 CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fixed with 4.14.293 +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 4.14.240 CVE-2023-2985: Fixed with 4.14.308 CVE-2023-3006: Fix not seen in stream @@ -1078,7 +1189,7 @@ CVE-2023-4623: Fixed with 4.14.327 CVE-2023-46343: Fixed with 4.14.328 CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fixed with 4.14.326 CVE-2023-51043: Fix not seen in stream @@ -1098,25 +1209,117 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fixed with 4.14.328 +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fixed with 4.14.328 +CVE-2023-52478: Fixed with 4.14.328 +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fixed with 4.14.328 +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fixed with 4.14.328 +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fixed with 4.14.327 +CVE-2023-52528: Fixed with 4.14.327 +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fixed with 4.14.327 +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fixed with 4.14.327 +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fixed with 4.14.328 CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fixed with 4.14.332 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fixed with 4.14.308 CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1127,10 +1330,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1139,17 +1343,108 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.14/4.14_security.txt b/data/4.14/4.14_security.txt index 3f38233..ba4eaeb 100644 --- a/data/4.14/4.14_security.txt +++ b/data/4.14/4.14_security.txt
@@ -355,6 +355,7 @@ CVE-2019-15916: 306bbaeb077068141d472b922ae1adf7ab81fd72 net-sysfs: Fix mem leak in netdev_register_kobject CVE-2019-16994: 46a5caa79ff73c9403ab37475ef47ed4c027e712 net: sit: fix memory leak in sit_init_net() CVE-2019-2101: aa4ba765e0903926de64b359e8653bfd29a3c353 media: uvcvideo: Fix 'type' check leading to overflow + CVE-2019-25160: fcfe700acdc1c72eab231300e82b962bac2b2b2c netlabel: fix out-of-bounds memory accesses CVE-2019-8980: 069fb92ea221c72bd75f4863b3540420082f32ba exec: Fix mem leak in kernel_read_file CVEs fixed in 4.14.107: @@ -926,16 +927,32 @@ CVEs fixed in 4.14.232: CVE-2020-29374: 407faed92b4a4e2ad900d61ea3831dd597640f29 gup: document and work around "COW can break either way" issue CVE-2021-23133: 54b63c76b9bb95fba20cd268086ee448f87208c6 net/sctp: fix race condition in sctp_destroy_sock + CVE-2021-46904: caf5ac93b3b5d5fac032fc11fbea680e115421b4 net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46909: 532747fd5c7aaa17ee5cf79f3e947c31eb0e35cf ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: 9065ccb9ec92c5120e7e97958397ebdb454f23d6 netfilter: nft_limit: avoid possible divide error in nft_limit_init CVEs fixed in 4.14.233: + CVE-2020-36777: 32168ca1f123316848fffb85d059860adf3c409f media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-32399: 40acc1aa3e2a705a3c2ed171ed563ef04f7ba19e bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: 21f6aee6682a1f7415e23f96ce94ff387d9cdb2e Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-4157: 40286f0852d2ecfa713438199557c706dc6a8db3 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46938: b42c0a33dfdd451d9be62dd5de58c39f2750b6e3 dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: 1fca00920327be96f3318224f502e4d5460f9545 tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: 12216d0919b64ee2ea5dc7a50e455670f44383d5 md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46953: c3385a9122f8db15b453e07bfc88117fce7f3724 ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46960: e94851629c49c65b4fbb29a5725ddfd7988f8f20 cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46988: 319116227e52d49eee671f0aa278bac89b3c1b69 userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46992: 2824cafc6a93792d9ad85939c499161214d84c4b netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47006: ed1f67465327cec4457bb988775245b199da86e6 ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47013: dc1b438a35773d030be0ee80d9c635c3e558a322 net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47054: 94810fc52925eb122a922df7f9966cf3f4ba7391 bus: qcom: Put child node before return + CVE-2021-47056: 446045cf682af12d9294765f6c46084b374b5654 crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init CVEs fixed in 4.14.234: CVE-2020-26555: 4555cee33f7d75c1ee69902c872c9d1e9568ebd5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 4555cee33f7d75c1ee69902c872c9d1e9568ebd5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 4555cee33f7d75c1ee69902c872c9d1e9568ebd5 Bluetooth: SMP: Fail if remote and local public keys are identical + CVE-2021-47078: 6a8086a42dfbf548a42bf2ae4faa291645c72c66 RDMA/rxe: Clear all QP fields if creation failed CVEs fixed in 4.14.235: CVE-2020-24586: f643397142c196d3ac653b2df32997dad991cb29 mac80211: prevent mixed key and fragment cache attacks @@ -946,16 +963,37 @@ CVE-2021-29650: f1fd7a174018f1107881150c6c2ce00e49a1e643 netfilter: x_tables: Use correct memory barriers. CVE-2021-33098: 5217f9cab7dd28e9c7626cd795e51da98ecb2af4 ixgbe: fix large MTU request from VF CVE-2021-34981: 6f6ac2a7959b1864886d07fcf3b9cec587dfe635 Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47142: 952ab3f9f48eb0e8050596d41951cf516be6b122 drm/amdgpu: Fix a use-after-free + CVE-2021-47145: 0eaf383c6a4a83c09f60fd07a1bea9f1a9181611 btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: 221142038f36d9f28b64e83e954774da4d4ccd17 mld: fix panic in mld_newpack() + CVE-2021-47149: c4f1c23edbe921ab2ecd6140d700e756cd44c5f7 net: fujitsu: fix potential null-ptr-deref + CVE-2021-47153: dfa8929e117b0228a7765f5c3f5988a4a028f3c6 i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47162: 436d650d374329a591c30339a91fa5078052ed1e tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47165: b4298d33c1fcce511ffe84d8d3de07e220300f9b drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: c757c1f1e65d89429db1409429436cf40d47c008 NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47168: f299522eda1566cbfbae4b15c82970fc41b03714 NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: 1cc57cb32c84e059bd158494f746b665fc14d1b1 serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47171: 9e6b8c1ff9d997e1fa16cbd2d60739adf6dc1bbc net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47173: bcb30cc8f8befcbdbcf7a016e4dfd4747c54a364 misc/uss720: fix memory leak in uss720_probe + CVE-2021-47177: 22da9f4978381a99f1abaeaf6c9b83be6ab5ddd8 iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: 42637ca25c7d7b5a92804a679af5192e8c1a9f48 NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: 2c2fb2df46ea866b49fea5ec7112ec3cd4896c74 NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 4.14.236: CVE-2021-3564: fa7d2874963312030d9618541b9bc2e549e19ac1 Bluetooth: fix the erroneous flush_work() order CVE-2021-3573: 88481ea480756644b5221648216bb67866e51391 Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: ffff05b9ee5c74c04bba2801c1f99b31975d74d9 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: ffff05b9ee5c74c04bba2801c1f99b31975d74d9 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47114: a1700479524bb9cb5e8ae720236a6fabd003acae ocfs2: fix data corruption by fallocate + CVE-2021-47117: d8116743ef5432336289256b2f7c117299213eb9 ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: 4dbd8808a591b49b717862e6e0081bcf14a87788 pid: take a reference when initializing `cad_pid` + CVE-2021-47121: e8b37f5009ea7095529790f022859711e6939c76 net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: 4bca2034b41c15b62d47a19158bb76235fd4455d net: caif: fix memory leak in caif_device_notify CVEs fixed in 4.14.238: CVE-2021-34693: 4fa028860bb1656f370851c2c26de15fc67da300 can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-45486: 3ba51ed2c3ac36aa947d0b250d318de6ed7cf552 inet: use bigger hash table for IP ID generation + CVE-2021-46906: 8c064eece9a51856f3f275104520c7e3017fc5c0 HID: usbhid: fix info leak in hid_submit_ctrl CVEs fixed in 4.14.240: CVE-2021-33909: 3c07d1335d17ae0411101024de438dbc3734e992 seq_file: disallow extremely large seq buffer allocations @@ -970,6 +1008,7 @@ CVE-2021-3679: 76598512d5d7fc407c319ca4448cf5348b65058a tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop. CVE-2021-37576: b67a821813c7b8160b54d83928281fec84a42d88 KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow CVE-2021-38204: edddc79c4391f8001095320d3ca423214b9aa4bf usb: max-3421: Prevent corruption of freed memory + CVE-2021-47161: 10a089bae827ec30ad9b6cb7048020a62fae0cfa spi: spi-fsl-dspi: Fix a resource leak in an error handling path CVEs fixed in 4.14.242: CVE-2021-0920: af3e2b87b36100c28feb71da52c57293c4540690 af_unix: fix garbage collect vs MSG_PEEK @@ -1057,10 +1096,17 @@ CVEs fixed in 4.14.260: CVE-2021-45469: 88dedecc24763c2e0bc1e8eeb35f9f2cd785a7e5 f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-47086: 311601f114859d586d5ef8833d60d3aa23282161 phonet/pep: refuse to enable an unbound pipe CVE-2022-1195: a7b0ae2cc486fcb601f9f9d87d98138cc7b7f7f9 hamradio: improve the incomplete fix to avoid NPD CVEs fixed in 4.14.261: CVE-2021-44733: 3d556a28bbfe34a80b014db49908b0f1bcb1ae80 tee: handle lookup of shm with reference count 0 + CVE-2021-46924: 38c3e320e7ff46f2dc67bc5045333e63d9f8918d NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46929: 8873140f95d4977bf37e4cf0d5c5e3f6e34cdd3e sctp: use call_rcu to free endpoint + CVE-2021-46932: 292d2ac61fb0d9276a0f7b7ce4f50426f2a1c99f Input: appletouch - initialize work before device registration + CVE-2021-46933: 52500239e3f2d6fc77b6f58632a9fb98fe74ac09 usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46935: 2d2df539d05205fd83c404d5f2dff48d36f9b495 binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: 5c2fe20ad37ff56070ae0acb34152333976929b4 net: fix use-after-free in tw_timer_handler CVE-2022-20154: 8873140f95d4977bf37e4cf0d5c5e3f6e34cdd3e sctp: use call_rcu to free endpoint CVEs fixed in 4.14.262: @@ -1089,6 +1135,7 @@ CVE-2022-0435: fde4ddeadd099bf9fbb9ccbee8e1b5c20d530a2d tipc: improve size validations for received domain records CVE-2022-0487: e6f580d0b3349646d4ee1ce0057eb273e8fb7e2e moxart: fix potential use-after-free on remove path CVE-2022-0492: b391bb3554dd6e04b7a8ede975dbd3342526a045 cgroup-v1: Require capabilities to set release_agent + CVE-2022-48626: e6f580d0b3349646d4ee1ce0057eb273e8fb7e2e moxart: fix potential use-after-free on remove path CVEs fixed in 4.14.267: CVE-2022-25258: c7ad83d561df15ac6043d3b0d783aee777cf1731 USB: gadget: validate interface OS descriptor requests @@ -1213,6 +1260,7 @@ CVE-2022-36879: 2c9d93e35cb857fc613ec9d58d690d332252747b xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() CVEs fixed in 4.14.291: + CVE-2019-25162: e6412ba3b6508bdf9c074d310bf4144afa6aec1a i2c: Fix a potential use after free CVE-2022-1679: 62bc1ea5c7401d77eaf73d0c6a15f3d2e742856e ath9k: fix use-after-free in ath9k_hif_usb_rx_cb CVE-2022-20422: 9d5fec6ba2e4117d196a8259ab54615ffe562460 arm64: fix oops in concurrently setting insn_emulation sysctls CVE-2022-20566: 5bb395334392891dffae5a0e8f37dbe1d70496c9 Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put @@ -1242,6 +1290,7 @@ CVE-2022-39842: 9556a88a16e381dbd6834da95206742d0973afc6 video: fbdev: pxa3xx-gcu: Fix integer overflow in pxa3xx_gcu_write CVEs fixed in 4.14.296: + CVE-2021-47103: 92e6e36ecd16808866ac6172b9491b5097cde449 inet: fully convert sk->sk_rx_dst to RCU rules CVE-2022-2978: c0aa76b0f17f59dd9c9d3463550a2986a1d592e4 fs: fix UAF/GPF bug in nilfs_mdt_destroy CVE-2022-3542: f63e896e78c247d0be8165d99d543a28ca0be360 bnx2x: fix potential memory leak in bnx2x_tpa_stop() CVE-2022-3565: cbd342376a4e7ea481891181910e9e995390eb24 mISDN: fix use-after-free bugs in l1oip timer handlers @@ -1399,9 +1448,18 @@ CVEs fixed in 4.14.327: CVE-2023-31085: ef7a4c97a85ab1bff7abc98f885678bd33bb4881 ubi: Refuse attaching if mtd's erasesize is 0 CVE-2023-4623: 3c0bd0b79733b7f628af1c967269db339eeef8d3 net/sched: sch_hfsc: Ensure inner classes have fsc curve + CVE-2023-52527: 7626b9fed53092aa2147978070e610ecb61af844 ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: 3e0af6eec1789fd11934164a7f4dbcad979855a4 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52566: fb1084e63ee56958b0a56e17a50a4fd86445b9c1 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52574: 1779eb51b9cc628cee551f252701a85a2a50a457 team: fix null-ptr-deref when team device type is changed CVEs fixed in 4.14.328: CVE-2023-46343: 2b2edf089df3a69f0072c6e71563394c5a94e62e nfc: nci: fix possible NULL pointer dereference in send_acknowledge() + CVE-2023-52475: 8677575c4f39d65bf0d719b5d20e8042e550ccb9 Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52477: c64e4dca9aefd232b17ac4c779b608b286654e81 usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: ca0c4cc1d215dc22ab0e738c9f017c650f3183f5 HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52507: 2c231a247a1d1628e41fa1eefd1a5307c41c5f53 nfc: nci: assert requested protocol is valid + CVE-2023-52510: 28b68cba378e3e50a4082b65f262bc4f2c7c2add ieee802154: ca8210: Fix a potential UAF in ca8210_probe CVE-2023-5717: 555e15e93f6dbb8ce6b5b92e5272473abfe8bd2b perf: Disallow mis-matched inherited group reads CVEs fixed in 4.14.329: @@ -1513,6 +1571,10 @@ CVE-2020-36313: (unk) KVM: Fix out of range accesses to memslots CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr CVE-2020-8832: (unk) drm/i915: Record the default hw state after reset upon load CVE-2020-8834: (unk) KVM: PPC: Book3S HV: Factor fake-suspend handling out of kvmppc_save/restore_tm @@ -1538,6 +1600,61 @@ CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4218: (unk) sysctl: pass kernel pointers to ->proc_handler CVE-2021-43975: (unk) atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1595,6 +1712,8 @@ CVE-2022-45886: (unk) media: dvb-core: Fix use-after-free due on race condition at dvb_net CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0386: (unk) ovl: fail on invalid uid/gid mapping at copy up CVE-2023-0597: (unk) x86/mm: Randomize per-cpu entry area @@ -1617,6 +1736,7 @@ CVE-2023-23000: (unk) phy: tegra: xusb: Fix return value of tegra_xusb_find_port_node function CVE-2023-23039: (unk) CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list CVE-2023-3022: (unk) ipv6: Use result arg in fib_lookup_arg consistently CVE-2023-30456: (unk) KVM: nVMX: add missing consistency checks for CR0 and CR4 @@ -1639,7 +1759,7 @@ CVE-2023-4134: (unk) Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync() CVE-2023-4622: (unk) unix: Convert unix_stream_sendpage() to use MSG_SPLICE_PAGES CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg @@ -1655,23 +1775,106 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) CVE-2024-0607: (unk) netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() @@ -1679,10 +1882,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1691,17 +1895,108 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.15/4.15_CVEs.txt b/data/4.15/4.15_CVEs.txt index 43c7182..15bceb9 100644 --- a/data/4.15/4.15_CVEs.txt +++ b/data/4.15/4.15_CVEs.txt
@@ -366,6 +366,8 @@ CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fixed with 4.15.1 CVE-2019-25045: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -554,6 +556,12 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -712,6 +720,111 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -903,6 +1016,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -964,6 +1080,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1034,7 +1151,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51042: Fix not seen in stream @@ -1055,25 +1172,117 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1084,10 +1293,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1096,17 +1306,110 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.15/4.15_security.txt b/data/4.15/4.15_security.txt index 143191f..bf3f95b 100644 --- a/data/4.15/4.15_security.txt +++ b/data/4.15/4.15_security.txt
@@ -403,6 +403,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-25045: (unk) xfrm: clean up xfrm protocol checks + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -588,6 +590,12 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -745,6 +753,111 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -935,6 +1048,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -996,6 +1112,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1066,7 +1183,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51042: (unk) drm/amdgpu: Fix potential fence use-after-free v2 @@ -1087,25 +1204,117 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1116,10 +1325,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1128,17 +1338,110 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.16/4.16_CVEs.txt b/data/4.16/4.16_CVEs.txt index 1a63db0..db7e518 100644 --- a/data/4.16/4.16_CVEs.txt +++ b/data/4.16/4.16_CVEs.txt
@@ -341,6 +341,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-25045: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -533,6 +535,13 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -690,6 +699,114 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -883,6 +1000,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -944,6 +1064,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1014,7 +1135,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51042: Fix not seen in stream @@ -1035,25 +1156,117 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1064,10 +1277,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1076,17 +1290,111 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.16/4.16_security.txt b/data/4.16/4.16_security.txt index de9a3bf..3b81d91 100644 --- a/data/4.16/4.16_security.txt +++ b/data/4.16/4.16_security.txt
@@ -374,6 +374,8 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-25045: (unk) xfrm: clean up xfrm protocol checks + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -565,6 +567,13 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -722,6 +731,114 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -915,6 +1032,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -976,6 +1096,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1046,7 +1167,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51042: (unk) drm/amdgpu: Fix potential fence use-after-free v2 @@ -1067,25 +1188,117 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1096,10 +1309,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1108,17 +1322,111 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.17/4.17_CVEs.txt b/data/4.17/4.17_CVEs.txt index 0f1ba21..c996a3a 100644 --- a/data/4.17/4.17_CVEs.txt +++ b/data/4.17/4.17_CVEs.txt
@@ -319,6 +319,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-25045: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -513,6 +515,13 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -670,6 +679,114 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -863,6 +980,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -926,6 +1046,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -996,7 +1117,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51042: Fix not seen in stream @@ -1017,25 +1138,118 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1046,10 +1260,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1058,18 +1273,113 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.17/4.17_security.txt b/data/4.17/4.17_security.txt index 7b63d7b..d52310e 100644 --- a/data/4.17/4.17_security.txt +++ b/data/4.17/4.17_security.txt
@@ -352,6 +352,8 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-25045: (unk) xfrm: clean up xfrm protocol checks + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -545,6 +547,13 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -702,6 +711,114 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -895,6 +1012,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -958,6 +1078,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1028,7 +1149,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51042: (unk) drm/amdgpu: Fix potential fence use-after-free v2 @@ -1049,25 +1170,118 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1078,10 +1292,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1090,18 +1305,113 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.18/4.18_CVEs.txt b/data/4.18/4.18_CVEs.txt index f97a354..37525a6 100644 --- a/data/4.18/4.18_CVEs.txt +++ b/data/4.18/4.18_CVEs.txt
@@ -295,6 +295,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-25045: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -491,6 +493,13 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -647,6 +656,117 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -841,6 +961,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -904,6 +1027,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -974,7 +1098,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51042: Fix not seen in stream @@ -996,25 +1120,118 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1025,10 +1242,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1037,18 +1255,114 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.18/4.18_security.txt b/data/4.18/4.18_security.txt index 9e298a1..f3f7a71 100644 --- a/data/4.18/4.18_security.txt +++ b/data/4.18/4.18_security.txt
@@ -328,6 +328,8 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-25045: (unk) xfrm: clean up xfrm protocol checks + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -523,6 +525,13 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -679,6 +688,117 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -873,6 +993,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -936,6 +1059,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1006,7 +1130,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51042: (unk) drm/amdgpu: Fix potential fence use-after-free v2 @@ -1028,25 +1152,118 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1057,10 +1274,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1069,18 +1287,114 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.19/4.19_CVEs.txt b/data/4.19/4.19_CVEs.txt index d693284..1f8dfb6 100644 --- a/data/4.19/4.19_CVEs.txt +++ b/data/4.19/4.19_CVEs.txt
@@ -265,6 +265,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fixed with 4.19.64 CVE-2019-25045: Fixed with 4.19.46 +CVE-2019-25160: Fixed with 4.19.28 +CVE-2019-25162: Fixed with 4.19.256 CVE-2019-3016: Fixed with 4.19.103 CVE-2019-3459: Fixed with 4.19.33 CVE-2019-3460: Fixed with 4.19.33 @@ -460,6 +462,13 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fixed with 4.19.164 CVE-2020-36766: Fixed with 4.19.143 +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fixed with 4.19.191 +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fixed with 4.19.205 CVE-2020-4788: Fixed with 4.19.159 CVE-2020-7053: Fix not seen in stream @@ -620,6 +629,118 @@ CVE-2021-45485: Fixed with 4.19.198 CVE-2021-45486: Fixed with 4.19.196 CVE-2021-45868: Fixed with 4.19.218 +CVE-2021-46904: Fixed with 4.19.187 +CVE-2021-46906: Fixed with 4.19.196 +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fixed with 4.19.189 +CVE-2021-46915: Fixed with 4.19.189 +CVE-2021-46921: Fixed with 4.19.189 +CVE-2021-46924: Fixed with 4.19.224 +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fixed with 4.19.224 +CVE-2021-46932: Fixed with 4.19.224 +CVE-2021-46933: Fixed with 4.19.224 +CVE-2021-46934: Fixed with 4.19.224 +CVE-2021-46935: Fixed with 4.19.224 +CVE-2021-46936: Fixed with 4.19.224 +CVE-2021-46938: Fixed with 4.19.191 +CVE-2021-46939: Fixed with 4.19.191 +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fixed with 4.19.191 +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fixed with 4.19.191 +CVE-2021-46955: Fixed with 4.19.191 +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fixed with 4.19.191 +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fixed with 4.19.191 +CVE-2021-46989: Fixed with 4.19.191 +CVE-2021-46991: Fixed with 4.19.191 +CVE-2021-46992: Fixed with 4.19.191 +CVE-2021-46998: Fixed with 4.19.191 +CVE-2021-47006: Fixed with 4.19.191 +CVE-2021-47010: Fixed with 4.19.191 +CVE-2021-47013: Fixed with 4.19.191 +CVE-2021-47020: Fixed with 4.19.191 +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fixed with 4.19.191 +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fixed with 4.19.191 +CVE-2021-47056: Fixed with 4.19.191 +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47073: Fixed with 4.19.192 +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fixed with 4.19.192 +CVE-2021-47082: Fixed with 4.19.280 +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fixed with 4.19.223 +CVE-2021-47100: Fixed with 4.19.223 +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fixed with 4.19.262 +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fixed with 4.19.194 +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fixed with 4.19.194 +CVE-2021-47118: Fixed with 4.19.194 +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fixed with 4.19.194 +CVE-2021-47122: Fixed with 4.19.194 +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fixed with 4.19.193 +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fixed with 4.19.193 +CVE-2021-47145: Fixed with 4.19.193 +CVE-2021-47146: Fixed with 4.19.193 +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fixed with 4.19.193 +CVE-2021-47150: Fixed with 4.19.193 +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fixed with 4.19.193 +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fixed with 4.19.193 +CVE-2021-47160: Fixed with 4.19.193 +CVE-2021-47161: Fixed with 4.19.199 +CVE-2021-47162: Fixed with 4.19.193 +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fixed with 4.19.193 +CVE-2021-47166: Fixed with 4.19.193 +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fixed with 4.19.193 +CVE-2021-47169: Fixed with 4.19.193 +CVE-2021-47170: Fixed with 4.19.193 +CVE-2021-47171: Fixed with 4.19.193 +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fixed with 4.19.193 +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fixed with 4.19.193 +CVE-2021-47179: Fixed with 4.19.193 +CVE-2021-47180: Fixed with 4.19.193 CVE-2022-0001: Fixed with 4.19.234 CVE-2022-0002: Fixed with 4.19.234 CVE-2022-0168: Fix not seen in stream @@ -820,6 +941,10 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fixed with 4.19.270 CVE-2022-48619: Fixed with 4.19.245 +CVE-2022-48626: Fixed with 4.19.229 +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fixed with 4.19.236 CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fixed with 4.19.218 CVE-2023-0266: Fixed with 4.19.270 @@ -884,6 +1009,7 @@ CVE-2023-28328: Fixed with 4.19.270 CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fixed with 4.19.258 +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 4.19.198 CVE-2023-2985: Fixed with 4.19.276 CVE-2023-3006: Fix not seen in stream @@ -957,7 +1083,7 @@ CVE-2023-4623: Fixed with 4.19.295 CVE-2023-46343: Fixed with 4.19.297 CVE-2023-46838: Fixed with 4.19.306 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fixed with 4.19.295 CVE-2023-51042: Fixed with 4.19.293 @@ -979,25 +1105,118 @@ CVE-2023-52445: Fixed with 4.19.306 CVE-2023-52449: Fixed with 4.19.306 CVE-2023-52451: Fixed with 4.19.306 -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fixed with 4.19.306 +CVE-2023-52469: Fixed with 4.19.306 +CVE-2023-52470: Fixed with 4.19.306 +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fixed with 4.19.297 +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fixed with 4.19.297 +CVE-2023-52478: Fixed with 4.19.297 +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fixed with 4.19.307 +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fixed with 4.19.297 +CVE-2023-52504: Fixed with 4.19.297 +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fixed with 4.19.297 +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fixed with 4.19.297 +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fixed with 4.19.296 +CVE-2023-52528: Fixed with 4.19.296 +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fixed with 4.19.296 +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fixed with 4.19.296 +CVE-2023-52578: Fixed with 4.19.296 +CVE-2023-52583: Fixed with 4.19.307 +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fixed with 4.19.307 +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fixed with 4.19.307 +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fixed with 4.19.307 +CVE-2023-52598: Fixed with 4.19.307 +CVE-2023-52599: Fixed with 4.19.307 +CVE-2023-52600: Fixed with 4.19.307 +CVE-2023-52601: Fixed with 4.19.307 +CVE-2023-52602: Fixed with 4.19.307 +CVE-2023-52603: Fixed with 4.19.307 +CVE-2023-52604: Fixed with 4.19.307 +CVE-2023-52606: Fixed with 4.19.307 +CVE-2023-52607: Fixed with 4.19.307 +CVE-2023-52609: Fixed with 4.19.306 +CVE-2023-52612: Fixed with 4.19.306 +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fixed with 4.19.307 +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fixed with 4.19.307 +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fixed with 4.19.307 +CVE-2023-52623: Fixed with 4.19.307 +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fixed with 4.19.297 CVE-2023-6040: Fixed with 4.19.305 CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 4.19.311 +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fixed with 4.19.304 CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fixed with 4.19.302 CVE-2023-6932: Fixed with 4.19.301 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fixed with 4.19.311 CVE-2023-7192: Fixed with 4.19.276 CVE-2024-0340: Fixed with 4.19.307 CVE-2024-0564: Fix unknown @@ -1009,10 +1228,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 4.19.311 CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 4.19.307 CVE-2024-23851: Fix not seen in stream @@ -1021,7 +1241,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -1029,11 +1249,109 @@ CVE-2024-25744: Fix not seen in stream CVE-2024-26584: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fixed with 4.19.306 CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fixed with 4.19.307 +CVE-2024-26602: Fixed with 4.19.307 +CVE-2024-26606: Fixed with 4.19.307 +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fixed with 4.19.307 +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fixed with 4.19.307 +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fixed with 4.19.306 +CVE-2024-26635: Fixed with 4.19.307 +CVE-2024-26636: Fixed with 4.19.307 +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fixed with 4.19.307 +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fixed with 4.19.311 +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fixed with 4.19.307 +CVE-2024-26664: Fixed with 4.19.307 +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fixed with 4.19.307 +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fixed with 4.19.307 +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fixed with 4.19.307 +CVE-2024-26685: Fixed with 4.19.307 +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fixed with 4.19.307 +CVE-2024-26697: Fixed with 4.19.307 +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fixed with 4.19.307 +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fixed with 4.19.307 +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fixed with 4.19.308 +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fixed with 4.19.308 +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fixed with 4.19.308 +CVE-2024-26752: Fixed with 4.19.308 +CVE-2024-26754: Fixed with 4.19.308 +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fixed with 4.19.308 +CVE-2024-26764: Fixed with 4.19.308 +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fixed with 4.19.308 +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fixed with 4.19.308 +CVE-2024-26773: Fixed with 4.19.308 +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fixed with 4.19.308 +CVE-2024-26778: Fixed with 4.19.308 +CVE-2024-26779: Fixed with 4.19.308 +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fixed with 4.19.309 +CVE-2024-26793: Fixed with 4.19.309 +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fixed with 4.19.309 +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fixed with 4.19.309 +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.19/4.19_security.txt b/data/4.19/4.19_security.txt index e599f27..a900ef8 100644 --- a/data/4.19/4.19_security.txt +++ b/data/4.19/4.19_security.txt
@@ -74,6 +74,7 @@ CVE-2019-12818: f132b3f5f1ad1cbe818474ab8d0b555ff39369d5 net: nfc: Fix NULL dereference on nfc_llcp_build_tlv fails CVE-2019-15916: 7ce2a517fd8b7742e381d3b3551b9b03e667ad79 net-sysfs: Fix mem leak in netdev_register_kobject CVE-2019-16994: d0bedaac932f4c02c080a50d4a30b2a1fec5d682 net: sit: fix memory leak in sit_init_net() + CVE-2019-25160: e3713abc4248aa6bcc11173d754c418b02a62cbb netlabel: fix out-of-bounds memory accesses CVE-2019-8980: b60d90b2d3d14c426693a0a34041db11be66d29e exec: Fix mem leak in kernel_read_file CVEs fixed in 4.19.29: @@ -709,6 +710,7 @@ CVE-2020-25672: 301a4264d6ab56d2b9230066b060d7ceaa000d68 nfc: fix memory leak in llcp_sock_connect() CVE-2020-25673: eab391e0766ed88262160b14bb7131f331f6af1a nfc: Avoid endless loops caused by repeated llcp_sock_connect() CVE-2021-3659: c166c0f5311dc9de687b8985574a5ee5166d367e net: mac802154: Fix general protection fault + CVE-2021-46904: 92028d7a31e55d53e41cff679156b9432cffcb36 net: hso: fix null-ptr-deref during tty device unregistration CVEs fixed in 4.19.188: CVE-2021-0937: 12ec80252edefff00809d473a47e5f89c7485499 netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -717,17 +719,41 @@ CVEs fixed in 4.19.189: CVE-2020-29374: 5e24029791e809d641e9ea46a1f99806484e53fc gup: document and work around "COW can break either way" issue CVE-2021-23133: 301084de76eb5bfedddda41ec33e2913e90c99e7 net/sctp: fix race condition in sctp_destroy_sock + CVE-2021-46909: 2643da6aa57920d9159a1a579fb04f89a2b0d29a ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: fadd3c4afdf3d4c21f4d138502f8b76334987e26 netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: 5902f9453a313be8fe78cbd7e7ca9dba9319fc6e locking/qrwlock: Fix ordering in queued_write_lock_slowpath() CVEs fixed in 4.19.191: + CVE-2020-36777: cd89f79be5d553c78202f686e8e4caa5fbe94e98 media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-32399: 35113c4c9fa7c970ff456982e381dc9e9594154a bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: 75e26178e26f910f7f26c79c2824b726eecf0dfb Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-3506: bfa08a47cea2a9fab077c7135b9cfdf04e69c67a f2fs: fix to avoid out-of-bounds memory access CVE-2021-4157: f27638a92f77d8107efbaf48a0d3bfa24da8cdad pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46938: 772b9f59657665af3b68d24d12b9d172d31f0dfb dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: d43d56dbf452ccecc1ec735cd4b6840118005d7c tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: a6e17cab00fc5bf85472434c52ac751426257c6f md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46953: 7b2162db1498c71962a4bb2f776fa4e76d4d305b ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: df9e900de24637be41879e2c50afb713ec4e8b2e openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46960: e486f8397f3f14a7cadc166138141fdb14379a54 cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46988: 07c9b834c97d0fa3402fb7f3f3b32df370a6ff1f userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: 52dde855663e5db824af51db39b5757d2ef3e28a hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: c1322eaeb8af0d8985b5cc5fa759140fa0e57b84 i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: efcd730ddd6f25578bd31bfe703e593e2421d708 netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: 25a87b1f566b5eb2af2857a928f0e2310d900976 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47006: a9938d6d78a238d6ab8de57a4d3dcf77adceb9bb ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: 992de06308d9a9584d59b96d294ac676f924e437 net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: 16d8c44be52e3650917736d45f5904384a9da834 net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47020: 342260fe821047c3d515e3d28085d73fbdce3e80 soundwire: stream: fix memory leak in stream config error path + CVE-2021-47034: b3d5d0983388d6c4fb35f7d722556d5595f167a7 powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47054: a399dd80e697a02cfb23e2fc09b87849994043d9 bus: qcom: Put child node before return + CVE-2021-47056: 09d16cee6285d37cc76311c29add6d97a7e4acda crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init CVEs fixed in 4.19.192: CVE-2020-26555: 30126d4ba73119565f1748b116b9869ac6bbda6b Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 30126d4ba73119565f1748b116b9869ac6bbda6b Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 30126d4ba73119565f1748b116b9869ac6bbda6b Bluetooth: SMP: Fail if remote and local public keys are identical + CVE-2021-47073: 75cfc833da4a2111106d4c134e93e0c7f41e35e7 platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47078: f3783c415bf6d2ead3d7aa2c38802bbe10723646 RDMA/rxe: Clear all QP fields if creation failed CVEs fixed in 4.19.193: CVE-2020-24586: 76ffc27967211afba6f0045ac840e7027fbeefcf mac80211: prevent mixed key and fragment cache attacks @@ -737,18 +763,44 @@ CVE-2020-26147: 3c919823e4cad7bdc2c92b0dd3b4dc463c9315bd mac80211: assure all fragments are encrypted CVE-2021-33098: 938ffd6d2dd78fb83b9346c9b689e2a3a6fe7174 ixgbe: fix large MTU request from VF CVE-2021-34981: f8be26b9950710fe50fb45358df5bd01ad18efb7 Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47142: a849e218556f932576c0fb1c5a88714b61709a17 drm/amdgpu: Fix a use-after-free + CVE-2021-47144: 599e5d61ace952b0bb9bd942b198bbd0cfded1d7 drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: 6eccfb28f8dca70c9b1b3bb3194ca54cbe73a9fa btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: 4b77ad9097067b31237eeeee0bf70f80849680a0 mld: fix panic in mld_newpack() + CVE-2021-47149: 7883d3895d0fbb0ba9bff0f8665f99974b45210f net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: 15102886bc8f5f29daaadf2d925591d564c17e9f net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47153: c70e1ba2e7e65255a0ce004f531dd90dada97a8c i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47159: 0f2cb08c57edefb0e7b5045e0e3e9980a3d3aa37 net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: ae389812733b1b1e8e07fcc238e41db166b5c78d net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47162: 4b1761898861117c97066aea6c58f68a7787f0bf tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47165: e256a0eb43e17209e347409a80805b1659398d68 drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: 40f139a6d50c232c0d1fd1c5e65a845c62db0ede NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47168: 945ebef997227ca8c20bad7f8a8358c8ee57a84a NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: 35265552c7fe9553c75e324c80f45e28ff14eb6e serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: 2ab21d6e1411999b5fb43434f421f00bf50002eb USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: 9e6a3eccb28779710cbbafc4f4258d92509c6d07 net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47173: 386918878ce4cd676e4607233866e03c9399a46a misc/uss720: fix memory leak in uss720_probe + CVE-2021-47177: 2ec5e9bb6b0560c90d315559c28a99723c80b996 iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: 39785761feadf261bc5101372b0b0bbaf6a94494 NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: 0365701bc44e078682ee1224866a71897495c7ef NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 4.19.194: CVE-2021-3564: 64700748e8a7af4883538c72ada57999d9a78e92 Bluetooth: fix the erroneous flush_work() order CVE-2021-3573: 2b9e9c2ed0f1910b5201c5d37b355b60201df415 Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: 93e4ac2a9979a9a4ecc158409ed9c3044dc0ae1f nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: 93e4ac2a9979a9a4ecc158409ed9c3044dc0ae1f nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47114: cec4e857ffaa8c447f51cd8ab4e72350077b6770 ocfs2: fix data corruption by fallocate + CVE-2021-47117: 569496aa3776eea1ff0d49d0174ac1b7e861e107 ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: d106f05432e60f9f62d456ef017687f5c73cb414 pid: take a reference when initializing `cad_pid` + CVE-2021-47121: 9ea0ab48e755d8f29fe89eb235fb86176fdb597f net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: 3be863c11cab725add9fef4237ed4e232c3fc3bb net: caif: fix memory leak in caif_device_notify CVEs fixed in 4.19.196: CVE-2021-34693: 8899857d7e450805e6410de5004126491f197146 can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-35039: ff660863628fb144badcb3395cde7821c82c13a6 module: limit enabling module.sig_enforce CVE-2021-3743: f8111c0d7ed42ede41a3d0d393b104de0730a8a6 net: qrtr: fix OOB Read in qrtr_endpoint_post CVE-2021-45486: 7f7e23df8509e072593200400a4b094cc44376d2 inet: use bigger hash table for IP ID generation + CVE-2021-46906: 0e280502be1b003c3483ae03fc60dea554fcfa82 HID: usbhid: fix info leak in hid_submit_ctrl CVEs fixed in 4.19.197: CVE-2020-36311: cadf5bbcefbd9717e51c61d6128b520583ffdf4f KVM: SVM: Periodically schedule when unregistering regions on destroy @@ -768,6 +820,7 @@ CVE-2021-3679: 6a99bfee7f5625d2577a5c3b09a2bd2a845feb8a tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop. CVE-2021-37576: 0493b10c06021796ba80cbe53c961defd5aca6e5 KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow CVE-2021-38204: 51fc12f4d37622fa0c481604833f98f11b1cac4f usb: max-3421: Prevent corruption of freed memory + CVE-2021-47161: 00450ed03a17143e2433b461a656ef9cd17c2f1d spi: spi-fsl-dspi: Fix a resource leak in an error handling path CVEs fixed in 4.19.200: CVE-2021-0920: 1dabafa9f61118b1377fde424d9a94bf8dbf2813 af_unix: fix garbage collect vs MSG_PEEK @@ -863,10 +916,19 @@ CVEs fixed in 4.19.223: CVE-2021-45469: f9dfa44be0fb5e8426183a70f69a246cf5827f49 f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-47086: 982b6ba1ce626ef87e5c29f26f2401897554f235 phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: 925229d552724e1bba1abf01d3a0b1318539b012 ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module CVE-2022-1195: b68f41c6320b2b7fbb54a95f07a69f3dc7e56c59 hamradio: improve the incomplete fix to avoid NPD CVEs fixed in 4.19.224: CVE-2021-44733: b4a661b4212b8fac8853ec3b68e4a909dccc88a1 tee: handle lookup of shm with reference count 0 + CVE-2021-46924: a1e0080a35a16ce3808f7040fe0c3a8fdb052349 NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46929: af6e6e58f7ebf86b4e7201694b1e4f3a62cbc3ec sctp: use call_rcu to free endpoint + CVE-2021-46932: a02e1404e27855089d2b0a0acc4652c2ce65fe46 Input: appletouch - initialize work before device registration + CVE-2021-46933: 33f6a0cbb7772146e1c11f38028fffbfed14728b usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: 407c8708fb1bf2d4afc5337ef50635cf540c364b i2c: validate user data in compat ioctl + CVE-2021-46935: 7c7064402609aeb6fb11be1b4ec10673ff17b593 binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: a8e1944b44f94f5c5f530e434c5eaee787254566 net: fix use-after-free in tw_timer_handler CVE-2022-20154: af6e6e58f7ebf86b4e7201694b1e4f3a62cbc3ec sctp: use call_rcu to free endpoint CVEs fixed in 4.19.225: @@ -893,6 +955,7 @@ CVE-2022-0435: f1af11edd08dd8376f7a84487cbb0ea8203e3a1d tipc: improve size validations for received domain records CVE-2022-0487: 9c25d5ff1856b91bd4365e813f566cb59aaa9552 moxart: fix potential use-after-free on remove path CVE-2022-0492: 939f8b491887c27585933ea7dc5ad4123de58ff3 cgroup-v1: Require capabilities to set release_agent + CVE-2022-48626: 9c25d5ff1856b91bd4365e813f566cb59aaa9552 moxart: fix potential use-after-free on remove path CVEs fixed in 4.19.230: CVE-2022-25258: e5eb8d19aee115d8fb354d1eff1b8df700467164 USB: gadget: validate interface OS descriptor requests @@ -930,6 +993,7 @@ CVE-2022-20158: a33dd1e6693f80d805155b3f69c18c2f642915da net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-20368: a33dd1e6693f80d805155b3f69c18c2f642915da net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-3107: a30c7c81db60f7f7ad52f75a4f7de5f628063df4 hv_netvsc: Add check for kvmalloc_array + CVE-2022-48629: a8e32bbb96c25b7ab29b1894dcd45e0b3b08fd9d crypto: qcom-rng - ensure buffer for generate is completely filled CVEs fixed in 4.19.237: CVE-2022-1016: 88791b79a1eb2ba94e95d039243e28433583a67b netfilter: nf_tables: initialize registers in nft_do_chain() @@ -1031,6 +1095,7 @@ CVE-2022-36946: f295d365b30626f82423a923695274024016380e netfilter: nf_queue: do not allow packet truncation below transport header offset CVEs fixed in 4.19.256: + CVE-2019-25162: 23a191b132cd87f746c62f3dc27da33683d85829 i2c: Fix a potential use after free CVE-2021-4159: 6c6b84ef5ea8dc0ca3559ccf69810960e348c555 bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds() CVE-2022-1679: ab7a0ddf5f1cdec63cb21840369873806fc36d80 ath9k: fix use-after-free in ath9k_hif_usb_rx_cb CVE-2022-20422: b51881b1da57fe9877125dfdd0aac5172958fcfd arm64: fix oops in concurrently setting insn_emulation sysctls @@ -1058,6 +1123,7 @@ CVE-2022-39842: a34547fc43d02f2662b2b62c9a4c578594cf662d video: fbdev: pxa3xx-gcu: Fix integer overflow in pxa3xx_gcu_write CVEs fixed in 4.19.262: + CVE-2021-47103: 75a578000ae5e511e5d0e8433c94a14d9c99c412 inet: fully convert sk->sk_rx_dst to RCU rules CVE-2022-2978: ec2aab115eb38ac4992ea2fcc2a02fbe7af5cf48 fs: fix UAF/GPF bug in nilfs_mdt_destroy CVE-2022-3535: 84e2394b0be397f7198986aa9a28207f70b29bd4 net: mvpp2: fix mvpp2 debugfs leak CVE-2022-3542: 70421f9708d4cf14c2bd15de58862a3d22e00bbe bnx2x: fix potential memory leak in bnx2x_tpa_stop() @@ -1143,6 +1209,7 @@ CVEs fixed in 4.19.280: CVE-2021-33631: 53bb0d3e0a3dfc9649add8133f1ecd9c1bc2dd70 ext4: fix kernel BUG in 'ext4_write_inline_data_end()' + CVE-2021-47082: 8eb43d635950e27c29f1e9e49a23b31637f37757 tun: avoid double free in tun_free_netdev CVE-2022-4744: 8eb43d635950e27c29f1e9e49a23b31637f37757 tun: avoid double free in tun_free_netdev CVE-2023-1670: 526660c25d3b93b1232a525b75469048388f0928 xirc2ps_cs: Fix use after free bug in xirc2ps_detach CVE-2023-1989: af4d48754d5517d33bac5e504ff1f1de0808e29e Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work @@ -1231,9 +1298,21 @@ CVEs fixed in 4.19.296: CVE-2023-31085: a0d71e9e61da8a85a46774c67549739e28fda795 ubi: Refuse attaching if mtd's erasesize is 0 + CVE-2023-52527: 559d697c5d072593d22b3e0bd8b8081108aeaf59 ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: 2a36d9e2995c8c3c3f179aab1215a69cff06cbed net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52566: bb61224f6abc8e71bfdf06d7c984e23460875f5b nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52574: a7fb47b9711101d2405b0eb1276fb1f9b9b270c7 team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: d2346e6beb699909ca455d9d20c4e577ce900839 net: bridge: use DEV_STATS_INC() CVEs fixed in 4.19.297: CVE-2023-46343: 5622592f8f74ae3e594379af02e64ea84772d0dd nfc: nci: fix possible NULL pointer dereference in send_acknowledge() + CVE-2023-52475: 67cace72606baf1758fd60feb358f4c6be92e1cc Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52477: 8e7346bfea56453e31b7421c1c17ca2fb9ed613d usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: 44481b244fcaa2b895a53081d6204c574720c38c HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52502: e863f5720a5680e50c4cecf12424d7cc31b3eb0a net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: 3719d3c36aa853d5a2401af9f8d6b116c91ad5ae x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52507: a686f84101680b8442181a8846fbd3c934653729 nfc: nci: assert requested protocol is valid + CVE-2023-52510: cdb46be93c1f7bbf2c4649e9fc5fb147cfb5245d ieee802154: ca8210: Fix a potential UAF in ca8210_probe CVE-2023-5717: a714491fa92d2068358dd603cc50bf2062517bd8 perf: Disallow mis-matched inherited group reads CVEs fixed in 4.19.298: @@ -1272,13 +1351,81 @@ CVE-2023-52449: aeba358bcc8ffddf9b4a9bd0e5ec9eb338d46022 mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: bb79613a9a704469ddb8d6c6029d532a5cea384c powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52464: 71c17ee02538802ceafc830f0736aa35b564e601 EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: 8a27d9d9fc9b5564b8904c3a77a7dea482bfa34e drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: 21b1645660717d6126dd4866c850fcc5c4703a41 drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52609: 95b1d336b0642198b56836b89908d07b9a0c9608 binder: fix race between mmput() and do_exit() + CVE-2023-52612: 1142d65c5b881590962ad763f94505b6dd67d2fe crypto: scomp - fix req->dst buffer overflow CVE-2024-26597: 093dab655808207f7a9f54cf156240aeafc70590 net: qualcomm: rmnet: fix global oob in rmnet_policy + CVE-2024-26633: 135414f300c5db995e2a2f3bf0f455de9d014aee ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 4.19.307: + CVE-2023-52486: 376e21a9e4c2c63ee5d8d3aa74be5082c3882229 drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52583: eb55ba8aa7fb7aad54f40fbf4d8dcdfdba0bebf6 ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52587: 4c8922ae8eb8dcc1e4b7d1059d97a8334288d825 IB/ipoib: Fix mcast list locking + CVE-2023-52594: f44f073c78112ff921a220d01b86d09f2ace59bc wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52597: 3a04410b0bc7e056e0843ac598825dd359246d18 KVM: s390: fix setting of fpc register + CVE-2023-52598: 6ccf904aac0292e1f6b1a1be6c407c414f7cf713 s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: f423528488e4f9606cef858eceea210bf1163f41 jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: 81b4249ef37297fb17ba102a524039a05c6c5d35 jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: 3d3898b4d72c677d47fe3cb554449f2df5c12555 jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: ce8bc22e948634a5c0a3fa58a179177d0e3f3950 jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: e30b52a2ea3d1e0aaee68096957cf90a2f4ec5af UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: e3e95c6850661c77e6dab079d9b5374a618ebb15 FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: 42084a428a139f1a429f597d44621e3a18f3e414 powerpc/lib: Validate size for vector operations + CVE-2023-52607: 21e45a7b08d7cd98d6a53c5fc5111879f2d96611 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52615: eafd83b92f6c044007a3591cbd476bcf90455990 hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52619: 8b69c30f4e8b69131d92096cb296dc1f217101e4 pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52622: cd1f93ca97a9136989f3bd2bf90696732a2ed644 ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: fece80a2a6718ed58487ce397285bb1b83a3e54e SUNRPC: Fix a suspicious RCU usage warning CVE-2024-0340: 95eab1039625d54d1770665756dd34e9fe926638 vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0607: fca41e5b687e029f69e3a35a2fa31e2560e538dc netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-1086: 8365e9d92b85fda975a5ece7a3a139cb964018c8 netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-23849: 344350bfa3b4b37d7c3d5a00536e6fbf0e953fbf net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv + CVE-2024-26600: 486218c11e8d1c8f515a3bdd70d62203609d4b6b phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: 3cd139875e9a7688b3fc715264032620812a5fa3 sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: dd64bb8329ce0ea27bc557e4160c2688835402ac binder: signal epoll threads of self-work + CVE-2024-26615: 27aea64838914c6122db5b8bd4bed865c9736f22 net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26625: 6b950c712a9a05cdda4aea7fcb2848766576c11b llc: call sock_orphan() at release time + CVE-2024-26635: 165ad1e22779685c3ed3dd349c6c4c632309cc62 llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: 84e9d10419f6f4f3f3cd8f9aaf44a48719aa4b1b llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26645: 5022b331c041e8c54b9a6a3251579bd1e8c0fc0b tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26663: 24ec8f0da93b8a9fba11600be8a90f0d73fb46f1 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: 93f0f4e846fcb682c3ec436e3b2e30e5a3a8ee6a hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: 9525b38180e2753f0daa1a522b7767a2aa969676 blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26675: 4fdb14ba89faff6e6969a4dffdc8e54235d6e5ed ppp_async: limit MRU to 64K + CVE-2024-26679: caa064c3c2394d03e289ebd6b0be5102eb8a5b40 inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: c4a09fdac625e64abe478dcf88bfa20406616928 nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26696: 228742b2ddfb99dfd71e5a307e6088ab6836272e nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: 5278c3eb6bf5896417572b52adb6be9d26e92f65 nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26704: b4fbb89d722cbb16beaaea234b7230faaaf68c71 ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26720: c593d26fb5d577ef31b6e49a31e08ae3ebc1bc1e mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + +CVEs fixed in 4.19.308: + CVE-2024-26735: 953f42934533c151f440cd32390044d2396b87aa ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26744: 84f1dac960cfa210a3b7a7522e6c2320ae91932b RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26751: 9e200a06ae2abb321939693008290af32b33dd6e ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: 4c3ce64bc9d36ca9164dd6c77ff144c121011aae l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: f0ecdfa679189d26aedfe24212d4e69e42c2c861 gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26763: 43a202bd552976497474ae144942e32cc5f34d7e dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: 337b543e274fe7a8f47df3c8293cc6686ffa620f fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26766: 115b7f3bc1dce590a6851a2dcf23dc1100c49790 IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26772: 5a6dcc4ad0f7f7fa8e8d127b5526e7c5f2d38a43 ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: 21f8cfe79f776287459343e9cfa6055af61328ea ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26777: 84246c35ca34207114055a87552a1c4289c8fd7e fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: 224453de8505aede1890f007be973925a3edf6a1 fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: 76fad1174a0cae6fc857b9f88b261a2e4f07d587 wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 4.19.309: + CVE-2024-26791: 11d7a2e429c02d51e2dc90713823ea8b8d3d3a84 btrfs: dev-replace: properly validate device names + CVE-2024-26793: 01129059d5141d62fae692f7a336ae3bc712d3eb gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26801: e0b278650f07acf2e0932149183458468a731c03 Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26805: ec343a55b687a452f5e87f3b52bf9f155864df65 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + +CVEs fixed in 4.19.311: + CVE-2023-6270: ad80c34944d7175fa1f5c7a55066020002921a99 aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: 0cd3b0a1dc987697cba1fe93c784365aa1f8a230 wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 369f419c097e82407dd429a202cde9a73d3ae29b Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: 424eba06ed405d557077339edb19ce0ebe39e7c7 sr9800: Add check for usbnet_get_endpoints Outstanding CVEs: CVE-2005-3660: (unk) @@ -1358,6 +1505,12 @@ CVE-2020-36313: (unk) KVM: Fix out of range accesses to memslots CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr CVE-2021-0399: (unk) CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation @@ -1379,6 +1532,56 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4218: (unk) sysctl: pass kernel pointers to ->proc_handler + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1437,6 +1640,8 @@ CVE-2022-45884: (unk) CVE-2022-45885: (unk) CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0386: (unk) ovl: fail on invalid uid/gid mapping at copy up CVE-2023-0597: (unk) x86/mm: Randomize per-cpu entry area @@ -1458,6 +1663,7 @@ CVE-2023-23039: (unk) CVE-2023-26242: (unk) CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list CVE-2023-3022: (unk) ipv6: Use result arg in fib_lookup_arg consistently CVE-2023-31081: (unk) @@ -1477,7 +1683,7 @@ CVE-2023-4133: (unk) cxgb4: fix use after free bugs caused by circular dependency problem CVE-2023-4134: (unk) Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync() CVE-2023-4622: (unk) unix: Convert unix_stream_sendpage() to use MSG_SPLICE_PAGES - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg CVE-2023-5178: (unk) nvmet-tcp: Fix a possible UAF in queue intialization setup @@ -1485,28 +1691,85 @@ CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty - CVE-2023-7042: (unk) CVE-2024-0564: (unk) CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1514,7 +1777,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -1522,10 +1785,71 @@ CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.20/4.20_CVEs.txt b/data/4.20/4.20_CVEs.txt index 21db7cf..5315779 100644 --- a/data/4.20/4.20_CVEs.txt +++ b/data/4.20/4.20_CVEs.txt
@@ -253,6 +253,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-25045: Fix not seen in stream +CVE-2019-25160: Fixed with 4.20.15 +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream @@ -449,6 +451,13 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -609,6 +618,121 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -811,6 +935,10 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream @@ -881,6 +1009,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -955,7 +1084,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51042: Fix not seen in stream @@ -979,25 +1108,118 @@ CVE-2023-52448: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -1010,10 +1232,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1022,7 +1245,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -1031,12 +1254,111 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.20/4.20_security.txt b/data/4.20/4.20_security.txt index 96ffdbc..e6ab999 100644 --- a/data/4.20/4.20_security.txt +++ b/data/4.20/4.20_security.txt
@@ -50,6 +50,7 @@ CVE-2019-12818: 97dc863bf0bda8d6edac8c932ef0d4b12b679607 net: nfc: Fix NULL dereference on nfc_llcp_build_tlv fails CVE-2019-15916: f04fba61adf70dc5a67285ebfcd0db34c782910b net-sysfs: Fix mem leak in netdev_register_kobject CVE-2019-16994: 058a6cc9f0ded32822b4f2370de110c940438fcb net: sit: fix memory leak in sit_init_net() + CVE-2019-25160: fbf9578919d6c91100ec63acf2cba641383f6c78 netlabel: fix out-of-bounds memory accesses CVE-2019-8980: 1ffa4ebedacb578fad9a207a3c3f897b467d045e exec: Fix mem leak in kernel_read_file CVEs fixed in 4.20.16: @@ -301,6 +302,7 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-25045: (unk) xfrm: clean up xfrm protocol checks + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt @@ -482,6 +484,13 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -642,6 +651,121 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -843,6 +967,10 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF @@ -913,6 +1041,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -987,7 +1116,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51042: (unk) drm/amdgpu: Fix potential fence use-after-free v2 @@ -1011,25 +1140,118 @@ CVE-2023-52448: (unk) gfs2: Fix kernel NULL pointer dereference in gfs2_rgrp_dump CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1042,10 +1264,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1054,7 +1277,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -1063,12 +1286,111 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.3/4.3_CVEs.txt b/data/4.3/4.3_CVEs.txt index 0bbfee2..584c8e1 100644 --- a/data/4.3/4.3_CVEs.txt +++ b/data/4.3/4.3_CVEs.txt
@@ -663,6 +663,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -831,6 +833,9 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -965,6 +970,83 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1136,6 +1218,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1184,6 +1269,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1247,7 +1333,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1259,29 +1345,115 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52444: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1289,10 +1461,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1300,16 +1473,98 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.3/4.3_security.txt b/data/4.3/4.3_security.txt index ef6d46f..679f352 100644 --- a/data/4.3/4.3_security.txt +++ b/data/4.3/4.3_security.txt
@@ -679,6 +679,8 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -847,6 +849,9 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -981,6 +986,83 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1152,6 +1234,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1200,6 +1285,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1263,7 +1349,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1275,29 +1361,115 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52444: (unk) f2fs: fix to avoid dirent corruption CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1305,10 +1477,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1316,16 +1489,98 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.4/4.4_CVEs.txt b/data/4.4/4.4_CVEs.txt index 263e839..02fa769 100644 --- a/data/4.4/4.4_CVEs.txt +++ b/data/4.4/4.4_CVEs.txt
@@ -642,6 +642,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fixed with 4.4.196 +CVE-2019-25160: Fixed with 4.4.177 +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fixed with 4.4.178 CVE-2019-3460: Fixed with 4.4.178 CVE-2019-3701: Fixed with 4.4.172 @@ -810,6 +812,9 @@ CVE-2020-36557: Fixed with 4.4.218 CVE-2020-36558: Fixed with 4.4.215 CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream CVE-2020-3702: Fixed with 4.4.284 CVE-2020-4788: Fixed with 4.4.245 CVE-2020-8647: Fixed with 4.4.216 @@ -944,6 +949,83 @@ CVE-2021-45485: Fixed with 4.4.276 CVE-2021-45486: Fixed with 4.4.274 CVE-2021-45868: Fixed with 4.4.293 +CVE-2021-46904: Fixed with 4.4.268 +CVE-2021-46906: Fixed with 4.4.274 +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fixed with 4.4.298 +CVE-2021-46933: Fixed with 4.4.298 +CVE-2021-46936: Fixed with 4.4.298 +CVE-2021-46939: Fixed with 4.4.269 +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fixed with 4.4.297 +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fixed with 4.4.272 +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fixed with 4.4.272 +CVE-2021-47118: Fixed with 4.4.272 +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fixed with 4.4.272 +CVE-2021-47122: Fixed with 4.4.272 +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fixed with 4.4.271 +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fixed with 4.4.271 +CVE-2021-47146: Fixed with 4.4.271 +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fixed with 4.4.271 +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fixed with 4.4.271 +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fixed with 4.4.271 +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fixed with 4.4.271 +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fixed with 4.4.271 +CVE-2021-47169: Fixed with 4.4.271 +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fixed with 4.4.271 +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fixed with 4.4.271 +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fixed with 4.4.271 CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1117,6 +1199,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1165,6 +1250,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 4.4.276 CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1229,7 +1315,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1241,30 +1327,116 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52444: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1272,10 +1444,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1283,16 +1456,99 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.4/4.4_security.txt b/data/4.4/4.4_security.txt index 0393258..be084ce 100644 --- a/data/4.4/4.4_security.txt +++ b/data/4.4/4.4_security.txt
@@ -698,6 +698,7 @@ CVE-2019-16413: f289ac1f6eb2d024793732ddb629595ab85674b7 9p: use inode->i_lock to protect i_size_write() under 32-bit CVE-2019-16995: 453e3b319d28f2023d45073e6eb30c5efa2fd06b net: hsr: fix memory leak in hsr_dev_finalize() CVE-2019-2101: bba078c9fc3c7e44370f870d97c5eed64f6c5d1f media: uvcvideo: Fix 'type' check leading to overflow + CVE-2019-25160: dc18101f95fa6e815f426316b8b9a5cee28a334e netlabel: fix out-of-bounds memory accesses CVE-2019-9213: 40952b6a649b9bfad11ae4fa2862fa0108c9ec24 mm: enforce min addr even if capable() in expand_downwards() CVE-2019-9455: 7b5115689bf9dafc5127b28ace4589f698d4adfa media: videobuf2-v4l2: drop WARN_ON in vb2_warn_zero_bytesused() @@ -1137,11 +1138,15 @@ CVE-2021-22555: b0d98b2193a38ef93c92e5e1953d134d0f426531 netfilter: x_tables: fix compat match/target pad out-of-bound write CVE-2021-3659: cd19d85e6d4a361beb11431af3d22248190f5b48 net: mac802154: Fix general protection fault +CVEs fixed in 4.4.268: + CVE-2021-46904: a462067d7c8e6953a733bf5ade8db947b1bb5449 net: hso: fix null-ptr-deref during tty device unregistration + CVEs fixed in 4.4.269: CVE-2017-0605: 150381302389fa01425396489a21dc7c53383a5b tracing: Use strlcpy() instead of strcpy() in __trace_find_cmdline() CVE-2021-31916: 0c0f93fbd20276d65ae0581edfcdc93579aa1dc7 dm ioctl: fix out of bounds array access when no devices CVE-2021-33034: b27a218d166b7f07cd5616fb90e727b6ed662b1a Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-4157: 0c5ccd5e2a2e291774618c24c459fa397fd1b7da pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46939: 91ca6f6a91f679c8645d7f3307e03ce86ad518c4 tracing: Restructure trace_clock_global() to never block CVEs fixed in 4.4.270: CVE-2020-26555: 75523bbfb0eaead670c97fbcf096ca2ab556f0c0 Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1157,16 +1162,34 @@ CVE-2021-29650: 9bc6c1246941cf88cf06a27153d6a1108a240067 netfilter: x_tables: Use correct memory barriers. CVE-2021-32399: a7dc1c981038bbd5f7379148d7fd8821d2a7b9ae bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-34981: 61a811e8f5229264b822361f8b23d7638fd8c914 Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47142: 0707c3fea8102d211631ba515ef2159707561b0d drm/amdgpu: Fix a use-after-free + CVE-2021-47145: 76bfd8ac20bebeae599452a03dfc5724c0475dcf btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: 0e35b7457b7b6e73ffeaaca1a577fdf1af0feca1 mld: fix panic in mld_newpack() + CVE-2021-47149: b92170e209f7746ed72eaac98f2c2f4b9af734e6 net: fujitsu: fix potential null-ptr-deref + CVE-2021-47153: f9469082126cebb7337db3992d143f5e4edfe629 i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47162: b2c8d28c34b3070407cb1741f9ba3f15d0284b8b tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47166: e8b8418ce14ae66ee55179901edd12191ab06a9e NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47168: 9d280ab53df1d4a1043bd7a9e7c6a2f9cfbfe040 NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: 1e04d5d5fe5e76af68f834e1941fcbfa439653be serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47171: 200dbfcad8011e50c3cec269ed7b980836eeb1fa net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47173: 5f46b2410db2c8f26b8bb91b40deebf4ec184391 misc/uss720: fix memory leak in uss720_probe + CVE-2021-47180: 448a1cb12977f52142e6feb12022c59662d88dc1 NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 4.4.272: CVE-2021-3564: 054b0b4f9bf86baac0774e1ea38f4b65497089e5 Bluetooth: fix the erroneous flush_work() order CVE-2021-3573: 2260759b5300865dc209150e925aaeb9df758630 Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: eb6875d48590d8e564092e831ff07fa384d7e477 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: eb6875d48590d8e564092e831ff07fa384d7e477 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47114: 624fa7baa3788dc9e57840ba5b94bc22b03cda57 ocfs2: fix data corruption by fallocate + CVE-2021-47117: e33bafad30d34cfa5e9787cb099cab05e2677fcb ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: 764c2e892d1fe895392aff62fb353fdce43bb529 pid: take a reference when initializing `cad_pid` + CVE-2021-47121: cc302e30a504e6b60a9ac8df7988646f46cd0294 net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: b042e2b2039565eb8f0eb51c14fbe1ef463c8cd8 net: caif: fix memory leak in caif_device_notify CVEs fixed in 4.4.274: CVE-2021-34693: f638caa211e7a121a5596986d29ebbdaf9156398 can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-45486: 8fb8c138b5d69128964e54e1b5ee49fc395f011c inet: use bigger hash table for IP ID generation + CVE-2021-46906: c5d3c142f2d57d40c55e65d5622d319125a45366 HID: usbhid: fix info leak in hid_submit_ctrl CVEs fixed in 4.4.276: CVE-2021-33909: 3533e50cbee8ff086bfa04176ac42a01ee3db37d seq_file: disallow extremely large seq buffer allocations @@ -1246,8 +1269,14 @@ CVE-2021-28715: 0928efb09178e01d3dc8e8849aa1c807436c3c37 xen/netback: don't queue unlimited number of packages CVEs fixed in 4.4.297: + CVE-2021-47086: 0bbdd62ce9d44f3a22059b3d20a0df977d9f6d59 phonet/pep: refuse to enable an unbound pipe CVE-2022-1195: 371a874ea06f147d6ca30be43dad33683965eba6 hamradio: improve the incomplete fix to avoid NPD +CVEs fixed in 4.4.298: + CVE-2021-46932: d2cb2bf39a6d17ef4bdc0e59c1a35cf5751ad8f4 Input: appletouch - initialize work before device registration + CVE-2021-46933: f976dd7011150244a7ba820f2c331e9fb253befa usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: 15579e1301f856ad9385d720c9267c11032a5022 net: fix use-after-free in tw_timer_handler + CVEs fixed in 4.4.299: CVE-2021-4155: 56adcda55aa213e106224ff3d18ef4625e25f52b xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate CVE-2021-45095: 172b3f506c24a61805b3910b9acfe7159d980b9b phonet: refcount leak in pep_sock_accep @@ -1355,6 +1384,7 @@ CVE-2019-20908: (unk) efi: Restrict efivar_ssdt_load when the kernel is locked down CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3874: (unk) sctp: implement memory accounting on tx path CVE-2019-5489: (unk) Change mincore() to count "mapped" pages rather than "cached" pages CVE-2019-7308: (unk) bpf: fix sanitation of alu op with pointer / scalar type from different paths @@ -1395,6 +1425,9 @@ CVE-2020-36322: (unk) fuse: fix bad inode CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails CVE-2020-8832: (unk) drm/i915: Record the default hw state after reset upon load CVE-2021-0399: (unk) CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation @@ -1439,6 +1472,59 @@ CVE-2021-43975: (unk) atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1605,6 +1691,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1653,6 +1742,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list CVE-2023-3022: (unk) ipv6: Use result arg in fib_lookup_arg consistently @@ -1715,7 +1805,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1727,30 +1817,116 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52444: (unk) f2fs: fix to avoid dirent corruption CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1758,10 +1934,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1769,16 +1946,99 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.5/4.5_CVEs.txt b/data/4.5/4.5_CVEs.txt index 5f6d5e6..8f990a3 100644 --- a/data/4.5/4.5_CVEs.txt +++ b/data/4.5/4.5_CVEs.txt
@@ -621,6 +621,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -792,6 +794,11 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -926,6 +933,83 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1099,6 +1183,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1148,6 +1235,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1212,7 +1300,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1224,30 +1312,116 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52444: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1256,10 +1430,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1267,16 +1442,99 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.5/4.5_security.txt b/data/4.5/4.5_security.txt index 21b9a7f..e8a28f1 100644 --- a/data/4.5/4.5_security.txt +++ b/data/4.5/4.5_security.txt
@@ -638,6 +638,8 @@ CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -808,6 +810,11 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -942,6 +949,83 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1115,6 +1199,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1164,6 +1251,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1228,7 +1316,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1240,30 +1328,116 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52444: (unk) f2fs: fix to avoid dirent corruption CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1272,10 +1446,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1283,16 +1458,99 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.6/4.6_CVEs.txt b/data/4.6/4.6_CVEs.txt index ffb5ca2..78f08f0 100644 --- a/data/4.6/4.6_CVEs.txt +++ b/data/4.6/4.6_CVEs.txt
@@ -590,6 +590,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -762,6 +764,11 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -897,6 +904,84 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1072,6 +1157,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1121,6 +1209,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1186,7 +1275,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1198,30 +1287,116 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52444: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1230,10 +1405,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1241,16 +1417,100 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.6/4.6_security.txt b/data/4.6/4.6_security.txt index ce3f365..ff8230c 100644 --- a/data/4.6/4.6_security.txt +++ b/data/4.6/4.6_security.txt
@@ -608,6 +608,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -780,6 +782,11 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -915,6 +922,84 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1090,6 +1175,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1139,6 +1227,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1204,7 +1293,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1216,30 +1305,116 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52444: (unk) f2fs: fix to avoid dirent corruption CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1248,10 +1423,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1259,16 +1435,100 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.7/4.7_CVEs.txt b/data/4.7/4.7_CVEs.txt index 6624bbf..d4a6484 100644 --- a/data/4.7/4.7_CVEs.txt +++ b/data/4.7/4.7_CVEs.txt
@@ -568,6 +568,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -742,6 +744,11 @@ CVE-2020-36557: Fix not seen in stream CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -878,6 +885,87 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1055,6 +1143,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1104,6 +1195,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1169,7 +1261,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1181,30 +1273,116 @@ CVE-2023-52340: Fix not seen in stream CVE-2023-52429: Fix not seen in stream CVE-2023-52434: Fix not seen in stream -CVE-2023-52435: Fix not seen in stream CVE-2023-52436: Fix not seen in stream CVE-2023-52442: Fix not seen in stream CVE-2023-52444: Fix not seen in stream CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1213,10 +1391,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1224,16 +1403,102 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.7/4.7_security.txt b/data/4.7/4.7_security.txt index 8ccaa2e..0b93766 100644 --- a/data/4.7/4.7_security.txt +++ b/data/4.7/4.7_security.txt
@@ -588,6 +588,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -762,6 +764,11 @@ CVE-2020-36557: (unk) vt: vt_ioctl: fix VT_DISALLOCATE freeing in-use virtual console CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -898,6 +905,87 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1075,6 +1163,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1124,6 +1215,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1189,7 +1281,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1201,30 +1293,116 @@ CVE-2023-52340: (unk) ipv6: remove max_size check inline with ipv4 CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52435: (unk) net: prevent mss overflow in skb_segment() CVE-2023-52436: (unk) f2fs: explicitly null-terminate the xattr list CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request CVE-2023-52444: (unk) f2fs: fix to avoid dirent corruption CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1233,10 +1411,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1244,16 +1423,102 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.8/4.8_CVEs.txt b/data/4.8/4.8_CVEs.txt index 84f02e6..79bd3a3 100644 --- a/data/4.8/4.8_CVEs.txt +++ b/data/4.8/4.8_CVEs.txt
@@ -563,6 +563,8 @@ CVE-2019-2182: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fix not seen in stream +CVE-2019-25160: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fix not seen in stream CVE-2019-3460: Fix not seen in stream CVE-2019-3701: Fix not seen in stream @@ -742,6 +744,11 @@ CVE-2020-36558: Fix not seen in stream CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8647: Fix not seen in stream @@ -882,6 +889,89 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -1060,6 +1150,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0266: Fix not seen in stream @@ -1109,6 +1202,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fix not seen in stream CVE-2023-28328: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1173,7 +1267,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1192,24 +1286,111 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1218,10 +1399,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1229,16 +1411,103 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.8/4.8_security.txt b/data/4.8/4.8_security.txt index a545f39..0ccb174 100644 --- a/data/4.8/4.8_security.txt +++ b/data/4.8/4.8_security.txt
@@ -593,6 +593,8 @@ CVE-2019-2182: (unk) arm64: Enforce BBM for huge IO/VMAP mappings CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer CVE-2019-2215: (unk) ANDROID: binder: remove waitqueue when thread exits. + CVE-2019-25160: (unk) netlabel: fix out-of-bounds memory accesses + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3459: (unk) Bluetooth: Verify that l2cap_get_conf_opt provides large enough buffer CVE-2019-3460: (unk) Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt CVE-2019-3701: (unk) can: gw: ensure DLC boundaries after CAN frame modification @@ -772,6 +774,11 @@ CVE-2020-36558: (unk) vt: vt_ioctl: fix race in VT_RESIZEX CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8647: (unk) vgacon: Fix a UAF in vgacon_invert_region @@ -912,6 +919,89 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -1090,6 +1180,9 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -1139,6 +1232,7 @@ CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-26607: (unk) ntfs: fix out-of-bounds read in ntfs_attr_find() CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -1203,7 +1297,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1222,24 +1316,111 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1248,10 +1429,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1259,16 +1441,103 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/4.9/4.9_CVEs.txt b/data/4.9/4.9_CVEs.txt index 727e47e..434b39c 100644 --- a/data/4.9/4.9_CVEs.txt +++ b/data/4.9/4.9_CVEs.txt
@@ -561,6 +561,8 @@ CVE-2019-2182: Fixed with 4.9.211 CVE-2019-2213: Fix not seen in stream CVE-2019-2215: Fixed with 4.9.196 +CVE-2019-25160: Fixed with 4.9.163 +CVE-2019-25162: Fix not seen in stream CVE-2019-3459: Fixed with 4.9.167 CVE-2019-3460: Fixed with 4.9.167 CVE-2019-3701: Fixed with 4.9.152 @@ -741,6 +743,11 @@ CVE-2020-36558: Fixed with 4.9.215 CVE-2020-36691: Fix not seen in stream CVE-2020-36766: Fixed with 4.9.235 +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fixed with 4.9.269 +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream CVE-2020-3702: Fixed with 4.9.283 CVE-2020-4788: Fixed with 4.9.245 CVE-2020-8647: Fixed with 4.9.216 @@ -881,6 +888,92 @@ CVE-2021-45485: Fixed with 4.9.276 CVE-2021-45486: Fixed with 4.9.274 CVE-2021-45868: Fixed with 4.9.291 +CVE-2021-46904: Fixed with 4.9.268 +CVE-2021-46906: Fixed with 4.9.274 +CVE-2021-46908: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46932: Fixed with 4.9.296 +CVE-2021-46933: Fixed with 4.9.296 +CVE-2021-46936: Fixed with 4.9.296 +CVE-2021-46938: Fixed with 4.9.269 +CVE-2021-46939: Fixed with 4.9.269 +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-47006: Fixed with 4.9.269 +CVE-2021-47013: Fixed with 4.9.269 +CVE-2021-47028: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fixed with 4.9.269 +CVE-2021-47056: Fixed with 4.9.269 +CVE-2021-47059: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47078: Fixed with 4.9.270 +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fixed with 4.9.295 +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fixed with 4.9.331 +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fixed with 4.9.272 +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fixed with 4.9.272 +CVE-2021-47118: Fixed with 4.9.272 +CVE-2021-47119: Fix not seen in stream +CVE-2021-47121: Fixed with 4.9.272 +CVE-2021-47122: Fixed with 4.9.272 +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fixed with 4.9.271 +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fixed with 4.9.271 +CVE-2021-47146: Fixed with 4.9.271 +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fixed with 4.9.271 +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fixed with 4.9.271 +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47162: Fixed with 4.9.271 +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fixed with 4.9.271 +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fixed with 4.9.271 +CVE-2021-47169: Fixed with 4.9.271 +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fixed with 4.9.271 +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fixed with 4.9.271 +CVE-2021-47175: Fix not seen in stream +CVE-2021-47179: Fixed with 4.9.271 +CVE-2021-47180: Fixed with 4.9.271 CVE-2022-0001: Fixed with 4.9.306 CVE-2022-0002: Fixed with 4.9.306 CVE-2022-0168: Fix not seen in stream @@ -1059,6 +1152,9 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fixed with 4.9.316 +CVE-2022-48626: Fixed with 4.9.301 +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0030: Fix not seen in stream CVE-2023-0047: Fixed with 4.9.291 CVE-2023-0266: Fix not seen in stream @@ -1111,6 +1207,7 @@ CVE-2023-26545: Fix not seen in stream CVE-2023-26607: Fixed with 4.9.334 CVE-2023-28328: Fixed with 4.9.337 +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 4.9.276 CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -1177,7 +1274,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51043: Fix not seen in stream @@ -1196,24 +1293,111 @@ CVE-2023-52445: Fix not seen in stream CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0584: Fix not seen in stream @@ -1222,10 +1406,11 @@ CVE-2024-1086: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23851: Fix not seen in stream CVE-2024-24855: Fix not seen in stream @@ -1233,16 +1418,104 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown CVE-2024-25741: Fix unknown CVE-2024-25744: Fix not seen in stream -CVE-2024-26584: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/4.9/4.9_security.txt b/data/4.9/4.9_security.txt index 9cb8291..f4733b5 100644 --- a/data/4.9/4.9_security.txt +++ b/data/4.9/4.9_security.txt
@@ -589,6 +589,7 @@ CVE-2019-12818: 05d3d2d0b8574d0f61d12a64e2c6475a5c3d5ba6 net: nfc: Fix NULL dereference on nfc_llcp_build_tlv fails CVE-2019-15916: d81778b842536c9437acb43138f3fc8520b1b12c net-sysfs: Fix mem leak in netdev_register_kobject CVE-2019-2101: 47d77d464e574d56eecb39677df7bc6663635a3f media: uvcvideo: Fix 'type' check leading to overflow + CVE-2019-25160: 1c973f9c7cc2b3caae93192fdc8ecb3f0b4ac000 netlabel: fix out-of-bounds memory accesses CVE-2019-8980: dd6734e17903f16a47c78d0418f02e06df080c54 exec: Fix mem leak in kernel_read_file CVEs fixed in 4.9.164: @@ -1082,17 +1083,28 @@ CVE-2021-22555: 0c58c9f9c5c5326320bbe0429a0f45fc1b92024b netfilter: x_tables: fix compat match/target pad out-of-bound write CVE-2021-3659: c3883480ce4ebe5b13dbfdc9f2c6503bc9e8ab69 net: mac802154: Fix general protection fault +CVEs fixed in 4.9.268: + CVE-2021-46904: 145c89c441d27696961752bf51b323f347601bee net: hso: fix null-ptr-deref during tty device unregistration + CVEs fixed in 4.9.269: CVE-2017-0605: 27b1e95a936e23a9328e1f318c199d3946352531 tracing: Use strlcpy() instead of strcpy() in __trace_find_cmdline() + CVE-2020-36777: 06854b943e0571ccbd7ad0a529babed1a98ff275 media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-31916: c13f07341685149cfbc2014e8b4a85ff56d4ae0e dm ioctl: fix out of bounds array access when no devices CVE-2021-32399: 34f1f8aecf16798c91154e0f6d56b4f804a39bd1 bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: 31f20a6e73663c8ac3c625aa6b24cbdc8541c674 Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-4157: c621f3654bba1096ec913d0942e27bd032bb6090 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46938: 8ae0185255eaf05bd66f4215c81e99bf01140fd9 dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: 859b47a43f5a0e5b9a92b621dc6ceaad39fb5c8b tracing: Restructure trace_clock_global() to never block + CVE-2021-47006: 555a70f7fff03bd669123487905c47ae27dbdaac ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47013: c7f75d11fe72913d2619f97b2334b083cd7bb955 net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47054: a6191e91c10e50bd51db65a00e03d02b6b0cf8c4 bus: qcom: Put child node before return + CVE-2021-47056: f4c4e07140687f42bfa40e091bb4a55d7960ce4d crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init CVEs fixed in 4.9.270: CVE-2020-26555: 6555a006b21ab49090b9a7b36e92d0421db19328 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 6555a006b21ab49090b9a7b36e92d0421db19328 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 6555a006b21ab49090b9a7b36e92d0421db19328 Bluetooth: SMP: Fail if remote and local public keys are identical + CVE-2021-47078: c65391dd9f0a47617e96e38bd27e277cbe1c40b0 RDMA/rxe: Clear all QP fields if creation failed CVEs fixed in 4.9.271: CVE-2020-24586: bb47466456af2f1ac7ab48e5e69d4d8e0dd361e8 mac80211: prevent mixed key and fragment cache attacks @@ -1102,16 +1114,35 @@ CVE-2020-26147: 29bc5b2bccf5f5601cabf9562454f213fb8dcd67 mac80211: assure all fragments are encrypted CVE-2021-29650: e2a2d6c9accf3c3cdf44990c03498e86f27d5ea3 netfilter: x_tables: Use correct memory barriers. CVE-2021-34981: 77c559407276ed4a8854dafc4a5efc8608e51906 Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47142: 3293cf3513d69f00c14d43e2020826d45ea0e46a drm/amdgpu: Fix a use-after-free + CVE-2021-47145: e934c4ee17b33bafb0444f2f9766cda7166d3c40 btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: 17728616a4c85baf0edc975c60ba4e4157684d9a mld: fix panic in mld_newpack() + CVE-2021-47149: 6dbf1101594f7c76990b63c35b5a40205a914b6b net: fujitsu: fix potential null-ptr-deref + CVE-2021-47153: 09c9e79f4c10cfb6b9e0e1b4dd355232e4b5a3b3 i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47162: 5489f30bb78ff0dafb4229a69632afc2ba20765c tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47166: b291baae24f876acd5a5dd57d0bb2bbac8a68b0c NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47168: b287521e9e94bb342ebe5fd8c3fd7db9aef4e6f1 NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: c697244ce940ec07e2d745ccb63ca97fc0266fbc serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47171: 22c840596af0c09068b6cf948616e6496e59e07f net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47173: 7889c70e6173ef358f3cd7578db127a489035a42 misc/uss720: fix memory leak in uss720_probe + CVE-2021-47179: 4e1ba532dbc1a0e19fc2458d74ab8d98680c4e42 NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: 4a621621c7af3cec21c47c349b30cd9c3cea11c8 NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 4.9.272: CVE-2021-3564: 75aa7baab3e18a98f232f14dd9cc6965bcf9b31a Bluetooth: fix the erroneous flush_work() order CVE-2021-3573: 3c62132da179fd30531958d51c68ba4915996556 Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: 39c15bd2e5d11bcf7f4c3dba2aad9e1e110a5d94 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: 39c15bd2e5d11bcf7f4c3dba2aad9e1e110a5d94 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47114: 33e03adafb29eedae1bae9cdb50c1385279fcf65 ocfs2: fix data corruption by fallocate + CVE-2021-47117: 5b3a9a2be59478b013a430ac57b0f3d65471b071 ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: f86c80515a8a3703e0ca2e56deb50fc2879c5ea4 pid: take a reference when initializing `cad_pid` + CVE-2021-47121: 81afc61cb6e2b553f2c5f992fa79e0ae73857141 net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: 9348c1f10932f13b299cbc8b1bd5f780751fae49 net: caif: fix memory leak in caif_device_notify CVEs fixed in 4.9.274: CVE-2021-34693: d240a28396e08023987384ce80bc940bb38ac779 can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-45486: 0889f0a3bb2de535f48424491d8f9d5954a3cde8 inet: use bigger hash table for IP ID generation + CVE-2021-46906: 41b1e71a2c57366b08dcca1a28b0d45ca69429ce HID: usbhid: fix info leak in hid_submit_ctrl CVEs fixed in 4.9.276: CVE-2021-33909: c5157b3e775dac31d51b11f993a06a84dc11fc8c seq_file: disallow extremely large seq buffer allocations @@ -1196,8 +1227,14 @@ CVE-2021-28715: b4226b387436315e7f57465c15335f4f4b5b075d xen/netback: don't queue unlimited number of packages CVEs fixed in 4.9.295: + CVE-2021-47086: b10c7d745615a092a50c2e03ce70446d2bec2aca phonet/pep: refuse to enable an unbound pipe CVE-2022-1195: 83ba6ec97c74fb1a60f7779a26b6a94b28741d8a hamradio: improve the incomplete fix to avoid NPD +CVEs fixed in 4.9.296: + CVE-2021-46932: d1962f263a176f493400b8f91bfbf2bfedce951e Input: appletouch - initialize work before device registration + CVE-2021-46933: cc8c8028c21b2a3842a1e98e99e55028df275919 usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46936: e73164e89d1be561228a4534e1091369ee4ba41a net: fix use-after-free in tw_timer_handler + CVEs fixed in 4.9.297: CVE-2021-4155: 19e3d9a26f28f432ae89acec22ec47b2a72a502c xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate CVE-2021-45095: 3bae29ecb2909c46309671090311230239f1bdd7 phonet: refcount leak in pep_sock_accep @@ -1226,6 +1263,7 @@ CVE-2022-0435: 175db196e45d6f0e6047eccd09c8ba55465eb131 tipc: improve size validations for received domain records CVE-2022-0487: f5dc193167591e88797262ec78515a0cbe79ff5f moxart: fix potential use-after-free on remove path CVE-2022-0492: 7e33a0ad792f04bad920c7197bda8cc2ea08d304 cgroup-v1: Require capabilities to set release_agent + CVE-2022-48626: f5dc193167591e88797262ec78515a0cbe79ff5f moxart: fix potential use-after-free on remove path CVEs fixed in 4.9.302: CVE-2022-25258: f3bcd744b0bc8dcc6cdb3ac5be20f54aecfb78a4 USB: gadget: validate interface OS descriptor requests @@ -1355,6 +1393,7 @@ CVE-2022-39842: a0dcaa48042a56a9eee2efed19563866a0ddbce2 video: fbdev: pxa3xx-gcu: Fix integer overflow in pxa3xx_gcu_write CVEs fixed in 4.9.331: + CVE-2021-47103: 68c34ce11ef23328692aa35fa6aaafdd75913100 inet: fully convert sk->sk_rx_dst to RCU rules CVE-2022-2978: d1ff475d7c83289d0a7faef346ea3bbf90818bad fs: fix UAF/GPF bug in nilfs_mdt_destroy CVE-2022-3542: 9ec3f783f08b57a861700fdf4d3d8f3cfb68f471 bnx2x: fix potential memory leak in bnx2x_tpa_stop() CVE-2022-3565: 1ba21168faf881c23c270605834d01af260cbb72 mISDN: fix use-after-free bugs in l1oip timer handlers @@ -1472,6 +1511,7 @@ CVE-2019-20908: (unk) efi: Restrict efivar_ssdt_load when the kernel is locked down CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3874: (unk) sctp: implement memory accounting on tx path CVE-2019-5489: (unk) Change mincore() to count "mapped" pages rather than "cached" pages CVE-2019-7308: (unk) bpf: fix sanitation of alu op with pointer / scalar type from different paths @@ -1512,6 +1552,10 @@ CVE-2020-36313: (unk) KVM: Fix out of range accesses to memslots CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2020-8832: (unk) drm/i915: Record the default hw state after reset upon load CVE-2020-8834: (unk) KVM: PPC: Book3S HV: Factor fake-suspend handling out of kvmppc_save/restore_tm CVE-2021-0399: (unk) @@ -1546,6 +1590,60 @@ CVE-2021-43975: (unk) atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1619,6 +1717,8 @@ CVE-2022-4744: (unk) tun: avoid double free in tun_free_netdev CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0030: (unk) drm/nouveau/mmu: add more general vmm free/node handling functions CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF CVE-2023-0386: (unk) ovl: fail on invalid uid/gid mapping at copy up @@ -1664,6 +1764,7 @@ CVE-2023-23559: (unk) wifi: rndis_wlan: Prevent buffer overflow in rndis_query_oid CVE-2023-2483: (unk) net: qcom/emac: Fix use after free bug in emac_remove due to race condition CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list CVE-2023-3022: (unk) ipv6: Use result arg in fib_lookup_arg consistently @@ -1725,7 +1826,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51043: (unk) drm/atomic: Fix potential use-after-free in nonblocking commits @@ -1744,24 +1845,111 @@ CVE-2023-52445: (unk) media: pvrusb2: fix use after free on context disconnection CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet @@ -1770,10 +1958,11 @@ CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1781,16 +1970,104 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-25744: (unk) x86/coco: Disable 32-bit emulation by default on TDX and SEV - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.0/5.0_CVEs.txt b/data/5.0/5.0_CVEs.txt index d20842f..812e8a1 100644 --- a/data/5.0/5.0_CVEs.txt +++ b/data/5.0/5.0_CVEs.txt
@@ -247,6 +247,8 @@ CVE-2019-2181: Fix not seen in stream CVE-2019-2213: Fix not seen in stream CVE-2019-25045: Fixed with 5.0.19 +CVE-2019-25160: Fixed with 5.0 +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3459: Fixed with 5.0.6 CVE-2019-3460: Fixed with 5.0.6 @@ -428,6 +430,14 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -589,6 +599,124 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -791,6 +919,10 @@ CVE-2022-47520: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -860,6 +992,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -934,7 +1067,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-51042: Fix not seen in stream @@ -958,25 +1091,118 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -989,10 +1215,11 @@ CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -1001,7 +1228,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -1010,12 +1237,113 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.0/5.0_security.txt b/data/5.0/5.0_security.txt index ed04bcf..fdec569 100644 --- a/data/5.0/5.0_security.txt +++ b/data/5.0/5.0_security.txt
@@ -2,6 +2,7 @@ CVEs fixed in 5.0: CVE-2019-12818: 58bdd544e2933a21a51eecf17c3f5f94038261b5 net: nfc: Fix NULL dereference on nfc_llcp_build_tlv fails CVE-2019-16994: 07f12b26e21ab359261bf75cfcb424fdc7daeb6d net: sit: fix memory leak in sit_init_net() + CVE-2019-25160: 5578de4834fe0f2a34fedc7374be691443396d1f netlabel: fix out-of-bounds memory accesses CVE-2019-9213: 0a1d52994d440e21def1c2174932410b4f2a98a1 mm: enforce min addr even if capable() in expand_downwards() CVEs fixed in 5.0-rc1: @@ -307,6 +308,7 @@ CVE-2019-20934: (unk) sched/fair: Don't free p->numa_faults with concurrent readers CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2213: (unk) binder: fix possible UAF when freeing buffer + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3846: (unk) mwifiex: Fix possible buffer overflows at parsing bss descriptor CVE-2019-3874: (unk) sctp: implement memory accounting on tx path @@ -476,6 +478,14 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -637,6 +647,124 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -839,6 +967,10 @@ CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -908,6 +1040,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -982,7 +1115,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-51042: (unk) drm/amdgpu: Fix potential fence use-after-free v2 @@ -1006,25 +1139,118 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1037,10 +1263,11 @@ CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1049,7 +1276,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -1058,12 +1285,113 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.1/5.1_CVEs.txt b/data/5.1/5.1_CVEs.txt index 499f198..2ec8128 100644 --- a/data/5.1/5.1_CVEs.txt +++ b/data/5.1/5.1_CVEs.txt
@@ -218,6 +218,7 @@ CVE-2019-2213: Fixed with 5.1.15 CVE-2019-2214: Fix not seen in stream CVE-2019-25045: Fixed with 5.1 +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-3846: Fixed with 5.1.18 CVE-2019-3874: Fix not seen in stream @@ -392,6 +393,14 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-7053: Fix not seen in stream @@ -555,6 +564,127 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -769,6 +899,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -840,6 +974,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -916,7 +1051,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -941,18 +1076,112 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -960,7 +1189,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -969,15 +1198,16 @@ CVE-2024-0607: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -986,7 +1216,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -995,12 +1225,117 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.1/5.1_security.txt b/data/5.1/5.1_security.txt index 34a6191..90aeeb4 100644 --- a/data/5.1/5.1_security.txt +++ b/data/5.1/5.1_security.txt
@@ -258,6 +258,7 @@ CVE-2019-20934: (unk) sched/fair: Don't free p->numa_faults with concurrent readers CVE-2019-2181: (unk) binder: check for overflow when alloc for security context CVE-2019-2214: (unk) binder: Set end of SG buffer area properly. + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-3874: (unk) sctp: implement memory accounting on tx path CVE-2019-3900: (unk) vhost_net: fix possible infinite loop @@ -428,6 +429,14 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr @@ -591,6 +600,127 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -805,6 +935,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -876,6 +1010,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -952,7 +1087,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -977,18 +1112,112 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -996,7 +1225,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -1005,15 +1234,16 @@ CVE-2024-0607: (unk) netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -1022,7 +1252,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -1031,12 +1261,117 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.10/5.10_CVEs.txt b/data/5.10/5.10_CVEs.txt index 1a3d1ca..6083feb 100644 --- a/data/5.10/5.10_CVEs.txt +++ b/data/5.10/5.10_CVEs.txt
@@ -27,6 +27,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fixed with 5.10.137 CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -75,6 +76,18 @@ CVE-2020-36322: Fixed with 5.10.6 CVE-2020-36516: Fixed with 5.10.96 CVE-2020-36694: Fixed with 5.10 +CVE-2020-36776: Fixed with 5.10.36 +CVE-2020-36777: Fixed with 5.10.36 +CVE-2020-36778: Fixed with 5.10.37 +CVE-2020-36779: Fixed with 5.10.37 +CVE-2020-36780: Fixed with 5.10.37 +CVE-2020-36781: Fixed with 5.10.37 +CVE-2020-36782: Fixed with 5.10.37 +CVE-2020-36783: Fixed with 5.10.37 +CVE-2020-36784: Fixed with 5.10.37 +CVE-2020-36785: Fixed with 5.10.37 +CVE-2020-36786: Fixed with 5.10.37 +CVE-2020-36787: Fixed with 5.10.37 CVE-2020-3702: Fixed with 5.10.61 CVE-2021-0129: Fixed with 5.10.40 CVE-2021-0399: Fix unknown @@ -251,6 +264,214 @@ CVE-2021-45486: Fixed with 5.10.37 CVE-2021-45868: Fixed with 5.10.80 CVE-2021-46283: Fixed with 5.10.64 +CVE-2021-46904: Fixed with 5.10.30 +CVE-2021-46906: Fixed with 5.10.45 +CVE-2021-46908: Fixed with 5.10.32 +CVE-2021-46909: Fixed with 5.10.32 +CVE-2021-46911: Fixed with 5.10.32 +CVE-2021-46912: Fixed with 5.10.32 +CVE-2021-46913: Fixed with 5.10.64 +CVE-2021-46914: Fixed with 5.10.32 +CVE-2021-46915: Fixed with 5.10.32 +CVE-2021-46917: Fixed with 5.10.32 +CVE-2021-46919: Fixed with 5.10.32 +CVE-2021-46920: Fixed with 5.10.32 +CVE-2021-46921: Fixed with 5.10.33 +CVE-2021-46924: Fixed with 5.10.90 +CVE-2021-46925: Fixed with 5.10.90 +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fixed with 5.10.90 +CVE-2021-46929: Fixed with 5.10.90 +CVE-2021-46930: Fixed with 5.10.90 +CVE-2021-46931: Fixed with 5.10.90 +CVE-2021-46932: Fixed with 5.10.90 +CVE-2021-46933: Fixed with 5.10.90 +CVE-2021-46934: Fixed with 5.10.90 +CVE-2021-46935: Fixed with 5.10.90 +CVE-2021-46936: Fixed with 5.10.90 +CVE-2021-46938: Fixed with 5.10.36 +CVE-2021-46939: Fixed with 5.10.36 +CVE-2021-46940: Fixed with 5.10.36 +CVE-2021-46941: Fixed with 5.10.36 +CVE-2021-46943: Fixed with 5.10.36 +CVE-2021-46944: Fixed with 5.10.36 +CVE-2021-46948: Fixed with 5.10.36 +CVE-2021-46949: Fixed with 5.10.36 +CVE-2021-46950: Fixed with 5.10.36 +CVE-2021-46951: Fixed with 5.10.36 +CVE-2021-46952: Fixed with 5.10.36 +CVE-2021-46953: Fixed with 5.10.36 +CVE-2021-46955: Fixed with 5.10.36 +CVE-2021-46956: Fixed with 5.10.36 +CVE-2021-46958: Fixed with 5.10.36 +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fixed with 5.10.36 +CVE-2021-46961: Fixed with 5.10.36 +CVE-2021-46962: Fixed with 5.10.36 +CVE-2021-46963: Fixed with 5.10.36 +CVE-2021-46965: Fixed with 5.10.36 +CVE-2021-46966: Fixed with 5.10.36 +CVE-2021-46967: Fixed with 5.10.36 +CVE-2021-46968: Fixed with 5.10.36 +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fixed with 5.10.35 +CVE-2021-46972: Fixed with 5.10.35 +CVE-2021-46973: Fixed with 5.10.35 +CVE-2021-46974: Fixed with 5.10.35 +CVE-2021-46976: Fixed with 5.10.38 +CVE-2021-46977: Fixed with 5.10.38 +CVE-2021-46980: Fixed with 5.10.38 +CVE-2021-46981: Fixed with 5.10.38 +CVE-2021-46982: Fixed with 5.10.38 +CVE-2021-46983: Fixed with 5.10.38 +CVE-2021-46984: Fixed with 5.10.38 +CVE-2021-46986: Fixed with 5.10.38 +CVE-2021-46987: Fix not seen in stream +CVE-2021-46988: Fixed with 5.10.38 +CVE-2021-46989: Fixed with 5.10.38 +CVE-2021-46990: Fixed with 5.10.38 +CVE-2021-46991: Fixed with 5.10.38 +CVE-2021-46992: Fixed with 5.10.38 +CVE-2021-46993: Fixed with 5.10.38 +CVE-2021-46994: Fixed with 5.10.38 +CVE-2021-46996: Fixed with 5.10.38 +CVE-2021-46997: Fixed with 5.10.38 +CVE-2021-46998: Fixed with 5.10.38 +CVE-2021-46999: Fixed with 5.10.38 +CVE-2021-47000: Fixed with 5.10.38 +CVE-2021-47001: Fixed with 5.10.38 +CVE-2021-47004: Fixed with 5.10.38 +CVE-2021-47005: Fixed with 5.10.38 +CVE-2021-47006: Fixed with 5.10.38 +CVE-2021-47007: Fixed with 5.10.38 +CVE-2021-47010: Fixed with 5.10.37 +CVE-2021-47012: Fixed with 5.10.37 +CVE-2021-47013: Fixed with 5.10.37 +CVE-2021-47014: Fix not seen in stream +CVE-2021-47015: Fixed with 5.10.37 +CVE-2021-47016: Fixed with 5.10.37 +CVE-2021-47017: Fixed with 5.10.37 +CVE-2021-47018: Fixed with 5.10.37 +CVE-2021-47020: Fixed with 5.10.37 +CVE-2021-47023: Fixed with 5.10.37 +CVE-2021-47024: Fixed with 5.10.37 +CVE-2021-47026: Fixed with 5.10.37 +CVE-2021-47028: Fix not seen in stream +CVE-2021-47032: Fixed with 5.10.37 +CVE-2021-47033: Fixed with 5.10.37 +CVE-2021-47034: Fixed with 5.10.37 +CVE-2021-47035: Fixed with 5.10.38 +CVE-2021-47036: Fix not seen in stream +CVE-2021-47037: Fix not seen in stream +CVE-2021-47038: Fixed with 5.10.37 +CVE-2021-47040: Fixed with 5.10.37 +CVE-2021-47041: Fixed with 5.10.37 +CVE-2021-47043: Fixed with 5.10.37 +CVE-2021-47044: Fixed with 5.10.37 +CVE-2021-47046: Fixed with 5.10.37 +CVE-2021-47047: Fixed with 5.10.37 +CVE-2021-47048: Fixed with 5.10.37 +CVE-2021-47049: Fixed with 5.10.37 +CVE-2021-47050: Fixed with 5.10.37 +CVE-2021-47051: Fixed with 5.10.37 +CVE-2021-47052: Fixed with 5.10.37 +CVE-2021-47053: Fixed with 5.10.37 +CVE-2021-47054: Fixed with 5.10.37 +CVE-2021-47055: Fixed with 5.10.37 +CVE-2021-47056: Fixed with 5.10.37 +CVE-2021-47057: Fixed with 5.10.37 +CVE-2021-47059: Fixed with 5.10.37 +CVE-2021-47060: Fixed with 5.10.37 +CVE-2021-47061: Fixed with 5.10.37 +CVE-2021-47063: Fixed with 5.10.37 +CVE-2021-47064: Fixed with 5.10.37 +CVE-2021-47065: Fixed with 5.10.37 +CVE-2021-47066: Fixed with 5.10.37 +CVE-2021-47067: Fixed with 5.10.37 +CVE-2021-47069: Fixed with 5.10.40 +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fixed with 5.10.40 +CVE-2021-47073: Fixed with 5.10.40 +CVE-2021-47074: Fixed with 5.10.40 +CVE-2021-47075: Fixed with 5.10.40 +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fixed with 5.10.40 +CVE-2021-47078: Fixed with 5.10.40 +CVE-2021-47080: Fixed with 5.10.40 +CVE-2021-47082: Fixed with 5.10.136 +CVE-2021-47083: Fixed with 5.10.89 +CVE-2021-47086: Fixed with 5.10.89 +CVE-2021-47090: Fixed with 5.10.89 +CVE-2021-47091: Fixed with 5.10.89 +CVE-2021-47093: Fixed with 5.10.89 +CVE-2021-47094: Fix not seen in stream +CVE-2021-47095: Fixed with 5.10.89 +CVE-2021-47100: Fixed with 5.10.89 +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fixed with 5.10.150 +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fixed with 5.10.43 +CVE-2021-47110: Fixed with 5.10.43 +CVE-2021-47111: Fixed with 5.10.43 +CVE-2021-47112: Fixed with 5.10.43 +CVE-2021-47113: Fixed with 5.10.43 +CVE-2021-47114: Fixed with 5.10.43 +CVE-2021-47116: Fixed with 5.10.43 +CVE-2021-47117: Fixed with 5.10.43 +CVE-2021-47118: Fixed with 5.10.43 +CVE-2021-47119: Fixed with 5.10.51 +CVE-2021-47120: Fixed with 5.10.43 +CVE-2021-47121: Fixed with 5.10.43 +CVE-2021-47122: Fixed with 5.10.43 +CVE-2021-47124: Fixed with 5.10.55 +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fixed with 5.10.43 +CVE-2021-47128: Fixed with 5.10.43 +CVE-2021-47129: Fixed with 5.10.43 +CVE-2021-47130: Fixed with 5.10.43 +CVE-2021-47131: Fixed with 5.10.43 +CVE-2021-47133: Fix not seen in stream +CVE-2021-47134: Fixed with 5.10.43 +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fixed with 5.10.42 +CVE-2021-47137: Fixed with 5.10.42 +CVE-2021-47138: Fixed with 5.10.42 +CVE-2021-47139: Fixed with 5.10.42 +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fixed with 5.10.42 +CVE-2021-47142: Fixed with 5.10.42 +CVE-2021-47143: Fixed with 5.10.42 +CVE-2021-47144: Fixed with 5.10.42 +CVE-2021-47145: Fixed with 5.10.42 +CVE-2021-47146: Fixed with 5.10.42 +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fixed with 5.10.42 +CVE-2021-47150: Fixed with 5.10.42 +CVE-2021-47151: Fixed with 5.10.42 +CVE-2021-47152: Fixed with 5.10.42 +CVE-2021-47153: Fixed with 5.10.42 +CVE-2021-47158: Fixed with 5.10.42 +CVE-2021-47159: Fixed with 5.10.42 +CVE-2021-47160: Fixed with 5.10.42 +CVE-2021-47161: Fixed with 5.10.42 +CVE-2021-47162: Fixed with 5.10.42 +CVE-2021-47163: Fixed with 5.10.42 +CVE-2021-47164: Fixed with 5.10.42 +CVE-2021-47165: Fixed with 5.10.42 +CVE-2021-47166: Fixed with 5.10.42 +CVE-2021-47167: Fixed with 5.10.42 +CVE-2021-47168: Fixed with 5.10.42 +CVE-2021-47169: Fixed with 5.10.42 +CVE-2021-47170: Fixed with 5.10.42 +CVE-2021-47171: Fixed with 5.10.42 +CVE-2021-47172: Fixed with 5.10.42 +CVE-2021-47173: Fixed with 5.10.42 +CVE-2021-47174: Fixed with 5.10.42 +CVE-2021-47175: Fixed with 5.10.42 +CVE-2021-47177: Fixed with 5.10.42 +CVE-2021-47179: Fixed with 5.10.42 +CVE-2021-47180: Fixed with 5.10.41 CVE-2022-0001: Fixed with 5.10.105 CVE-2022-0002: Fixed with 5.10.105 CVE-2022-0168: Fixed with 5.10.110 @@ -500,6 +721,10 @@ CVE-2022-47929: Fixed with 5.10.163 CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fixed with 5.10.118 +CVE-2022-48626: Fixed with 5.10.100 +CVE-2022-48627: Fixed with 5.10.132 +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fixed with 5.10.108 CVE-2023-0045: Fixed with 5.10.163 CVE-2023-0047: Fixed with 5.10.80 CVE-2023-0160: Fixed with 5.10.180 @@ -584,6 +809,7 @@ CVE-2023-28410: Fixed with 5.10.110 CVE-2023-28466: Fixed with 5.10.177 CVE-2023-2860: Fixed with 5.10.143 +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 5.10.51 CVE-2023-2898: Fixed with 5.10.188 CVE-2023-2985: Fixed with 5.10.173 @@ -674,7 +900,7 @@ CVE-2023-46813: Fixed with 5.10.199 CVE-2023-46838: Fixed with 5.10.209 CVE-2023-46862: Fixed with 5.10.202 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fixed with 5.10.53 CVE-2023-4881: Fixed with 5.10.198 CVE-2023-4921: Fixed with 5.10.195 @@ -688,7 +914,7 @@ CVE-2023-5197: Fixed with 5.10.198 CVE-2023-52340: Fixed with 5.10.208 CVE-2023-52429: Fixed with 5.10.210 -CVE-2023-52434: Fix not seen in stream +CVE-2023-52434: Fixed with 5.10.211 CVE-2023-52435: Fixed with 5.10.210 CVE-2023-52436: Fixed with 5.10.209 CVE-2023-52438: Fixed with 5.10.209 @@ -697,25 +923,132 @@ CVE-2023-52443: Fixed with 5.10.209 CVE-2023-52444: Fixed with 5.10.209 CVE-2023-52445: Fixed with 5.10.209 -CVE-2023-52447: Fix not seen in stream +CVE-2023-52447: Fixed with 5.10.214 CVE-2023-52448: Fixed with 5.10.209 CVE-2023-52449: Fixed with 5.10.209 CVE-2023-52451: Fixed with 5.10.209 CVE-2023-52454: Fixed with 5.10.209 CVE-2023-52456: Fixed with 5.10.209 -CVE-2023-52457: Fixed with 5.10.209 CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fixed with 5.10.209 CVE-2023-52464: Fixed with 5.10.209 +CVE-2023-52467: Fixed with 5.10.209 +CVE-2023-52469: Fixed with 5.10.209 +CVE-2023-52470: Fixed with 5.10.209 +CVE-2023-52474: Fixed with 5.10.180 +CVE-2023-52475: Fixed with 5.10.199 +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fixed with 5.10.199 +CVE-2023-52478: Fixed with 5.10.199 +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fixed with 5.10.210 +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fixed with 5.10.210 +CVE-2023-52491: Fixed with 5.10.210 +CVE-2023-52492: Fixed with 5.10.210 +CVE-2023-52493: Fixed with 5.10.210 +CVE-2023-52497: Fixed with 5.10.211 +CVE-2023-52498: Fixed with 5.10.210 +CVE-2023-52500: Fixed with 5.10.198 +CVE-2023-52501: Fixed with 5.10.198 +CVE-2023-52502: Fixed with 5.10.199 +CVE-2023-52503: Fixed with 5.10.199 +CVE-2023-52504: Fixed with 5.10.199 +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fixed with 5.10.199 +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fixed with 5.10.199 +CVE-2023-52510: Fixed with 5.10.199 +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fixed with 5.10.198 +CVE-2023-52515: Fixed with 5.10.199 +CVE-2023-52516: Fixed with 5.10.198 +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fixed with 5.10.198 +CVE-2023-52527: Fixed with 5.10.198 +CVE-2023-52528: Fixed with 5.10.198 +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fixed with 5.10.198 +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fixed with 5.10.198 +CVE-2023-52574: Fixed with 5.10.198 +CVE-2023-52578: Fixed with 5.10.198 +CVE-2023-52583: Fixed with 5.10.210 +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fixed with 5.10.210 +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fixed with 5.10.210 +CVE-2023-52595: Fixed with 5.10.210 +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fixed with 5.10.210 +CVE-2023-52598: Fixed with 5.10.210 +CVE-2023-52599: Fixed with 5.10.210 +CVE-2023-52600: Fixed with 5.10.210 +CVE-2023-52601: Fixed with 5.10.210 +CVE-2023-52602: Fixed with 5.10.210 +CVE-2023-52603: Fixed with 5.10.210 +CVE-2023-52604: Fixed with 5.10.210 +CVE-2023-52606: Fixed with 5.10.210 +CVE-2023-52607: Fixed with 5.10.210 +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fixed with 5.10.209 +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fixed with 5.10.209 +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fixed with 5.10.210 +CVE-2023-52616: Fixed with 5.10.210 +CVE-2023-52617: Fixed with 5.10.210 +CVE-2023-52618: Fixed with 5.10.210 +CVE-2023-52619: Fixed with 5.10.210 +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fixed with 5.10.210 +CVE-2023-52623: Fixed with 5.10.210 +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fixed with 5.10.210 +CVE-2023-52628: Fixed with 5.10.198 +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fixed with 5.10.210 +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fixed with 5.10.210 +CVE-2023-52637: Fixed with 5.10.210 +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fixed with 5.10.199 CVE-2023-6040: Fixed with 5.10.208 CVE-2023-6121: Fixed with 5.10.203 CVE-2023-6176: Fixed with 5.10.195 CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 5.10.214 +CVE-2023-6356: Fixed with 5.10.209 CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fixed with 5.10.209 CVE-2023-6546: Fixed with 5.10.192 CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fixed with 5.10.206 @@ -724,25 +1057,26 @@ CVE-2023-6915: Fixed with 5.10.209 CVE-2023-6931: Fixed with 5.10.204 CVE-2023-6932: Fixed with 5.10.203 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fixed with 5.10.214 CVE-2023-7192: Fixed with 5.10.173 CVE-2024-0340: Fixed with 5.10.210 CVE-2024-0564: Fix unknown -CVE-2024-0565: Fix not seen in stream +CVE-2024-0565: Fixed with 5.10.211 CVE-2024-0584: Fixed with 5.10.203 CVE-2024-0607: Fixed with 5.10.210 CVE-2024-0641: Fixed with 5.10.198 CVE-2024-0646: Fixed with 5.10.208 CVE-2024-0775: Fixed with 5.10.180 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fixed with 5.10.212 CVE-2024-1086: Fixed with 5.10.210 CVE-2024-1151: Fixed with 5.10.210 CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 5.10.214 CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fixed with 5.10.192 +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 5.10.210 CVE-2024-23850: Fixed with 5.10.210 @@ -752,7 +1086,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fixed with 5.10.209 -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -762,13 +1096,133 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fixed with 5.10.209 -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fixed with 5.10.210 CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fixed with 5.10.209 CVE-2024-26598: Fixed with 5.10.209 +CVE-2024-26600: Fixed with 5.10.210 +CVE-2024-26602: Fixed with 5.10.210 +CVE-2024-26606: Fixed with 5.10.210 +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fixed with 5.10.210 +CVE-2024-26614: Fixed with 5.10.210 +CVE-2024-26615: Fixed with 5.10.210 +CVE-2024-26622: Fixed with 5.10.212 +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fixed with 5.10.210 +CVE-2024-26627: Fixed with 5.10.210 +CVE-2024-26633: Fixed with 5.10.209 +CVE-2024-26635: Fixed with 5.10.210 +CVE-2024-26636: Fixed with 5.10.210 +CVE-2024-26640: Fixed with 5.10.210 +CVE-2024-26641: Fixed with 5.10.210 +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fixed with 5.10.210 +CVE-2024-26645: Fixed with 5.10.210 +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fixed with 5.10.214 +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fixed with 5.10.213 +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fixed with 5.10.210 +CVE-2024-26664: Fixed with 5.10.210 +CVE-2024-26665: Fixed with 5.10.210 +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fixed with 5.10.210 +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fixed with 5.10.210 +CVE-2024-26675: Fixed with 5.10.210 +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fixed with 5.10.210 +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fixed with 5.10.210 +CVE-2024-26685: Fixed with 5.10.210 +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fixed with 5.10.212 +CVE-2024-26689: Fixed with 5.10.210 +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fixed with 5.10.210 +CVE-2024-26697: Fixed with 5.10.210 +CVE-2024-26698: Fixed with 5.10.210 +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fixed with 5.10.210 +CVE-2024-26704: Fixed with 5.10.210 +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fixed with 5.10.210 +CVE-2024-26712: Fixed with 5.10.210 +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fixed with 5.10.210 +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fixed with 5.10.210 +CVE-2024-26733: Fixed with 5.10.211 +CVE-2024-26735: Fixed with 5.10.211 +CVE-2024-26736: Fixed with 5.10.211 +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fixed with 5.10.211 +CVE-2024-26744: Fixed with 5.10.211 +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fixed with 5.10.211 +CVE-2024-26748: Fixed with 5.10.211 +CVE-2024-26749: Fixed with 5.10.211 +CVE-2024-26751: Fixed with 5.10.211 +CVE-2024-26752: Fixed with 5.10.211 +CVE-2024-26754: Fixed with 5.10.211 +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fixed with 5.10.211 +CVE-2024-26764: Fixed with 5.10.211 +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fixed with 5.10.211 +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fixed with 5.10.211 +CVE-2024-26772: Fixed with 5.10.211 +CVE-2024-26773: Fixed with 5.10.211 +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fixed with 5.10.211 +CVE-2024-26777: Fixed with 5.10.211 +CVE-2024-26778: Fixed with 5.10.211 +CVE-2024-26779: Fixed with 5.10.211 +CVE-2024-26782: Fixed with 5.10.212 +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fixed with 5.10.213 +CVE-2024-26788: Fixed with 5.10.212 +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fixed with 5.10.212 +CVE-2024-26791: Fixed with 5.10.212 +CVE-2024-26793: Fixed with 5.10.212 +CVE-2024-26795: Fixed with 5.10.212 +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fixed with 5.10.212 +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fixed with 5.10.212 +CVE-2024-26805: Fixed with 5.10.212 +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fixed with 5.10.210 +CVE-2024-26809: Fixed with 5.10.214
diff --git a/data/5.10/5.10_security.txt b/data/5.10/5.10_security.txt index 9817c9c..b6074d2 100644 --- a/data/5.10/5.10_security.txt +++ b/data/5.10/5.10_security.txt
@@ -102,6 +102,7 @@ CVE-2020-25672: 568ac94df580b1a65837dc299e8758635e7b1423 nfc: fix memory leak in llcp_sock_connect() CVE-2020-25673: a12a2fa9a129d3200065fde95f6eb0a98672a2c3 nfc: Avoid endless loops caused by repeated llcp_sock_connect() CVE-2021-3659: 38731bbcd9f0bb8228baaed5feb4a1f76530e49c net: mac802154: Fix general protection fault + CVE-2021-46904: dc195928d7e4ec7b5cfc6cd10dc4c8d87a7c72ac net: hso: fix null-ptr-deref during tty device unregistration CVEs fixed in 5.10.31: CVE-2021-0937: 1f3b9000cb44318b0de40a0f495a5a708cd9be6e netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -111,16 +112,67 @@ CVE-2021-23133: 5a627026be4a17e5b9db23558cd28e62b2cbc66e net/sctp: fix race condition in sctp_destroy_sock CVE-2021-29155: 4f3ff11204eac0ee23acf64deecb3bad7b0db0c6 bpf: Use correct permission flag for mixed signed bounds arithmetic CVE-2021-3501: 7f64753835a78c7d2cc2932a5808ef3b7fd4c050 KVM: VMX: Don't use vcpu->run->internal.ndata as an array index + CVE-2021-46908: 4f3ff11204eac0ee23acf64deecb3bad7b0db0c6 bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: 1fc087fdb98d556b416c82ed6e3964a30885f47a ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46911: 8d5a9dbd2116a852f8f0f91f6fbc42a0afe1091f ch_ktls: Fix kernel panic + CVE-2021-46912: 35d7491e2f77ce480097cabcaf93ed409e916e12 net: Make tcp_allowed_congestion_control readonly in non-init netns + CVE-2021-46914: be07581aacae7cd0a073afae8e8862032f794309 ixgbe: fix unbalanced device enable/disable in suspend/resume + CVE-2021-46915: dc1732baa9da5b68621586bf8636ebbc27dc62d2 netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46917: e5eb9757fe4c2392e069246ae78badc573af1833 dmaengine: idxd: fix wq cleanup of WQCFG registers + CVE-2021-46919: 4ecf25595273203010bc8318c4aee60ad64037ae dmaengine: idxd: fix wq size store permission state + CVE-2021-46920: a5ad12d5d69c63af289a37f05187a0c6fe93553d dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback + +CVEs fixed in 5.10.33: + CVE-2021-46921: 82fa9ced35d88581cffa4a1c856fc41fca96d80a locking/qrwlock: Fix ordering in queued_write_lock_slowpath() CVEs fixed in 5.10.35: CVE-2021-31829: 2cfa537674cd1051a3b8111536d77d0558f33d5d bpf: Fix masking negation logic upon negative dst register CVE-2021-38209: d3598eb3915cc0c0d8cab42f4a6258ff44c4033e netfilter: conntrack: Make global sysctls readonly in non-init netns + CVE-2021-46971: 4348d3b5027bc3ff6336368b6c60605d4ef8e1ce perf/core: Fix unconditional security_locked_down() call + CVE-2021-46972: 71d58457a8afc650da5d3292a7f7029317654d95 ovl: fix leaked dentry + CVE-2021-46973: 48ec949ac979b4b42d740f67b6177797af834f80 net: qrtr: Avoid potential use after free in MHI send + CVE-2021-46974: 2cfa537674cd1051a3b8111536d77d0558f33d5d bpf: Fix masking negation logic upon negative dst register CVEs fixed in 5.10.36: + CVE-2020-36776: c24a20912eef00587416628149c438e885eb1304 thermal/drivers/cpufreq_cooling: Fix slab OOB issue + CVE-2020-36777: 43263fd43083e412311fa764cd04a727b0c6a749 media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-3506: 9aa4602237d535b83c579eb752e8fc1c3e7e7055 f2fs: fix to avoid out-of-bounds memory access CVE-2021-3543: ed9cfd60c7875b0597e672e89c0bad09a88307d2 nitro_enclaves: Fix stale file descriptors on failed usercopy + CVE-2021-46938: 1cb02dc76f4c0a2749a02b26469512d6984252e9 dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: a33614d52e97fc8077eb0b292189ca7d964cc534 tracing: Restructure trace_clock_global() to never block + CVE-2021-46940: ea6803ff2cd1a2d7d880256bf562172b708a76ff tools/power turbostat: Fix offset overflow issue in index converting + CVE-2021-46941: fce7bbcd07d59ac30dba8ce225316b3b4c1c7b50 usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: c6b81b897f6f9445d57f8d47c4e060ec21556137 media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: 517f6f570566a863c2422b843c8b7d099474f6a9 media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46948: bf2b941d0a6f2d3b9f5fa3c4c21bdd54f71ce253 sfc: farch: fix TX queue lookup in TX event handling + CVE-2021-46949: fb791572d6747ef385f628450f8d57cd132e6e5a sfc: farch: fix TX queue lookup in TX flush done handling + CVE-2021-46950: 661061a45e32d8b2cc0e306da9f169ad44011382 md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: 60a01ecc9f68067e4314a0b55148e39e5d58a51b tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: 96fa26b74cdcf9f5c98996bf36bec9fb5b19ffe2 NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: e0f2d86481eaa83df33b0793f75212919db7a19d ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: a1478374b0bda89b4277a8afd39208271faad4be openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: d19555ff225d0896a33246a49279e6d578095f15 virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46958: a4794be7b00b7eda4b45fffd283ab7d76df7e5d6 btrfs: fix race between transaction aborts and fsyncs leading to use-after-free + CVE-2021-46960: aaa0faa5c28a91c362352d6b35dc3ed10df56fb0 cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: 7be4db5c2b59fa77071c93ca4329876fb9777202 irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: 25ac6ce65f1ab458982d15ec1caf441acd37106a mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: 702cdaa2c6283c135ef16d52e0e4e3c1005aa538 scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46965: 34ec706bf0b7c4ca249a729c1bcb91f706c7a7be mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: 62dc2440ebb552aa0d7f635e1697e077d9d21203 ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46967: 3b8b6399666a29daa30b0bb3f5c9e3fc81c5a6a6 vhost-vdpa: fix vm_flags for virtqueue doorbell mapping + CVE-2021-46968: 026499a9c2e002e621ad568d1378324ae97e5524 s390/zcrypt: fix zcard and zqueue hot-unplug memleak CVEs fixed in 5.10.37: + CVE-2020-36778: c977426db644ba476938125597947979e8aba725 i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: c323b270a52a26aa8038a4d1fd9a850904a41166 i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: e547640cee7981fd751d2c9cde3a61bdb678b755 i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: 3a0cdd336d92c429b51a79bf4f64b17eafa0325d i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: cc49d206414240483bb93ffa3d80243e6a776916 i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: e80ae8bde41266d3b8bf012460b6593851766006 i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: 30410519328c94367e561fd878e5f0d3a0303585 i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36785: d218c7a0284f6b92a7b82d2e19706e18663b4193 media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() + CVE-2020-36786: cc4cc2fb5aaf9adb83c02211eb13b16cfcb7ba64 media: [next] staging: media: atomisp: fix memory leak of object flash + CVE-2020-36787: a59d01384c80a8a4392665802df57c3df20055f5 media: aspeed: fix clock handling logic CVE-2021-31440: 4394be0a1866fb78a4dfe0ea38e29c4ed107b890 bpf: Fix propagation of 32 bit unsigned bounds from 64 bit bounds CVE-2021-32399: 2d84ef4e6569a818f912d93d5345c21542807ac7 bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: 1d7bd87a2c8d264ca3e5c9ba6f3eafc23e994028 Bluetooth: verify AMP hci_chan before amp_destroy @@ -128,14 +180,90 @@ CVE-2021-3490: 282bfc8848eaa195d5e994bb700f2c7afb7eb3e6 bpf: Fix alu32 const subreg bound tracking on bitwise operations CVE-2021-3491: 7e916d0124e5f40d7912f93a633f5dee2c3ad735 io_uring: truncate lengths larger than MAX_RW_COUNT on provide buffers CVE-2021-45486: a273c27d7255fc527023edeb528386d1b64bedf5 inet: use bigger hash table for IP ID generation + CVE-2021-47010: 6c1ea8bee75df8fe2184a50fcd0f70bf82986f42 net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: 608a4b90ece039940e9425ee2b39c8beff27e00c RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: 9dc373f74097edd0e35f3393d6248eda8d1ba99d net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: 4fcaad2b7dac3f16704f8118c7e481024ddbd3ed bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: 1dfb26df15fc7036a74221d43de7427f74293dae m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47017: 8bb054fb336f4250002fff4e0b075221c05c3c65 ath10k: Fix a use after free in ath10k_htc_send_bundle + CVE-2021-47018: 4b9fb2c9039a206d37f215936a4d5bee7b1bf9cd powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: 7c468deae306d0cbbd539408c26cfec04c66159a soundwire: stream: fix memory leak in stream config error path + CVE-2021-47023: 0ce6052802be2cb61a57b753e41301339c88c839 net: marvell: prestera: fix port event handling on init + CVE-2021-47024: b605673b523fe33abeafb2136759bcbc9c1e6ebf vsock/virtio: free queued packets when closing socket + CVE-2021-47026: b64415c6b3476cf9fa4d0aea3807065b8403a937 RDMA/rtrs-clt: destroy sysfs after removing session from active list + CVE-2021-47032: 4e7914ce23306b28d377ec395e00e5fde0e6f96e mt76: mt7915: fix tx skb dma unmap + CVE-2021-47033: 75bc5f779a7664d1fc19cb915039439c6e58bb94 mt76: mt7615: fix tx skb dma unmap + CVE-2021-47034: 84c0762633f2a7ac8399e6b97d3b9bb8e6e1d50f powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47038: 7cc0ba67883c6c8d3bddb283f56c167fc837a555 Bluetooth: avoid deadlock between hci_dev->lock and socket lock + CVE-2021-47040: cbbc13b115b8f18e0a714d89f87fbdc499acfe2d io_uring: fix overflows checks in provide buffers + CVE-2021-47041: 60ade0d56b06537a28884745059b3801c78e03bc nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: 00b68a7478343afdf83f30c43e64db5296057030 media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47044: 80862cbf76c2646f709a57c4517aefe0b094c774 sched/fair: Fix shift-out-of-bounds in load_balance() + CVE-2021-47046: 403c4528e5887af3deb9838cb77a557631d1e138 drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47047: 5980a3b9c933408bc22b0e349b78c3ebd7cbf880 spi: spi-zynqmp-gqspi: return -ENOMEM if dma_map_single fails + CVE-2021-47048: 1231279389b5e638bc3b66b9741c94077aed4b5a spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op + CVE-2021-47049: d5c7b42c9f56ca46b286daa537d181bd7f69214f Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47050: 71bcc1b4a1743534d8abdcb57ff912e6bc390438 memory: renesas-rpc-if: fix possible NULL pointer dereference of resource + CVE-2021-47051: ce02e58ddf8658a4c3bed2296f32a5873b3f7cce spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: 0e596b3734649041ed77edc86a23c0442bbe062b crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47053: 2c67a9333da9d0a3b87310e0d116b7c9070c7b00 crypto: sun8i-ss - Fix memory leak of pad + CVE-2021-47054: 00f6abd3509b1d70d0ab0fbe65ce5685cebed8be bus: qcom: Put child node before return + CVE-2021-47055: 7b6552719c0ccbbea29dde4be141da54fdb5877e mtd: require write permissions for locking and badblock ioctls + CVE-2021-47056: 1f50392650ae794a1aea41c213c6a3e1c824413c crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47057: 617ec35ed51f731a593ae7274228ef2cfc9cb781 crypto: sun8i-ss - Fix memory leak of object d when dma_iv fails to map + CVE-2021-47059: 1f12aaf07f61122cf5074d29714ee26f8d44b0e7 crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47060: 2a20592baff59c5351c5200ec667e1a2aa22af85 KVM: Stop looking for coalesced MMIO zones if the bus is destroyed + CVE-2021-47061: 03c6cccedd3913006744faa252a4da5145299343 KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU + CVE-2021-47063: ce450934a00cf896e648fde08d0bd1426653d7a2 drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47064: 9fa26701cd1fc4d932d431971efc5746325bdfce mt76: fix potential DMA mapping leak + CVE-2021-47065: 95fb153c6027924cda3422120169d1890737f3a0 rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47066: cab2e8e5997b592fdb7d02cf2387b4b8e3057174 async_xor: increase src_offs when dropping destination page + CVE-2021-47067: a1ad124c836816fac8bd5e461d36eaf33cee4e24 soc/tegra: regulators: Fix locking up when voltage-spread is out of range CVEs fixed in 5.10.38: CVE-2021-4157: 1fbea60ea658ab887fb899532d783732b04e53e6 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46976: 805c990a9c54b9451d3daff640b850909c31ab9d drm/i915: Fix crash in auto_retire + CVE-2021-46977: 31f29749ee970c251b3a7e5b914108425940d089 KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46980: e5366bea0277425e1868ba20eeb27c879d5a6e2d usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4 + CVE-2021-46981: cde4b55cfb24522dcbba80bbdb0c082303e76c43 nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: 5639b73fd3bc6fc8ca72e3a9ac15aacaabd7ebff f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46983: 64f3410c7bfc389b1a58611d0799f4a36ce4b6b5 nvmet-rdma: Fix NULL deref when SEND is completed with error + CVE-2021-46984: 54dbe2d2c1fcabf650c7a8b747601da355cd7f9f kyber: fix out of bounds access when preempted + CVE-2021-46986: 1ea775021282d90e1d08d696b7ab54aa75d688e5 usb: dwc3: gadget: Free gadget structure only after freeing endpoints + CVE-2021-46988: 140cfd9980124aecb6c03ef2e69c72d0548744de userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: adbd8a2a8cc05d9e501f93e5c95c59307874cc99 hfsplus: prevent corruption in shrinking truncate + CVE-2021-46990: d2e3590ca39ccfd8a5a46d8c7f095cb6c7b9ae92 powerpc/64s: Fix crashes when toggling entry flush barrier + CVE-2021-46991: 829a713450b8fb127cbabfc1244c1d8179ec5107 i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: 72b49dd116ca00a46a11d5a4d8d7987f05ed9cd7 netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: f7347c85490b92dd144fa1fba9e1eca501656ab3 sched: Fix out-of-bound access in uclamp + CVE-2021-46994: eecb4df8ec9f896b19ee05bfa632ac6c1dcd8f21 can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46996: 2c784a500f5edd337258b0fdb2f31bc9abde1a23 netfilter: nftables: Fix a memleak from userdata error path in new objects + CVE-2021-46997: 51524fa8b5f7b879ba569227738375d283b79382 arm64: entry: always set GIC_PRIO_PSR_I_SET during entry + CVE-2021-46998: 7afdd6aba95c8a526038e7abe283eeac3e4320f1 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-46999: f01988ecf3654f805282dce2d3bb9afe68d2691e sctp: do asoc update earlier in sctp_sf_do_dupcook_a + CVE-2021-47000: bf45c9fe99aa8003d2703f1bd353f956dea47e40 ceph: fix inode leak on getattr error in __fh_to_dentry + CVE-2021-47001: eddae8be7944096419c2ae29477a45f767d0fcd4 xprtrdma: Fix cwnd update ordering + CVE-2021-47004: 105155a8146ddb54c119d8318964eef3859d109d f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: bbed83d7060e07a5d309104d25a00f0a24441428 PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: 630146203108bf6b8934eec0dfdb3e46dcb917de ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47007: 1c20a4896409f5ca1c770e1880c33d0a28a8b10f f2fs: fix panic during f2fs_resize_fs() + CVE-2021-47035: 89bd620798704a8805fc9db0d71d7f812cf5b3d2 iommu/vt-d: Remove WO permissions on second-level paging entries CVEs fixed in 5.10.40: CVE-2020-26555: d8d261c7cfb3a5dd921b4aeeb944718afc3f3961 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: d8d261c7cfb3a5dd921b4aeeb944718afc3f3961 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: d8d261c7cfb3a5dd921b4aeeb944718afc3f3961 Bluetooth: SMP: Fail if remote and local public keys are identical + CVE-2021-47069: 4528c0c323085e645b8765913b4a7fd42cf49b65 ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47071: d84b5e912212b05f6b5bde9f682046accfbe0354 uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: 0cf036a0d325200e6c27b90908e51195bbc557b1 platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: 9c980795ccd77e8abec33dd6fe28dfe1c4083e65 nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: 4720f29acb3fe67aa8aa71e6b675b079d193aaeb nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47077: a6362a737572f66051deb7637f3f77ddf7a4402f scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: 2ee4d79c364914989c80de382c0b1a7259a7e4b3 RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47080: 66ab7fcdac34b890017f04f391507ef5b2b89a13 RDMA/core: Prevent divide-by-zero error triggered by the user + +CVEs fixed in 5.10.41: + CVE-2021-47180: b34cb7ac32cc8e5471dc773180ea9ae676b1a745 NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 5.10.42: CVE-2020-24586: 42d98e02193d163c1523a8840a2effcc4c6eb111 mac80211: prevent mixed key and fragment cache attacks @@ -147,6 +275,41 @@ CVE-2020-26147: f7829b014bb670a77f6f66d265b058534367d04b mac80211: assure all fragments are encrypted CVE-2021-33098: 3cfd11506ed032446358eedf7e31b4defd819d91 ixgbe: fix large MTU request from VF CVE-2021-34981: 1b364f8ede200e79e25df0df588fcedc322518fb Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47136: ac493452e937b8939eaf2d24cac51a4804b6c20e net: zero-initialize tc skb extension on allocation + CVE-2021-47137: 5ac72351655f8b033a2935646f53b7465c903418 net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: 02f03883fdb10ad7e66717c70ea163a8d27ae6e7 cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: a663c1e418a3b5b8e8edfad4bc8e7278c312d6fc net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47141: da21a35c00ff1a1794d4f166d3b3fa8db4d0f6fb gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: f98cdf084405333ee2f5be548a91b2d168e49276 drm/amdgpu: Fix a use-after-free + CVE-2021-47143: 8b2cdc004d21a7255f219706dca64411108f7897 net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: 9fdb8ed37a3a44f9c49372b69f87fd5f61cb3240 drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: 7e13db503918820e6333811cdc6f151dcea5090a btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: beb39adb150f8f3b516ddf7c39835a9788704d23 mld: fix panic in mld_newpack() + CVE-2021-47149: 71723a796ab7881f491d663c6cd94b29be5fba50 net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: 8ee7ef4a57a9e1228b6f345aaa70aa8951c7e9cd net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: 4e3cea8035b6f1b9055e69cc6ebf9fa4e50763ae interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47152: 3267a061096efc91eda52c2a0c61ba76e46e4b34 mptcp: fix data stream corruption + CVE-2021-47153: b523feb7e8e44652f92f3babb953a976e7ccbbef i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: dd8609f203448ca6d58ae71461208b3f6b0329b0 net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: caff86f85512b8e0d9830e8b8b0dfe13c68ce5b6 net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: b91117b66fe875723a4e79ec6263526fffdb44d2 net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: fe6921e3b8451a537e01c031b8212366bb386e3e spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: 6da24cfc83ba4f97ea44fc7ae9999a006101755c tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: 5195ec5e365a2a9331bfeb585b613a6e94f98dba tipc: wait and exit until all work queues are done + CVE-2021-47164: 2e4b0b95a489259f9d35a3db17023061f8f3d587 net/mlx5e: Fix null deref accessing lag dev + CVE-2021-47165: d66083c0d6f5125a4d982aa177dd71ab4cd3d212 drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: 7087db95c0a06ab201b8ebfac6a7ec1e34257997 NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: ee21cd3aa8548e0cbc8c67a80b62113aedd2d101 NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: 9b367fe770b1b80d7bf64ed0d177544a44405f6e NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: 6a931ceb0b9401fe18d0c500e08164bf9cc7be4b serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: 8d83f109e920d2776991fa142bb904d985dca2ed USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: 635ac38b36255d3cfb8312cf7c471334f4d537e0 net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: f70122825076117787b91e7f219e21c09f11a5b9 iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: 5394ae9d8c7961dd93807fdf1b12a1dde96b0a55 misc/uss720: fix memory leak in uss720_probe + CVE-2021-47174: b1f45a26bd322525c14edd9504f6d46dfad679a4 netfilter: nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version + CVE-2021-47175: e6294c06e7c62ffdd5bf3df696d3a4fcbb753d3c net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: f01134321d04f47c718bb41b799bcdeda27873d2 iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: f9890652185b72b8de9ebeb4406037640b6e1b53 NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() CVEs fixed in 5.10.43: CVE-2021-28691: 6b53db8c4c14b4e7256f058d202908b54a7b85b4 xen-netback: take a reference to the RX task thread @@ -154,10 +317,31 @@ CVE-2021-3573: 74caf718cc7422a957aac381c73d798c0a999a65 Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: 48ee0db61c8299022ec88c79ad137f290196cac2 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: 48ee0db61c8299022ec88c79ad137f290196cac2 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47109: d17d47da59f726dc4c87caebda3a50333d7e2fd3 neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: 3b0becf8b1ecf642a9edaf4c9628ffc641e490d6 x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: 6b53db8c4c14b4e7256f058d202908b54a7b85b4 xen-netback: take a reference to the RX task thread + CVE-2021-47112: 38b858da1c58ad46519a257764e059e663b59ff2 x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: 0df50d47d17401f9f140dfbe752a65e5d72f9932 btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: c8d5faee46242c3f33b8a71a4d7d52214785bfcc ocfs2: fix data corruption by fallocate + CVE-2021-47116: 2050c6e5b161e5e25ce3c420fef58b24fa388a49 ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: d3b668b96ad3192c0581a248ae2f596cd054792a ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: 7178be006d495ffb741c329012da289b62dddfe6 pid: take a reference when initializing `cad_pid` + CVE-2021-47120: b5d013c4c76b276890135b5d32803c4c63924b77 HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: 46403c1f80b0d3f937ff9c4f5edc63bb64bc5051 net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: af2806345a37313f01b1c9f15e046745b8ee2daa net: caif: fix memory leak in caif_device_notify + CVE-2021-47126: 09870235827451409ff546b073d754a19fd17e2e ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: ff5039ec75c83d2ed5b781dc7733420ee8c985fc bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: 5f3429c05e4028a0e241afdad856dd15dec2ffb9 netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47130: c440cd080761b18a52cac20f2a42e5da1e3995af nvmet: fix freeing unallocated p2pmem + CVE-2021-47131: f1d4184f128dede82a59a841658ed40d4e6d3aa2 net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47134: 5148066edbdc89c6fe5bc419c31a5c22e5f83bdb efi/fdt: fix panic when no valid fdt found CVEs fixed in 5.10.44: CVE-2021-38198: 6b6ff4d1f349cb35a7c7d2057819af1b14f80437 KVM: X86: MMU: Use the correct inherited permissions to get shadow page +CVEs fixed in 5.10.45: + CVE-2021-46906: b1e3596416d74ce95cc0b7b38472329a3818f8a9 HID: usbhid: fix info leak in hid_submit_ctrl + CVEs fixed in 5.10.46: CVE-2021-33624: e9d271731d21647f8f9e9a261582cf47b868589a bpf: Inherit expanded/patched seen count from old aux data CVE-2021-34693: acb755be1f7adb204dcedc4d3b204ef098628623 can: bcm: fix infoleak in struct bcm_msg_head @@ -177,6 +361,7 @@ CVEs fixed in 5.10.51: CVE-2021-3655: d4dbef7046e24669278eba4455e9e8053ead6ba0 sctp: validate from_addr_param return CVE-2021-45485: 8f939b79579715b195dc3ad36669707fce6853ee ipv6: use prandom_u32() for ID generation + CVE-2021-47119: 5e4f5138bd8522ebe231a137682d3857209a2c07 ext4: fix memory leak in ext4_fill_super CVE-2023-28772: f9fb4986f4d81182f938d16beb4f983fe71212aa seq_buf: Fix overflow in seq_buf_putmem_hex() CVEs fixed in 5.10.52: @@ -197,6 +382,7 @@ CVEs fixed in 5.10.55: CVE-2021-0920: 93c5951e0ce137e994237c19cd75a7caa1f80543 af_unix: fix garbage collect vs MSG_PEEK + CVE-2021-47124: 6f5d7a45f58d3abe3a936de1441b8d6318f978ff io_uring: fix link timeout refs CVEs fixed in 5.10.56: CVE-2021-34556: bea9e2fd180892eba2574711b05b794f1d0e7b73 bpf: Introduce BPF nospec instruction for mitigating Spectre v4 @@ -226,6 +412,7 @@ CVEs fixed in 5.10.64: CVE-2021-46283: 36983fc2f87ea3b74a33bf460c9ee7329735b7b5 netfilter: nf_tables: initialize set before expression setup + CVE-2021-46913: e51ff3ffc316377cca21de8b80404eed0c37b3c3 netfilter: nftables: clone set element expression template CVE-2022-20141: ddd7e8b7b84836c584a284b98ca9bd7a348a0558 igmp: Add ip_mc_list lock in ip_check_mc_rcu CVEs fixed in 5.10.65: @@ -310,9 +497,27 @@ CVEs fixed in 5.10.89: CVE-2021-44733: c05d8f66ec3470e5212c4d08c46d6cb5738d600d tee: handle lookup of shm with reference count 0 CVE-2021-45469: fffb6581a23add416239dfcf7e7f3980c6b913da f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-47083: 441d3873664d170982922c5d2fc01fa89d9439ed pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: 52ad5da8e316fa11e3a50b3f089aa63e4089bf52 phonet/pep: refuse to enable an unbound pipe + CVE-2021-47090: 1f207076740101fed87074a6bc924dbe806f08a5 mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() + CVE-2021-47091: ac61b9c6c0549aaeb98194cf429d93c41bfe5f79 mac80211: fix locking in ieee80211_start_ap error path + CVE-2021-47093: 7a37f2e370699e2feca3dca6c8178c71ceee7e8a platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47095: 1f6ab847461ce7dd89ae9db2dd4658c993355d7c ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: 6809da5185141e61401da5b01896b79a4deed1ad ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module CVE-2022-1195: 7dd52af1eb5798f590d9d9e1c56ed8f5744ee0ca hamradio: improve the incomplete fix to avoid NPD CVEs fixed in 5.10.90: + CVE-2021-46924: e553265ea56482da5700f56319fda9ff53e7dcb4 NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: e8a5988a85c719ce7205cb00dcf0716dcf611332 net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46928: d01e9ce1af6116f812491d3d3873d204f10ae0b8 parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: 769d14abd35e0e153b5149c3e1e989a9d719e3ff sctp: use call_rcu to free endpoint + CVE-2021-46930: 3b6efe0b7ba03cc2acf0694b46d6ff33c5b4c295 usb: mtu3: fix list_head check warning + CVE-2021-46931: 73665165b64a8f3c5b3534009a69be55bb744f05 net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: 9f329d0d6c91142cf0ad08d23c72dd195db2633c Input: appletouch - initialize work before device registration + CVE-2021-46933: 1c4ace3e6b8575745c50dca9e76e0021e697d645 usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: 8d31cbab4c295d7010ebb729e9d02d0e9cece18f i2c: validate user data in compat ioctl + CVE-2021-46935: 1cb8444f3114f0bb2f6e3bcadcf09aa4a28425d4 binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: 2386e81a1d277f540e1285565c9d41d531bb69d4 net: fix use-after-free in tw_timer_handler CVE-2022-20154: 769d14abd35e0e153b5149c3e1e989a9d719e3ff sctp: use call_rcu to free endpoint CVE-2023-23006: 4cd1da02f0c39606e3378c9255f17d6f85d106c7 net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources @@ -348,6 +553,7 @@ CVE-2022-0435: 3c7e5943553594f68bbc070683db6bb6f6e9e78e tipc: improve size validations for received domain records CVE-2022-0487: be93028d306dac9f5b59ebebd9ec7abcfc69c156 moxart: fix potential use-after-free on remove path CVE-2022-0516: b62267b8b06e9b8bb429ae8f962ee431e6535d60 KVM: s390: Return error on SIDA memop on normal guest + CVE-2022-48626: be93028d306dac9f5b59ebebd9ec7abcfc69c156 moxart: fix potential use-after-free on remove path CVEs fixed in 5.10.101: CVE-2022-25258: 22ec1004728548598f4f5b4a079a7873409eacfd USB: gadget: validate interface OS descriptor requests @@ -390,6 +596,7 @@ CVE-2022-20368: 70b7b3c055fd4a464da8da55ff4c1f84269f9b02 net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-27666: 9248694dac20eda06e22d8503364dc9d03df4e2f esp: Fix possible buffer overflow in ESP transformation CVE-2022-3107: 9b763ceda6f8963cc99df5772540c54ba46ba37c hv_netvsc: Add check for kvmalloc_array + CVE-2022-48629: 0f9b7b8df17525e464294c916acc8194ce38446b crypto: qcom-rng - ensure buffer for generate is completely filled CVEs fixed in 5.10.109: CVE-2022-1016: 2c74374c2e88c7b7992bf808d9f9391f7452f9d9 netfilter: nf_tables: initialize registers in nft_do_chain() @@ -507,6 +714,7 @@ CVEs fixed in 5.10.132: CVE-2022-36123: 136d7987fcfdeca73ee3c6a29e48f99fdd0f4d87 x86: Clear .brk area at early boot + CVE-2022-48627: bfee93c9a6c395f9aa62268f1cedf64999844926 vt: fix memory overlapping when deleting chars in the buffer CVEs fixed in 5.10.133: CVE-2022-23816: 7070bbb66c5303117e4c7651711ea7daae4c64b5 x86/kvm/vmx: Make noinstr clean @@ -524,10 +732,12 @@ CVE-2023-2177: 6f3505588d66b27220f07d0cab18da380fae2e2d sctp: leave the err path free in sctp_stream_init to sctp_stream_free CVEs fixed in 5.10.136: + CVE-2021-47082: a01a4e9f5dc93335c716fa4023b1901956e8c904 tun: avoid double free in tun_free_netdev CVE-2022-26373: 509c2c9fe75ea7493eebbb6bb2f711f37530ae19 x86/speculation: Add RSB VM Exit protections CVE-2022-4744: a01a4e9f5dc93335c716fa4023b1901956e8c904 tun: avoid double free in tun_free_netdev CVEs fixed in 5.10.137: + CVE-2019-25162: 81cb31756888bb062e92d2dca21cd629d77a46a9 i2c: Fix a potential use after free CVE-2022-1679: eccd7c3e2596b574241a7670b5b53f5322f470e5 ath9k: fix use-after-free in ath9k_hif_usb_rx_cb CVE-2022-20422: 353b4673d01c512303c45cf2346f630cda73b5c9 arm64: fix oops in concurrently setting insn_emulation sysctls CVE-2022-2153: ac7de8c2ba1292856fdd4a4c0764669b9607cf0a KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() @@ -588,6 +798,7 @@ CVE-2022-42719: 31ce5da48a845bac48930bbde1d45e7449591728 wifi: mac80211: fix MBSSID parsing use-after-free CVEs fixed in 5.10.150: + CVE-2021-47103: f039b43cbaea5e0700980c2f0052da05a70782e0 inet: fully convert sk->sk_rx_dst to RCU rules CVE-2022-2602: c378c479c5175833bb22ff71974cda47d7b05401 io_uring/af_unix: defer registered files gc to io_uring release CVE-2022-3535: 29f50bcf0f8b9e49c3c9b0e08fcae2ec3a88cc9f net: mvpp2: fix mvpp2 debugfs leak CVE-2022-3542: 6cc0e2afc6a137d45b9523f61a1b1b16a68c9dc0 bnx2x: fix potential memory leak in bnx2x_tpa_stop() @@ -741,6 +952,7 @@ CVE-2023-35824: e9d64e90a0ada4d00ac6562e351ef10ae7d9b911 media: dm1105: Fix use after free bug in dm1105_remove due to race condition CVE-2023-35828: 36c237b202a406ba441892eabcf44e60dae7ad73 usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition CVE-2023-35829: de19d02d734ef29f5dbd2c12fe810fa960ecd83f media: rkvdec: fix use after free bug in rkvdec_remove + CVE-2023-52474: 9c4c6512d7330b743c4ffd18bd999a86ca26db0d IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests CVE-2024-0775: 37c69da3adc45fc34df0b8d07a158a6fa5b2a3f7 ext4: improve error recovery code paths in __ext4_remount() CVEs fixed in 5.10.181: @@ -804,6 +1016,7 @@ CVE-2023-39194: 7e50815d29037e08d3d26f3ebc41bcec729847b7 net: xfrm: Fix xfrm_address_filter OOB read CVE-2023-51042: b870b9a47fdba29bd6828f690e4817c950fa3430 drm/amdgpu: Fix potential fence use-after-free v2 CVE-2023-6546: 869ce5e5984595bd2c62b598d977debc218b6f4d tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux + CVE-2024-23196: 9f9eed451176ffcac6b5ba0f6dae1a6b4a1cb0eb ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVEs fixed in 5.10.193: CVE-2022-36402: 8735d1c66c7cf54e7b265a2911891f75674db342 drm/vmwgfx: Fix shader stage validation @@ -830,12 +1043,34 @@ CVE-2023-4563: b15ea4017af82011dd55225ce77cce3d4dfc169c netfilter: nf_tables: don't skip expired elements during walk CVE-2023-4881: a7d86a77c33ba1c357a7504341172cc1507f0698 netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-5197: 5a03b42ae1ed646eb5f5acceff1fb2b1d85ec077 netfilter: nf_tables: disallow rule removal from chain binding + CVE-2023-52500: 2afd8fcee0c4d65a482e30c3ad2a92c25e5e92d4 scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: cee5151c5410e868826b8afecfb356f3799ebea3 ring-buffer: Do not attempt to read past "commit" + CVE-2023-52513: 0d520cdb0cd095eac5d00078dfd318408c9b5eed RDMA/siw: Fix connection failure handling + CVE-2023-52516: c79300599923daaa30f417c75555d5566b3d31ae dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52522: 2ea52a2fb8e87067e26bbab4efb8872639240eb0 net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: 96b2e1090397217839fcd6c9b6d8f5d439e705ed ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: 30bc4d7aebe33904b0f2d3aad4b4a9c6029ad0c5 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52566: 7130a87ca32396eb9bf48b71a2d42259ae44c6c7 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52573: f515112e833791001aaa8ab886af3ca78503617f net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: b44dd92e2afd89eb6e9d27616858e72a67bdc1a7 team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: 04cc361f029c14dd067ad180525c7392334c9bfd net: bridge: use DEV_STATS_INC() + CVE-2023-52628: a7d86a77c33ba1c357a7504341172cc1507f0698 netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2024-0641: 6a24d0661fa389c241d935da38e0f6a5ee8eb1ae tipc: fix a potential deadlock on &tx->lock CVEs fixed in 5.10.199: CVE-2023-35827: db9aafa19547833240f58c2998aed7baf414dc82 ravb: Fix use-after-free issue in ravb_tx_timeout_work() CVE-2023-46343: c95fa5b20fe03609e0894656fa43c18045b5097e nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46813: 6550cbe25de182f6c0176909a90b324cb375133f x86/sev: Check for user-space IOIO pointing to kernel space + CVE-2023-52475: cd2fbfd8b922b7fdd50732e47d797754ab59cb06 Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52477: 241f230324337ed5eae3846a554fb6d15169872c usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: 093af62c023537f097d2ebdfaa0bc7c1a6e874e1 HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52502: 6ac22ecdaad2ecc662048f8c6b0ceb1ca0699ef9 net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: da7ce52a2f6c468946195b116615297d3d113a27 tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: 6788b10620ca6e98575d1e06e72a8974aad7657e x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52507: a424807d860ba816aaafc3064b46b456361c0802 nfc: nci: assert requested protocol is valid + CVE-2023-52509: db9aafa19547833240f58c2998aed7baf414dc82 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: 55e06850c7894f00d41b767c5f5665459f83f58f ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52515: 26788a5b48d9d5cd3283d777d238631c8cd7495a RDMA/srp: Do not call scsi_done() from srp_abort() CVE-2023-5717: 487a8e24643a0effb2ba19cad3227fc75dc3c4b7 perf: Disallow mis-matched inherited group reads CVEs fixed in 5.10.200: @@ -882,18 +1117,56 @@ CVE-2023-52451: b582aa1f66411d4adcc1aa55b8c575683fb4687e powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: f775f2621c2ac5cc3a0b3a64665dad4fb146e510 nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: 6e04a9d30509fb53ba6df5d655ed61d607a7cfda serial: imx: fix tx statemachine deadlock - CVE-2023-52457: bc57f3ef8a9eb0180606696f586a6dcfaa175ed0 serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52463: 94c742324ed7e42c5bd6a9ed22e4ec6d764db4d8 efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: 6aa7865ba7ff7f0ede0035180fb3b9400ceb405a EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: 927626a2073887ee30ba00633260d4d203f8e875 mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: 520e213a0b97b64735a13950e9371e0a5d7a5dc3 drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: 57ca7984806d79b38af528de88fd803babf27feb drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52609: 7e7a0d86542b0ea903006d3f42f33c4f7ead6918 binder: fix race between mmput() and do_exit() + CVE-2023-52612: 4518dc468cdd796757190515a9be7408adc8911e crypto: scomp - fix req->dst buffer overflow + CVE-2023-6356: f775f2621c2ac5cc3a0b3a64665dad4fb146e510 nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length + CVE-2023-6536: 39669fae69f302961d89f38d969c6fcc1d07eb02 nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6915: dbf8b0d9387fa02de0aa047ce23eb3a7bd134e03 ida: Fix crash in ida_free when the bitmap is empty CVE-2024-24860: 394c6c0b6d9bdd7d6ebca35ca9cfbabf44c0c257 Bluetooth: Fix atomicity violation in {min,max}_key_size_set CVE-2024-26586: 56750ea5d15426b5f307554e7699e8b5f76c3182 mlxsw: spectrum_acl_tcam: Fix stack corruption CVE-2024-26597: 2295c22348faf795e1ccdf618f6eb7afdb2f7447 net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: ba7be666740847d967822bed15500656b26bc703 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26633: da23bd709b46168f7dfc36055801011222b076cd ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 5.10.210: CVE-2023-52429: a891a0621e725e85529985139cada8cb5a74a116 dm: limit the number of targets and parameter size area CVE-2023-52435: 8f8f185643747fbb448de6aab0efa51c679909a3 net: prevent mss overflow in skb_segment() + CVE-2023-52486: f55261469be87c55df13db76dc945f6bcd825105 drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52489: 90ad17575d26874287271127d43ef3c2af876cea mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: 43872f44eee6c6781fea1348b38885d8e78face9 media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: 9de69732dde4e443c1c7f89acbbed2c45a6a8e17 dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: 20a6dea2d1c68d4e03c6bb50bc12e72e226b5c0e bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52498: f46eb832389f162ad13cb780d0b8cde93641990d PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52583: e016e358461b89b231626fcf78c5c38e35c44fd3 ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52587: ac2630fd3c90ffec34a0bfc4d413668538b0e8f2 IB/ipoib: Fix mcast list locking + CVE-2023-52594: 84770a996ad8d7f121ff2fb5a8d149aad52d64c1 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: 69e905beca193125820c201ab3db4fb0e245124e wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52597: 150a3a3871490e8c454ffbac2e60abeafcecff99 KVM: s390: fix setting of fpc register + CVE-2023-52598: 856caf2730ea18cb39e95833719c02a02447dc0a s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: e2b77d107b33bb31c8b1f5c4cb8f277b23728f1e jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: bc6ef64dbe71136f327d63b2b9071b828af2c2a8 jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: 2037cb9d95f1741885f7daf50e8a028c4ade5317 jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: 1c40ca3d39d769931b28295b3145c25f1decf5a6 jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: 7aa33854477d9c346f5560a1a1fcb3fe7783e2a8 UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: de34de6e57bbbc868e4fcf9e98c76b3587cabb0b FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: beee482cc4c9a6b1dcffb2e190b4fd8782258678 powerpc/lib: Validate size for vector operations + CVE-2023-52607: aa28eecb43cac6e20ef14dfc50b8892c1fbcda5b powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52615: c6a8111aacbfe7a8a70f46cc0de8eed00561693c hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: 0c3687822259a7628c85cd21a3445cbe3c367165 crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: 4a5d0528cf19dbf060313dffbe047bc11c90c24c PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: 95bc866c11974d3e4a9d922275ea8127ff809cf7 block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: a63e48cd835c34c38ef671d344cc029b1ea5bf10 pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52622: cfbbb3199e71b63fc26cee0ebff327c47128a1e8 ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: c430e6bb43955c6bf573665fcebf31694925b9f7 SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52627: 1eba6f7ffa295a0eec098c107043074be7cc4ec5 iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52630: 9f56f38331171c9a19754004f0664686d67ee48d blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52635: 3399cc7013e761fee9d6eec795e9b31ab0cbe475 PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: 978e50ef8c38dc71bd14d1b0143d554ff5d188ba can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) CVE-2024-0340: cda4ca038cafe016bd8dcac8cac83d771dfdcbf0 vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0607: 9a865a11d6890d4a789db1eaafebdc8bd092b12c netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-1086: 55a60251fa50d4e68175e36666b536a602ce4f6c netfilter: nf_tables: reject QUEUE/DROP verdict parameters @@ -902,6 +1175,92 @@ CVE-2024-23850: 3f5d47eb163bceb1b9e613c9003bae5fefc0046f btrfs: do not ASSERT() if the newly created subvolume already got read CVE-2024-23851: a891a0621e725e85529985139cada8cb5a74a116 dm: limit the number of targets and parameter size area CVE-2024-26593: 7a14b8a477b88607d157c24aeb23e7389ec3319f i2c: i801: Fix block process call transactions + CVE-2024-26600: be3b82e4871ba00e9b5d0ede92d396d579d7b3b3 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: db896bbe4a9c67cee377e5f6a743350d3ae4acf6 sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: a423042052ec2bdbf1e552e621e6a768922363cc binder: signal epoll threads of self-work + CVE-2024-26610: 05dd9facfb9a1e056752c0901c6e86416037d15a wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: bc99dcedd2f422d602516762b96c8ef1ae6b2882 tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: 5fed92ca32eafbfae8b6bee8ca34cca71c6a8b6d net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26625: d0b5b1f12429df3cd9751ab8b2f53729b77733b7 llc: call sock_orphan() at release time + CVE-2024-26627: f5944853f7a961fedc1227dc8f60393f8936d37c scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26635: 9ccdef19cf9497c2803b005369668feb91cacdfd llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: 04f2a74b562f3a7498be0399309669f342793d8c llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: f48bf9a83b1666d934247cb58a9887d7b3127b6f tcp: add sanity checks to rx zerocopy + CVE-2024-26641: a9bc32879a08f23cdb80a48c738017e39aea1080 ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26644: 2bdf872bcfe629a6202ffd6641615a8ed00e8464 btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: ef70dfa0b1e5084f32635156c9a5c795352ad860 tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26663: 19d7314f2fb9515bdaac9829d4d8eb34edd1fe95 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: f0da068c75c20ffc5ba28243ff577531dc2af1fd hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: e77bf828f1ca1c47fcff58bdc26b60a9d3dfbe1d tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26671: 7610ba1319253225a9ba8a9d28d472fc883b4e2f blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26673: 65ee90efc928410c6f73b3d2e0afdd762652c09d netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: b06e067e93fa4b98acfd3a9f38a398ab91bbc58b ppp_async: limit MRU to 64K + CVE-2024-26679: 88081ba415224cf413101def4343d660f56d082b inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26684: 2fc45a4631ac7837a5c497cb4f7e2115d950fc37 net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: f3e4963566f58726d3265a727116a42b591f6596 nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26689: 8180d0c27b93a6eb60da1b08ea079e3926328214 ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26696: 98a4026b22ff440c7f47056481bcbbe442f607d6 nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: 364a66be2abdcd4fd426ffa44d9b8f40aafb3caa nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: 9ec807e7b6f5fcf9499f3baa69f254bb239a847f hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26702: 36a49290d7e6d554020057a409747a092b1d3b56 iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: d033a555d9a1cf53dbf3301af7199cc4a4c8f537 ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26707: 0d8011a878fdf96123bc0d6a12e2fe7ced5fddfb net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: 230e89b5ad0a33f530a2a976b3e5e4385cb27882 powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26720: 81e7d2530d458548b90a5c5e76b77ad5e5d1c0df mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26727: 3f5d47eb163bceb1b9e613c9003bae5fefc0046f btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26808: 9489e214ea8f2a90345516016aa51f2db3a8cc2f netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + +CVEs fixed in 5.10.211: + CVE-2023-52434: 13fb0fc4917621f3dfa285a27eaf7151d770b5e5 smb: client: fix potential OOBs in smb2_parse_contexts() + CVE-2023-52497: a0180e940cf1aefa7d516e20b259ad34f7a8b379 erofs: fix lz4 inplace decompression + CVE-2024-0565: b03c8099a738a04d2343547ae6a04e5f0f63d3fa smb: client: fix OOB in receive_encrypted_standard() + CVE-2024-26733: dbc9b22d0ed319b4e29034ce0a3fe32a3ee2c587 arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: 65c38f23d10ff79feea1e5d50b76dc7af383c1e6 ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: d9b5e2b7a8196850383c70d099bfd39e81ab6637 afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26743: 5639414a52a29336ffa1ede80a67c6d927acbc5a RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: 5a5c039dac1b1b7ba3e91c791f4421052bf79b82 RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26747: e279bf8e51893e1fe160b3d8126ef2dd00f661e1 usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: 1e204a8e9eb514e22a6567fb340ebb47df3f3a48 usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: b40328eea93c75a5645891408010141a0159f643 usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: 70d92abbe29692a3de8697ae082c60f2d21ab482 ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: dcb4d14268595065c85dc5528056713928e17243 l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: 2e534fd15e5c2ca15821c897352cf0e8a3e30dca gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26763: 3c652f6fa1e1f9f02c3fbf359d260ad153ec5f90 dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: ea1cd64d59f22d6d13f367d62ec6e27b9344695f fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26766: 3f38d22e645e2e994979426ea5a35186102ff3c2 IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26771: c432094aa7c9970f2fa10d2305d550d3810657ce dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: ffeb72a80a82aba59a6774b0611f792e0ed3b0b7 ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: 927794a02169778c9c2e7b25c768ab3ea8c1dc03 ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26776: e94da8aca2e78ef9ecca02eb211869eacd5504e5 spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: cd36da760bd1f78c63c7078407baf01dd724f313 fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: 512ee6d6041e007ef5bf200c6e388e172a2c5b24 fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: 5ffab99e070b9f8ae0cf60c3c3602b84eee818dd wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 5.10.212: + CVE-2024-0841: 80d852299987a8037be145a94f41874228f1a773 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26622: a23ac1788e2c828c097119e9a3178f0b7e503fee tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26688: 80d852299987a8037be145a94f41874228f1a773 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26782: f74362a004225df935863dea6eb7d82daaa5b16e mptcp: fix double-free on socket dismantle + CVE-2024-26788: 9579a21e99fe8dab22a253050ddff28d340d74e1 dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26790: bb3a06e9b9a30e33d96aadc0e077be095a4f8580 dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: 2886fe308a83968dde252302884a1e63351cf16d btrfs: dev-replace: properly validate device names + CVE-2024-26793: e668b92a3a01429923fd5ca13e99642aab47de69 gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: 8af1c121b0102041809bc137ec600d1865eaeedd riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26801: 6dd0a9dfa99f8990a08eb8fdd8e79bee31c7d8e2 Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26804: 2e95350fe9db9d53c701075060ac8ac883b68aee net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: f19d1f98e60e68b11fc60839105dd02a30ec0d77 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + +CVEs fixed in 5.10.213: + CVE-2024-26659: 696e4112e5c1ee61996198f0ebb6ca3fab55166e xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26787: 0224cbc53ba82b84affa7619b6d1b1a254bc2c53 mmc: mmci: stm32: fix DMA API overlapping mappings warning + +CVEs fixed in 5.10.214: + CVE-2023-52447: 90c445799fd1dc214d7c6279c144e33a35e29ef2 bpf: Defer the free of inner map when necessary + CVE-2023-6270: faf0b4c5e00bb680e8e43ac936df24d3f48c8e65 aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: e1dc7aa814a95aeeb1b2c05be2b62af8423b15cc wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 81d7d920a22fd58ef9aedb1bd0a68ee32bd23e96 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: 6b4a39acafaf0186ed8e97c16e0aa6fca0e52009 sr9800: Add check for usbnet_get_endpoints + CVE-2024-26809: b36b83297ff4910dfc8705402c8abffd4bbf8144 netfilter: nft_set_pipapo: release elements in clone only from destroy path Outstanding CVEs: CVE-2005-3660: (unk) @@ -968,6 +1327,25 @@ CVE-2021-4023: (unk) io-wq: fix cancellation on create-worker failure CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4204: (unk) bpf: Generalize check_ctx_reg for reuse with other types + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46987: (unk) btrfs: fix deadlock when cloning inline extents and using qgroups + CVE-2021-47014: (unk) net/sched: act_ct: fix wild memory access when clearing fragments + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47036: (unk) udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47037: (unk) ASoC: q6afe-clocks: fix reprobing of the driver + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47094: (unk) KVM: x86/mmu: Don't advance iterator after restart due to yielding + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches @@ -1016,6 +1394,7 @@ CVE-2022-45885: (unk) CVE-2022-4696: (unk) io_uring: remove any grabbing of context CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0386: (unk) ovl: fail on invalid uid/gid mapping at copy up CVE-2023-0597: (unk) x86/mm: Randomize per-cpu entry area CVE-2023-1075: (unk) net/tls: tls_is_tx_ready() checked list_entry @@ -1032,6 +1411,7 @@ CVE-2023-23039: (unk) CVE-2023-23586: (unk) io_uring: remove io_identity CVE-2023-26242: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-31081: (unk) CVE-2023-31082: (unk) CVE-2023-31083: (unk) Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO @@ -1044,35 +1424,74 @@ CVE-2023-4133: (unk) cxgb4: fix use after free bugs caused by circular dependency problem CVE-2023-4134: (unk) Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync() CVE-2023-4622: (unk) unix: Convert unix_stream_sendpage() to use MSG_SPLICE_PAGES - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() - CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request - CVE-2023-52447: (unk) bpf: Defer the free of inner map when necessary CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) CVE-2023-6535: (unk) - CVE-2023-6536: (unk) CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() - CVE-2023-7042: (unk) CVE-2024-0564: (unk) - CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() - CVE-2024-0841: (unk) CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -1081,10 +1500,59 @@ CVE-2024-26583: (unk) tls: fix race between async notify and socket close CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks
diff --git a/data/5.11/5.11_CVEs.txt b/data/5.11/5.11_CVEs.txt index ff8a5c1..5e60f62 100644 --- a/data/5.11/5.11_CVEs.txt +++ b/data/5.11/5.11_CVEs.txt
@@ -27,6 +27,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -64,6 +65,18 @@ CVE-2020-27820: Fix not seen in stream CVE-2020-35501: Fix unknown CVE-2020-36516: Fix not seen in stream +CVE-2020-36776: Fixed with 5.11.20 +CVE-2020-36777: Fixed with 5.11.20 +CVE-2020-36778: Fixed with 5.11.21 +CVE-2020-36779: Fixed with 5.11.21 +CVE-2020-36780: Fixed with 5.11.21 +CVE-2020-36781: Fixed with 5.11.21 +CVE-2020-36782: Fixed with 5.11.21 +CVE-2020-36783: Fixed with 5.11.21 +CVE-2020-36784: Fixed with 5.11.21 +CVE-2020-36785: Fixed with 5.11.21 +CVE-2020-36786: Fixed with 5.11.21 +CVE-2020-36787: Fixed with 5.11.21 CVE-2020-3702: Fix not seen in stream CVE-2021-0129: Fix not seen in stream CVE-2021-0399: Fix unknown @@ -238,6 +251,234 @@ CVE-2021-45486: Fixed with 5.11.21 CVE-2021-45868: Fix not seen in stream CVE-2021-46283: Fix not seen in stream +CVE-2021-46904: Fixed with 5.11.14 +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fixed with 5.11.16 +CVE-2021-46909: Fixed with 5.11.16 +CVE-2021-46910: Fixed with 5.11.16 +CVE-2021-46911: Fixed with 5.11.16 +CVE-2021-46912: Fixed with 5.11.16 +CVE-2021-46913: Fixed with 5.11.16 +CVE-2021-46914: Fixed with 5.11.16 +CVE-2021-46915: Fixed with 5.11.16 +CVE-2021-46916: Fixed with 5.11.16 +CVE-2021-46917: Fixed with 5.11.16 +CVE-2021-46918: Fixed with 5.11.16 +CVE-2021-46919: Fixed with 5.11.16 +CVE-2021-46920: Fixed with 5.11.16 +CVE-2021-46921: Fixed with 5.11.17 +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fixed with 5.11.20 +CVE-2021-46939: Fixed with 5.11.20 +CVE-2021-46940: Fixed with 5.11.20 +CVE-2021-46941: Fixed with 5.11.20 +CVE-2021-46943: Fixed with 5.11.20 +CVE-2021-46944: Fixed with 5.11.20 +CVE-2021-46945: Fixed with 5.11.20 +CVE-2021-46948: Fixed with 5.11.20 +CVE-2021-46949: Fixed with 5.11.20 +CVE-2021-46950: Fixed with 5.11.20 +CVE-2021-46951: Fixed with 5.11.20 +CVE-2021-46952: Fixed with 5.11.20 +CVE-2021-46953: Fixed with 5.11.20 +CVE-2021-46954: Fixed with 5.11.20 +CVE-2021-46955: Fixed with 5.11.20 +CVE-2021-46956: Fixed with 5.11.20 +CVE-2021-46958: Fixed with 5.11.20 +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fixed with 5.11.20 +CVE-2021-46961: Fixed with 5.11.20 +CVE-2021-46962: Fixed with 5.11.20 +CVE-2021-46963: Fixed with 5.11.20 +CVE-2021-46964: Fixed with 5.11.20 +CVE-2021-46965: Fixed with 5.11.20 +CVE-2021-46966: Fixed with 5.11.20 +CVE-2021-46967: Fixed with 5.11.20 +CVE-2021-46968: Fixed with 5.11.20 +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fixed with 5.11.20 +CVE-2021-46971: Fixed with 5.11.19 +CVE-2021-46972: Fixed with 5.11.19 +CVE-2021-46973: Fixed with 5.11.19 +CVE-2021-46974: Fixed with 5.11.19 +CVE-2021-46976: Fixed with 5.11.22 +CVE-2021-46977: Fixed with 5.11.22 +CVE-2021-46978: Fixed with 5.11.22 +CVE-2021-46979: Fixed with 5.11.22 +CVE-2021-46980: Fixed with 5.11.22 +CVE-2021-46981: Fixed with 5.11.22 +CVE-2021-46982: Fixed with 5.11.22 +CVE-2021-46983: Fixed with 5.11.22 +CVE-2021-46984: Fixed with 5.11.22 +CVE-2021-46986: Fixed with 5.11.22 +CVE-2021-46987: Fixed with 5.11.22 +CVE-2021-46988: Fixed with 5.11.22 +CVE-2021-46989: Fixed with 5.11.22 +CVE-2021-46990: Fixed with 5.11.22 +CVE-2021-46991: Fixed with 5.11.22 +CVE-2021-46992: Fixed with 5.11.22 +CVE-2021-46993: Fixed with 5.11.22 +CVE-2021-46994: Fixed with 5.11.22 +CVE-2021-46996: Fixed with 5.11.22 +CVE-2021-46997: Fixed with 5.11.22 +CVE-2021-46998: Fixed with 5.11.22 +CVE-2021-46999: Fixed with 5.11.22 +CVE-2021-47000: Fixed with 5.11.22 +CVE-2021-47001: Fixed with 5.11.22 +CVE-2021-47002: Fixed with 5.11.22 +CVE-2021-47003: Fixed with 5.11.22 +CVE-2021-47004: Fixed with 5.11.22 +CVE-2021-47005: Fixed with 5.11.22 +CVE-2021-47006: Fixed with 5.11.22 +CVE-2021-47007: Fixed with 5.11.22 +CVE-2021-47008: Fixed with 5.11.22 +CVE-2021-47010: Fixed with 5.11.21 +CVE-2021-47011: Fixed with 5.11.21 +CVE-2021-47012: Fixed with 5.11.21 +CVE-2021-47013: Fixed with 5.11.21 +CVE-2021-47014: Fix not seen in stream +CVE-2021-47015: Fixed with 5.11.21 +CVE-2021-47016: Fixed with 5.11.21 +CVE-2021-47017: Fixed with 5.11.21 +CVE-2021-47018: Fixed with 5.11.21 +CVE-2021-47020: Fixed with 5.11.21 +CVE-2021-47023: Fixed with 5.11.21 +CVE-2021-47024: Fixed with 5.11.21 +CVE-2021-47026: Fixed with 5.11.21 +CVE-2021-47028: Fixed with 5.11.21 +CVE-2021-47032: Fixed with 5.11.21 +CVE-2021-47033: Fixed with 5.11.21 +CVE-2021-47034: Fixed with 5.11.21 +CVE-2021-47035: Fixed with 5.11.21 +CVE-2021-47036: Fix not seen in stream +CVE-2021-47037: Fixed with 5.11.21 +CVE-2021-47038: Fixed with 5.11.21 +CVE-2021-47039: Fixed with 5.11.21 +CVE-2021-47040: Fixed with 5.11.21 +CVE-2021-47041: Fixed with 5.11.21 +CVE-2021-47043: Fixed with 5.11.21 +CVE-2021-47044: Fixed with 5.11.21 +CVE-2021-47045: Fixed with 5.11.21 +CVE-2021-47046: Fixed with 5.11.21 +CVE-2021-47047: Fixed with 5.11.21 +CVE-2021-47048: Fixed with 5.11.21 +CVE-2021-47049: Fixed with 5.11.21 +CVE-2021-47050: Fixed with 5.11.21 +CVE-2021-47051: Fixed with 5.11.21 +CVE-2021-47052: Fixed with 5.11.21 +CVE-2021-47053: Fixed with 5.11.21 +CVE-2021-47054: Fixed with 5.11.21 +CVE-2021-47055: Fixed with 5.11.21 +CVE-2021-47056: Fixed with 5.11.21 +CVE-2021-47057: Fixed with 5.11.21 +CVE-2021-47058: Fixed with 5.11.21 +CVE-2021-47059: Fixed with 5.11.21 +CVE-2021-47060: Fixed with 5.11.21 +CVE-2021-47061: Fixed with 5.11.21 +CVE-2021-47062: Fixed with 5.11.21 +CVE-2021-47063: Fixed with 5.11.21 +CVE-2021-47064: Fixed with 5.11.21 +CVE-2021-47065: Fixed with 5.11.21 +CVE-2021-47066: Fixed with 5.11.21 +CVE-2021-47067: Fixed with 5.11.21 +CVE-2021-47069: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47080: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47090: Fix not seen in stream +CVE-2021-47091: Fix not seen in stream +CVE-2021-47093: Fix not seen in stream +CVE-2021-47094: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47097: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47111: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47123: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47130: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47134: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47139: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47152: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47164: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47174: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47176: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47178: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -492,6 +733,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -576,6 +821,7 @@ CVE-2023-28410: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -670,7 +916,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream @@ -699,19 +945,126 @@ CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -721,7 +1074,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -731,15 +1084,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -749,7 +1103,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -759,13 +1113,135 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.11/5.11_security.txt b/data/5.11/5.11_security.txt index 1f58c4b..a3cb1be 100644 --- a/data/5.11/5.11_security.txt +++ b/data/5.11/5.11_security.txt
@@ -70,6 +70,7 @@ CVE-2020-25672: 596ad6296f07c63bed3cbd573de42f99b7984599 nfc: fix memory leak in llcp_sock_connect() CVE-2020-25673: 820d46654348863bf6b359ab1cc978eb1126bcac nfc: Avoid endless loops caused by repeated llcp_sock_connect() CVE-2021-3659: 743c9072afafd1919b41ae319044513ed014a58f net: mac802154: Fix general protection fault + CVE-2021-46904: 388d05f70f1ee0cac4a2068fd295072f1a44152a net: hso: fix null-ptr-deref during tty device unregistration CVEs fixed in 5.11.15: CVE-2021-0937: b4c4e4660b37a57011677809205a3f36725b70ae netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -79,19 +80,76 @@ CVE-2021-23133: 59b5f3e478dbcb4c384cf0888d6cc9f5cad79f2f net/sctp: fix race condition in sctp_destroy_sock CVE-2021-29155: 4ccdc6c6cae38b91c871293fb0ed8c6845a61b51 bpf: Use correct permission flag for mixed signed bounds arithmetic CVE-2021-3501: ce541d7b59566a0d94c7c99bfb5d34b050e6af70 KVM: VMX: Don't use vcpu->run->internal.ndata as an array index + CVE-2021-46908: 4ccdc6c6cae38b91c871293fb0ed8c6845a61b51 bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: c3efce8cc9807339633ee30e39882f4c8626ee1d ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46910: 5965ac11b1d5fcb38464728931649cd9df79c7c9 ARM: 9063/1: mm: reduce maximum number of CPUs if DEBUG_KMAP_LOCAL is enabled + CVE-2021-46911: 8348665d4181c68b0ca1205b48e1753d78bc810f ch_ktls: Fix kernel panic + CVE-2021-46912: 1ccdf1bed140820240e383ba0accc474ffc7f006 net: Make tcp_allowed_congestion_control readonly in non-init netns + CVE-2021-46913: 47d8de3c226574a3ddb8b87d0c152028d1bafef4 netfilter: nftables: clone set element expression template + CVE-2021-46914: f1b4be4a753caa4056496f679d70550d0c11a264 ixgbe: fix unbalanced device enable/disable in suspend/resume + CVE-2021-46915: 1bb3ee4259936cc3b2d80a4a480bbb4868575071 netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46916: 758d19098df4b0bbca9f40d6ae6c82c9c18b9bba ixgbe: Fix NULL pointer dereference in ethtool loopback test + CVE-2021-46917: f7dc8f5619165e1fa3383d0c2519f502d9e2a1a9 dmaengine: idxd: fix wq cleanup of WQCFG registers + CVE-2021-46918: c84b8982d7aa9b4717dc36a1c6cbc93ee153b500 dmaengine: idxd: clear MSIX permission entry on shutdown + CVE-2021-46919: 05b7791c4c4aa8304368fdc55ae911f6b34e7281 dmaengine: idxd: fix wq size store permission state + CVE-2021-46920: 02981a44a0e402089775416371bd2e0c935685f8 dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback CVEs fixed in 5.11.17: CVE-2019-15794: f65c0fdb7db2750677bf2cb53e62d7d205c20ab5 ovl: fix reference counting in ovl_mmap error path + CVE-2021-46921: d558fcdb17139728347bccc60a16af3e639649d2 locking/qrwlock: Fix ordering in queued_write_lock_slowpath() CVEs fixed in 5.11.19: CVE-2021-31829: 6eba92a4d4be8feb4dc33976abac544fa99d6ecc bpf: Fix masking negation logic upon negative dst register CVE-2021-38209: fbf85a34ce17c4cf0a37ee253f4c582bbfb8231b netfilter: conntrack: Make global sysctls readonly in non-init netns + CVE-2021-46971: f5809ca4c311b71bfaba6d13f4e39eab0557895e perf/core: Fix unconditional security_locked_down() call + CVE-2021-46972: cf3e3330bc5719fa9d658e3e2f596bde89344a94 ovl: fix leaked dentry + CVE-2021-46973: ea474054c2cc6e1284604b21361f475c7cc8c0a0 net: qrtr: Avoid potential use after free in MHI send + CVE-2021-46974: 6eba92a4d4be8feb4dc33976abac544fa99d6ecc bpf: Fix masking negation logic upon negative dst register CVEs fixed in 5.11.20: + CVE-2020-36776: 876a5f33e5d961d879c5436987c09b3d9ef70379 thermal/drivers/cpufreq_cooling: Fix slab OOB issue + CVE-2020-36777: 9ad15e214fcd73694ea51967d86055f47b802066 media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-3506: 7fe4c47161c21f3b1c3581c2653147281ca0e4fa f2fs: fix to avoid out-of-bounds memory access CVE-2021-3543: 5f4a8ccfc15c1498d897139e5dbff82a35005144 nitro_enclaves: Fix stale file descriptors on failed usercopy + CVE-2021-46938: 6086f957416a6e87236c06079fcaba7a3998aeca dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: 6e2418576228eeb12e7ba82edb8f9500623942ff tracing: Restructure trace_clock_global() to never block + CVE-2021-46940: dbdf22fc825fdb1d97f23230064e0f9819471628 tools/power turbostat: Fix offset overflow issue in index converting + CVE-2021-46941: 800f58217626c8b147aa40660e572ed8a0d56e3b usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: 34892ea938387d83ffcfb7775ec55f0f80767916 media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: 14d0e99c3ef6b0648535a31bf2eaabb4eff97b9e media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46945: 64e1eebe2131183174f4fbb6b1491355f96c6cde ext4: always panic when errors=panic is specified + CVE-2021-46948: 35c7a83ad1bb1d48ae249346e61b1132bcbf9052 sfc: farch: fix TX queue lookup in TX event handling + CVE-2021-46949: a1570985ec04116cc665b760faf666a104154170 sfc: farch: fix TX queue lookup in TX flush done handling + CVE-2021-46950: 59452e551784b7a57a45d971727e9db63b192515 md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: 3818b753277f5ca0c170bf5b98e0a5a225542fcb tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: 2f3380121d49e829fb73ba86240c181bc32ad897 NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: 42e69521ee1fa5abf21f478d147d06bbfe6bf6a8 ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46954: 018bb8da5b5888e19585f9b802f036afe643fcef net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46955: d841d3cf5297fde4ce6a41ff35451d0e82917f3e openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: 9b9d60c0eb8ada99cce2a9ab5c15dffc523b01ae virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46958: 633f7f216663587f17601eaa1cf2ac3d5654874c btrfs: fix race between transaction aborts and fsyncs leading to use-after-free + CVE-2021-46960: f59a9242942fef0de7b926e438ba4eae65d4b4dd cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: ea817ac1014c04f47885532b55f5d0898deadfba irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: ebe0f12cf4c044f812c6d17011531582f9ac8bb3 mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: 80ef24175df2cba3860d0369d1c662b49ee2de56 scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46964: 4ecd42dec858b6632c5f024fe13e9ad6c30f2734 scsi: qla2xxx: Reserve extra IRQ vectors + CVE-2021-46965: 4e4ebb827bf09311469ffd9d0c14ed40ed9747aa mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: f16737caf41fc06cfe6e49048becb09657074d4b ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46967: 940230a5c31e2714722aee04c521a21f484b4df7 vhost-vdpa: fix vm_flags for virtqueue doorbell mapping + CVE-2021-46968: 055a063a18bcd19b93709e3eac8078d6b2f04599 s390/zcrypt: fix zcard and zqueue hot-unplug memleak + CVE-2021-46970: abd1510c08a13c88d24b622a83c82e87ff1d3135 bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue CVEs fixed in 5.11.21: + CVE-2020-36778: e2ba996577eaea423694dc69ae43d56f1410a22b i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: d791b90f5c5e5aa8ccf9e33386c16bd2b7e333a4 i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: 9223505e938ba3db5907e058f4209770cff2f2a7 i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: 1ecc0ebc2ebbad4a22a670a07d27a21fa0b59c77 i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: bb300acc867e937edc2a6898e92b21f88e4e4e66 i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: 96c4a03658d661666c360959aa80cdabfe2972ed i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: d57ff04e0ed6f3be1682ae861ead33f879225e07 i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36785: 801c1d505894008c888bc71d08d5cff5d87f8aba media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() + CVE-2020-36786: 4f0f37d03cde8f4341df8454f9b40a67fda94a33 media: [next] staging: media: atomisp: fix memory leak of object flash + CVE-2020-36787: 2964c37563e86cfdc439f217eb3c5a69adfdba6a media: aspeed: fix clock handling logic CVE-2021-31440: d11e645725e9850109a40031997fc05b7dda34c7 bpf: Fix propagation of 32 bit unsigned bounds from 64 bit bounds CVE-2021-32399: c20a95f000bc369176d1698fce2515656b5db924 bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: 7064d5651ba08adbcd3d8a2fc78f8a117a768935 Bluetooth: verify AMP hci_chan before amp_destroy @@ -99,9 +157,87 @@ CVE-2021-3490: 3a0066086a338f99205b1c38c9fbefaeb5cd6d28 bpf: Fix alu32 const subreg bound tracking on bitwise operations CVE-2021-3491: 7a8411015f744e68013d77432d869be5ad34208f io_uring: truncate lengths larger than MAX_RW_COUNT on provide buffers CVE-2021-45486: 4bfdd8b53f7440ac0f6290720c6e1ad5952377ec inet: use bigger hash table for IP ID generation + CVE-2021-47010: efe1532a6e1a8e3c343d04fff510f0ed80328f9c net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47011: 89b1ed358e01e1b0417f5d3b0082359a23355552 mm: memcontrol: slab: fix obtain a reference to a freeing memcg + CVE-2021-47012: 3e22b88e02c194f6c80867abfef5cc09383461f4 RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: 8c06f34785068b87e2b560534c77c163d6c6dca7 net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: e187ef83c04a5d23e68d39cfdff1a1931e29890c bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: 73fdeb612d25b5e105c219e05434285a45d23576 m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47017: 3b1ac40c6012140828caa79e592a438a18ebf71b ath10k: Fix a use after free in ath10k_htc_send_bundle + CVE-2021-47018: abb07dc5e8b61ab7b1dde20dd73aa01a3aeb183f powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: 2f17ac005b320c85d686088cfd4c2e7017912b88 soundwire: stream: fix memory leak in stream config error path + CVE-2021-47023: b5bba6ede42693f50ce1c9944315cefed7491061 net: marvell: prestera: fix port event handling on init + CVE-2021-47024: 27691665145e74a45034a9dccf1150cf1894763a vsock/virtio: free queued packets when closing socket + CVE-2021-47026: 676171f9405dcaa45a33d18241c32f387dbaae39 RDMA/rtrs-clt: destroy sysfs after removing session from active list + CVE-2021-47028: dfc8a71448c7d4fec38fb22bdc8a76d79c14b6da mt76: mt7915: fix txrate reporting + CVE-2021-47032: 4a9dcd6efb2a268fc5707dcfb3b0c412975c4462 mt76: mt7915: fix tx skb dma unmap + CVE-2021-47033: a025277a80add18c33d01042525a74fe5b875f25 mt76: mt7615: fix tx skb dma unmap + CVE-2021-47034: 01ac203e2119d8922126886ddea309fb676f955f powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47035: 25faff78138933244c678c7fc78f7c0340fa04a0 iommu/vt-d: Remove WO permissions on second-level paging entries + CVE-2021-47037: 6893df3753beafa5f7351228a9dd8157a57d7492 ASoC: q6afe-clocks: fix reprobing of the driver + CVE-2021-47038: fee71f480bc1dec5f6ae3b0b185ff12a62bceabc Bluetooth: avoid deadlock between hci_dev->lock and socket lock + CVE-2021-47039: 07f86aa8f4fe077be1b018cc177eb8c6573e5671 ataflop: potential out of bounds in do_format() + CVE-2021-47040: 51bf90901952aaac564bbdb36b2b503050c53dd9 io_uring: fix overflows checks in provide buffers + CVE-2021-47041: 06beaa1a9f6e501213195e47c30416032fd2bbd5 nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: 940d01eceb3a7866fbfca136a55a5625fc75a565 media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47044: 2f3eab368e313dba35fc2f51ede778bf7b030b54 sched/fair: Fix shift-out-of-bounds in load_balance() + CVE-2021-47045: a09677de458d500b00701f6036baa423d9995408 scsi: lpfc: Fix null pointer dereference in lpfc_prep_els_iocb() + CVE-2021-47046: 6a58310d5d1e5b02d0fc9b393ba540c9367bced5 drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47047: c26c026eb496261dbc0adbf606cc81989cd2038c spi: spi-zynqmp-gqspi: return -ENOMEM if dma_map_single fails + CVE-2021-47048: d67e0d6bd92ebbb0294e7062bbf5cdc773764e62 spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op + CVE-2021-47049: f37dd5d1b5d38a79a4f7b8dd7bbb705505f05560 Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47050: e16acc3a37f09e18835dc5d8014942c2ef6ca957 memory: renesas-rpc-if: fix possible NULL pointer dereference of resource + CVE-2021-47051: b8207bfc539cd07d15e753ff2d179c5b61c673b1 spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: dfd6443bf49ac17adf882ca46c40c506a0284bd6 crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47053: c633e025bd04f54d7b33331cfcdb71354b08ce59 crypto: sun8i-ss - Fix memory leak of pad + CVE-2021-47054: 6b68c03dfc79cd95a58dfd03f91f6e82829a1b0c bus: qcom: Put child node before return + CVE-2021-47055: 077259f5e777c3c8821f6b41dee709fcda27306b mtd: require write permissions for locking and badblock ioctls + CVE-2021-47056: 20fd40fc6f2c2b41dc6f637f88d494b14e9c21f1 crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47057: e1f2d739849c3239df1ea3f97d40bade4b808410 crypto: sun8i-ss - Fix memory leak of object d when dma_iv fails to map + CVE-2021-47058: c764e375ae647832de1ee73d43a4bb3ef8a8f43d regmap: set debugfs_name to NULL after it is freed + CVE-2021-47059: ca065a93699f8cf3f42c60eefed73086007e928e crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47060: 168e82f640ed1891a700bdb43e37da354b2ab63c KVM: Stop looking for coalesced MMIO zones if the bus is destroyed + CVE-2021-47061: 4e899ca848636b37e9ac124bc1723862a7d7d927 KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU + CVE-2021-47062: bd0cced2ae93195668f983d443f7f17e8efd24d2 KVM: SVM: Use online_vcpus, not created_vcpus, to iterate over vCPUs + CVE-2021-47063: 18149b420c9bd93c443e8d1f48a063d71d9f6aa1 drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47064: 9b68ce2856dadc0e1cb6fd21fbeb850da49efd08 mt76: fix potential DMA mapping leak + CVE-2021-47065: 5f3dbced8eaa5c9ed7d6943f3fea99f235a6516a rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47066: 29ffa50f33de824b5491f8239c88c4a0efdd03af async_xor: increase src_offs when dropping destination page + CVE-2021-47067: dc4452867200fa94589b382740952b58aa1c3e6c soc/tegra: regulators: Fix locking up when voltage-spread is out of range CVEs fixed in 5.11.22: CVE-2021-4157: fd02a794aaeac693c7c092a4b482f87256d151fc pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46976: 608441de3976c526b02af4d7063093c8adf351e3 drm/i915: Fix crash in auto_retire + CVE-2021-46977: 5adcdeb57007ccf8ab7ac20bf787ffb6fafb1a94 KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46978: 200a45649ab7361bc80c70aebf7165b64f9a6c9f KVM: nVMX: Always make an attempt to map eVMCS after migration + CVE-2021-46979: 11e1cae5da4096552f7c091476cbadbc0d1817da iio: core: fix ioctl handlers removal + CVE-2021-46980: a453bfd7ef15fd9d524004d3ca7b05353a302911 usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4 + CVE-2021-46981: b31d237796fd618379ec8e0f4de3370b5e4aeee7 nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: 64acb100fe3beb5d20184d0ae3307235bd3555c4 f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46983: 17fb6dfa5162b89ecfa07df891a53afec321abe8 nvmet-rdma: Fix NULL deref when SEND is completed with error + CVE-2021-46984: a287cd84e047045f5a4d4da793414e848de627c6 kyber: fix out of bounds access when preempted + CVE-2021-46986: bc0cdd72493236fb72b390ad38ce581e353c143c usb: dwc3: gadget: Free gadget structure only after freeing endpoints + CVE-2021-46987: d5347827d0b4b2250cbce6eccaa1c81dc78d8651 btrfs: fix deadlock when cloning inline extents and using qgroups + CVE-2021-46988: ad53127973034c63b5348715a1043d0e80ceb330 userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: c477f62db1a0c0ecaa60a29713006ceeeb04b685 hfsplus: prevent corruption in shrinking truncate + CVE-2021-46990: dd0d6117052faace5440db20fc37175efe921c7d powerpc/64s: Fix crashes when toggling entry flush barrier + CVE-2021-46991: 4ebc10aa7cd17fd9857dedac69600465c9dd16d1 i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: 1e8ab479cfbe5751efccedb95afb9b112a5ba475 netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: 3da3f804b82a0a382d523a21acf4cf3bb35f936d sched: Fix out-of-bound access in uclamp + CVE-2021-46994: 6f8f1c27b577de15f69fefce3c502bb6300d825c can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46996: 59fa98bfa1f4013d658d990cac88c87b46ff410c netfilter: nftables: Fix a memleak from userdata error path in new objects + CVE-2021-46997: e67a83f078005461b59b4c776e6b5addd11725fa arm64: entry: always set GIC_PRIO_PSR_I_SET during entry + CVE-2021-46998: 6892396ebf04ea2c021d80e10f4075e014cd7cc3 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-46999: 61b877bad9bb0d82b7d8841be50872557090a704 sctp: do asoc update earlier in sctp_sf_do_dupcook_a + CVE-2021-47000: 22fa4c8288f1ec40f6d62d7a32c57ac176f9f0bc ceph: fix inode leak on getattr error in __fh_to_dentry + CVE-2021-47001: 8834ecb5df22b7ff3c9b0deba7726579bb613f95 xprtrdma: Fix cwnd update ordering + CVE-2021-47002: 1e10f58f1c9a6b667b045513c7a4e6111c24fe7c SUNRPC: Fix null pointer dereference in svc_rqst_free() + CVE-2021-47003: 2280b4cc29d8cdd2be3d1b2d1ea4f958e2131c97 dmaengine: idxd: Fix potential null dereference on pointer status + CVE-2021-47004: 1e116f87825f01a6380286472196882746b16f63 f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: 679ebad058b8168f10e63876d63b0877fd2fe784 PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: 7eeacc6728c5478e3c01bc82a1f08958eaa12366 ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47007: 860afd680d9cc1dabd61cda3cd246f60aa1eb705 f2fs: fix panic during f2fs_resize_fs() + CVE-2021-47008: fb9e14f4f8217a0980f8da2c8ff70dee058cbe47 KVM: SVM: Make sure GHCB is mapped before updating Outstanding CVEs: CVE-2005-3660: (unk) @@ -132,6 +268,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -281,6 +418,110 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file CVE-2021-46283: (unk) netfilter: nf_tables: initialize set before expression setup + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-47014: (unk) net/sched: act_ct: fix wild memory access when clearing fragments + CVE-2021-47036: (unk) udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47069: (unk) ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47080: (unk) RDMA/core: Prevent divide-by-zero error triggered by the user + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47090: (unk) mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() + CVE-2021-47091: (unk) mac80211: fix locking in ieee80211_start_ap error path + CVE-2021-47093: (unk) platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47094: (unk) KVM: x86/mmu: Don't advance iterator after restart due to yielding + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47097: (unk) Input: elantech - fix stack out of bound access in elantech_change_report_id() + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: (unk) xen-netback: take a reference to the RX task thread + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47123: (unk) io_uring: fix ltout double free on completion race + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47130: (unk) nvmet: fix freeing unallocated p2pmem + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47134: (unk) efi/fdt: fix panic when no valid fdt found + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: (unk) net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47152: (unk) mptcp: fix data stream corruption + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47164: (unk) net/mlx5e: Fix null deref accessing lag dev + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47174: (unk) netfilter: nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47176: (unk) s390/dasd: add missing discipline function + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47178: (unk) scsi: target: core: Avoid smp_processor_id() in preemptible code + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -535,6 +776,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -618,6 +863,7 @@ CVE-2023-28410: (unk) drm/i915/gem: add missing boundary check in vm_access CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -712,7 +958,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4732: (unk) mm/userfaultfd: fix uffd-wp special cases for fork() CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() @@ -741,19 +987,126 @@ CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -763,7 +1116,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -773,15 +1126,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -791,7 +1145,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -801,13 +1155,135 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.12/5.12_CVEs.txt b/data/5.12/5.12_CVEs.txt index cf19e81..b9b2058 100644 --- a/data/5.12/5.12_CVEs.txt +++ b/data/5.12/5.12_CVEs.txt
@@ -27,6 +27,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -56,6 +57,18 @@ CVE-2020-27820: Fix not seen in stream CVE-2020-35501: Fix unknown CVE-2020-36516: Fix not seen in stream +CVE-2020-36776: Fixed with 5.12.3 +CVE-2020-36777: Fixed with 5.12.3 +CVE-2020-36778: Fixed with 5.12.4 +CVE-2020-36779: Fixed with 5.12.4 +CVE-2020-36780: Fixed with 5.12.4 +CVE-2020-36781: Fixed with 5.12.4 +CVE-2020-36782: Fixed with 5.12.4 +CVE-2020-36783: Fixed with 5.12.4 +CVE-2020-36784: Fixed with 5.12.4 +CVE-2020-36785: Fixed with 5.12.4 +CVE-2020-36786: Fixed with 5.12.4 +CVE-2020-36787: Fixed with 5.12.4 CVE-2021-0129: Fixed with 5.12.7 CVE-2021-0399: Fix unknown CVE-2021-0920: Fix not seen in stream @@ -187,6 +200,246 @@ CVE-2021-45486: Fixed with 5.12.4 CVE-2021-45868: Fix not seen in stream CVE-2021-46283: Fixed with 5.12.13 +CVE-2021-46905: Fixed with 5.12.1 +CVE-2021-46906: Fixed with 5.12.12 +CVE-2021-46921: Fixed with 5.12 +CVE-2021-46922: Fixed with 5.12 +CVE-2021-46923: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fixed with 5.12.3 +CVE-2021-46939: Fixed with 5.12.3 +CVE-2021-46940: Fixed with 5.12.3 +CVE-2021-46941: Fixed with 5.12.3 +CVE-2021-46942: Fixed with 5.12.3 +CVE-2021-46943: Fixed with 5.12.3 +CVE-2021-46944: Fixed with 5.12.3 +CVE-2021-46945: Fixed with 5.12.3 +CVE-2021-46947: Fixed with 5.12.3 +CVE-2021-46948: Fixed with 5.12.3 +CVE-2021-46949: Fixed with 5.12.3 +CVE-2021-46950: Fixed with 5.12.3 +CVE-2021-46951: Fixed with 5.12.3 +CVE-2021-46952: Fixed with 5.12.3 +CVE-2021-46953: Fixed with 5.12.3 +CVE-2021-46954: Fixed with 5.12.3 +CVE-2021-46955: Fixed with 5.12.3 +CVE-2021-46956: Fixed with 5.12.3 +CVE-2021-46957: Fixed with 5.12.3 +CVE-2021-46958: Fixed with 5.12.3 +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fixed with 5.12.3 +CVE-2021-46961: Fixed with 5.12.3 +CVE-2021-46962: Fixed with 5.12.3 +CVE-2021-46963: Fixed with 5.12.3 +CVE-2021-46964: Fixed with 5.12.3 +CVE-2021-46965: Fixed with 5.12.3 +CVE-2021-46966: Fixed with 5.12.3 +CVE-2021-46967: Fixed with 5.12.3 +CVE-2021-46968: Fixed with 5.12.3 +CVE-2021-46969: Fixed with 5.12.3 +CVE-2021-46970: Fixed with 5.12.3 +CVE-2021-46971: Fixed with 5.12.2 +CVE-2021-46972: Fixed with 5.12.2 +CVE-2021-46973: Fixed with 5.12.2 +CVE-2021-46974: Fixed with 5.12.2 +CVE-2021-46976: Fixed with 5.12.5 +CVE-2021-46977: Fixed with 5.12.5 +CVE-2021-46978: Fixed with 5.12.5 +CVE-2021-46979: Fixed with 5.12.5 +CVE-2021-46980: Fixed with 5.12.5 +CVE-2021-46981: Fixed with 5.12.5 +CVE-2021-46982: Fixed with 5.12.5 +CVE-2021-46983: Fixed with 5.12.5 +CVE-2021-46984: Fixed with 5.12.5 +CVE-2021-46985: Fixed with 5.12.5 +CVE-2021-46986: Fixed with 5.12.5 +CVE-2021-46987: Fixed with 5.12.5 +CVE-2021-46988: Fixed with 5.12.5 +CVE-2021-46989: Fixed with 5.12.5 +CVE-2021-46990: Fixed with 5.12.5 +CVE-2021-46991: Fixed with 5.12.5 +CVE-2021-46992: Fixed with 5.12.5 +CVE-2021-46993: Fixed with 5.12.5 +CVE-2021-46994: Fixed with 5.12.5 +CVE-2021-46995: Fixed with 5.12.5 +CVE-2021-46996: Fixed with 5.12.5 +CVE-2021-46997: Fixed with 5.12.5 +CVE-2021-46998: Fixed with 5.12.5 +CVE-2021-46999: Fixed with 5.12.5 +CVE-2021-47000: Fixed with 5.12.5 +CVE-2021-47001: Fixed with 5.12.5 +CVE-2021-47002: Fixed with 5.12.5 +CVE-2021-47003: Fixed with 5.12.5 +CVE-2021-47004: Fixed with 5.12.5 +CVE-2021-47005: Fixed with 5.12.5 +CVE-2021-47006: Fixed with 5.12.5 +CVE-2021-47007: Fixed with 5.12.5 +CVE-2021-47008: Fixed with 5.12.5 +CVE-2021-47009: Fixed with 5.12.5 +CVE-2021-47010: Fixed with 5.12.4 +CVE-2021-47011: Fixed with 5.12.4 +CVE-2021-47012: Fixed with 5.12.4 +CVE-2021-47013: Fixed with 5.12.4 +CVE-2021-47014: Fixed with 5.12.4 +CVE-2021-47015: Fixed with 5.12.4 +CVE-2021-47016: Fixed with 5.12.4 +CVE-2021-47017: Fixed with 5.12.4 +CVE-2021-47018: Fixed with 5.12.4 +CVE-2021-47019: Fixed with 5.12.4 +CVE-2021-47020: Fixed with 5.12.4 +CVE-2021-47021: Fixed with 5.12.4 +CVE-2021-47022: Fixed with 5.12.4 +CVE-2021-47023: Fixed with 5.12.4 +CVE-2021-47024: Fixed with 5.12.4 +CVE-2021-47025: Fixed with 5.12.4 +CVE-2021-47026: Fixed with 5.12.4 +CVE-2021-47027: Fixed with 5.12.4 +CVE-2021-47028: Fixed with 5.12.4 +CVE-2021-47029: Fixed with 5.12.4 +CVE-2021-47030: Fixed with 5.12.4 +CVE-2021-47031: Fixed with 5.12.4 +CVE-2021-47032: Fixed with 5.12.4 +CVE-2021-47033: Fixed with 5.12.4 +CVE-2021-47034: Fixed with 5.12.4 +CVE-2021-47035: Fixed with 5.12.4 +CVE-2021-47036: Fixed with 5.12.4 +CVE-2021-47037: Fixed with 5.12.4 +CVE-2021-47038: Fixed with 5.12.4 +CVE-2021-47039: Fixed with 5.12.4 +CVE-2021-47040: Fixed with 5.12.4 +CVE-2021-47041: Fixed with 5.12.4 +CVE-2021-47042: Fixed with 5.12.4 +CVE-2021-47043: Fixed with 5.12.4 +CVE-2021-47044: Fixed with 5.12.4 +CVE-2021-47045: Fixed with 5.12.4 +CVE-2021-47046: Fixed with 5.12.4 +CVE-2021-47047: Fixed with 5.12.4 +CVE-2021-47048: Fixed with 5.12.4 +CVE-2021-47049: Fixed with 5.12.4 +CVE-2021-47050: Fixed with 5.12.4 +CVE-2021-47051: Fixed with 5.12.4 +CVE-2021-47052: Fixed with 5.12.4 +CVE-2021-47053: Fixed with 5.12.4 +CVE-2021-47054: Fixed with 5.12.4 +CVE-2021-47055: Fixed with 5.12.4 +CVE-2021-47056: Fixed with 5.12.4 +CVE-2021-47057: Fixed with 5.12.4 +CVE-2021-47058: Fixed with 5.12.4 +CVE-2021-47059: Fixed with 5.12.4 +CVE-2021-47060: Fixed with 5.12.4 +CVE-2021-47061: Fixed with 5.12.4 +CVE-2021-47062: Fixed with 5.12.4 +CVE-2021-47063: Fixed with 5.12.4 +CVE-2021-47064: Fixed with 5.12.4 +CVE-2021-47065: Fixed with 5.12.4 +CVE-2021-47066: Fixed with 5.12.4 +CVE-2021-47067: Fixed with 5.12.4 +CVE-2021-47068: Fixed with 5.12.4 +CVE-2021-47069: Fixed with 5.12.7 +CVE-2021-47070: Fixed with 5.12.7 +CVE-2021-47071: Fixed with 5.12.7 +CVE-2021-47072: Fixed with 5.12.7 +CVE-2021-47073: Fixed with 5.12.7 +CVE-2021-47074: Fixed with 5.12.7 +CVE-2021-47075: Fixed with 5.12.7 +CVE-2021-47076: Fixed with 5.12.7 +CVE-2021-47077: Fixed with 5.12.7 +CVE-2021-47078: Fixed with 5.12.7 +CVE-2021-47079: Fixed with 5.12.7 +CVE-2021-47080: Fixed with 5.12.7 +CVE-2021-47081: Fixed with 5.12.7 +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47089: Fix not seen in stream +CVE-2021-47090: Fix not seen in stream +CVE-2021-47091: Fix not seen in stream +CVE-2021-47093: Fix not seen in stream +CVE-2021-47094: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47097: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fixed with 5.12.10 +CVE-2021-47110: Fixed with 5.12.10 +CVE-2021-47111: Fixed with 5.12.10 +CVE-2021-47112: Fixed with 5.12.10 +CVE-2021-47113: Fixed with 5.12.10 +CVE-2021-47114: Fixed with 5.12.10 +CVE-2021-47116: Fixed with 5.12.10 +CVE-2021-47117: Fixed with 5.12.10 +CVE-2021-47118: Fixed with 5.12.10 +CVE-2021-47119: Fixed with 5.12.18 +CVE-2021-47120: Fixed with 5.12.10 +CVE-2021-47121: Fixed with 5.12.10 +CVE-2021-47122: Fixed with 5.12.10 +CVE-2021-47123: Fixed with 5.12.10 +CVE-2021-47124: Fixed with 5.12.19 +CVE-2021-47125: Fixed with 5.12.10 +CVE-2021-47126: Fixed with 5.12.10 +CVE-2021-47127: Fixed with 5.12.10 +CVE-2021-47128: Fixed with 5.12.10 +CVE-2021-47129: Fixed with 5.12.10 +CVE-2021-47130: Fixed with 5.12.10 +CVE-2021-47131: Fixed with 5.12.10 +CVE-2021-47132: Fixed with 5.12.10 +CVE-2021-47133: Fixed with 5.12.10 +CVE-2021-47134: Fixed with 5.12.10 +CVE-2021-47135: Fixed with 5.12.10 +CVE-2021-47136: Fixed with 5.12.9 +CVE-2021-47137: Fixed with 5.12.9 +CVE-2021-47138: Fixed with 5.12.9 +CVE-2021-47139: Fixed with 5.12.9 +CVE-2021-47140: Fixed with 5.12.9 +CVE-2021-47141: Fixed with 5.12.9 +CVE-2021-47142: Fixed with 5.12.9 +CVE-2021-47143: Fixed with 5.12.9 +CVE-2021-47144: Fixed with 5.12.9 +CVE-2021-47145: Fixed with 5.12.9 +CVE-2021-47146: Fixed with 5.12.9 +CVE-2021-47147: Fixed with 5.12.9 +CVE-2021-47148: Fixed with 5.12.9 +CVE-2021-47149: Fixed with 5.12.9 +CVE-2021-47150: Fixed with 5.12.9 +CVE-2021-47151: Fixed with 5.12.9 +CVE-2021-47152: Fixed with 5.12.9 +CVE-2021-47153: Fixed with 5.12.9 +CVE-2021-47158: Fixed with 5.12.9 +CVE-2021-47159: Fixed with 5.12.9 +CVE-2021-47160: Fixed with 5.12.9 +CVE-2021-47161: Fixed with 5.12.9 +CVE-2021-47162: Fixed with 5.12.9 +CVE-2021-47163: Fixed with 5.12.9 +CVE-2021-47164: Fixed with 5.12.9 +CVE-2021-47165: Fixed with 5.12.9 +CVE-2021-47166: Fixed with 5.12.9 +CVE-2021-47167: Fixed with 5.12.9 +CVE-2021-47168: Fixed with 5.12.9 +CVE-2021-47169: Fixed with 5.12.9 +CVE-2021-47170: Fixed with 5.12.9 +CVE-2021-47171: Fixed with 5.12.9 +CVE-2021-47172: Fixed with 5.12.9 +CVE-2021-47173: Fixed with 5.12.9 +CVE-2021-47174: Fixed with 5.12.9 +CVE-2021-47175: Fixed with 5.12.9 +CVE-2021-47176: Fixed with 5.12.9 +CVE-2021-47177: Fixed with 5.12.9 +CVE-2021-47178: Fixed with 5.12.9 +CVE-2021-47179: Fixed with 5.12.9 +CVE-2021-47180: Fixed with 5.12.8 CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -443,6 +696,10 @@ CVE-2022-47521: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -528,6 +785,7 @@ CVE-2023-28410: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 5.12.18 CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -622,7 +880,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream @@ -652,19 +910,128 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -674,7 +1041,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -684,15 +1051,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -702,7 +1070,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -712,13 +1080,136 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.12/5.12_security.txt b/data/5.12/5.12_security.txt index dc1584c..a2782a5 100644 --- a/data/5.12/5.12_security.txt +++ b/data/5.12/5.12_security.txt
@@ -1,16 +1,68 @@ CVEs fixed in 5.12: CVE-2019-15794: 2896900e22f8212606a1837d89a6bbce314ceeda ovl: fix reference counting in ovl_mmap error path + CVE-2021-46921: 84a24bf8c52e66b7ac89ada5e3cfbe72d65c1896 locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46922: 9d5171eab462a63e2fbebfccf6026e92be018f20 KEYS: trusted: Fix TPM reservation for seal/unseal + +CVEs fixed in 5.12.1: + CVE-2021-46905: 41c44e1f3112d7265dae522c026399b2a42d19ef net: hso: fix NULL-deref on disconnect regression CVEs fixed in 5.12.2: CVE-2021-31829: 7cf64d8679ca1cb20cf57d6a88bfee79a0922a66 bpf: Fix masking negation logic upon negative dst register CVE-2021-38209: 671c54ea8c7ff47bd88444f3fffb65bf9799ce43 netfilter: conntrack: Make global sysctls readonly in non-init netns + CVE-2021-46971: c7b0208ee370b89d20486fae71cd9abb759819c1 perf/core: Fix unconditional security_locked_down() call + CVE-2021-46972: d587cfaef72b1b6f4b2774827123bce91f497cc8 ovl: fix leaked dentry + CVE-2021-46973: 03c649dee8b1eb5600212a249542a70f47a5ab40 net: qrtr: Avoid potential use after free in MHI send + CVE-2021-46974: 7cf64d8679ca1cb20cf57d6a88bfee79a0922a66 bpf: Fix masking negation logic upon negative dst register CVEs fixed in 5.12.3: + CVE-2020-36776: 6bf443acf6ca4f666d0e4225614ba9993a3aa1a9 thermal/drivers/cpufreq_cooling: Fix slab OOB issue + CVE-2020-36777: cede24d13be6c2a62be6d7ceea63c2719b0cfa82 media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-3506: 0b60f23e29c8dfcf1b8a037fae1167e4f2e3249e f2fs: fix to avoid out-of-bounds memory access CVE-2021-3543: 3494c68d79cbb7ddff88fd35e0796343ef736606 nitro_enclaves: Fix stale file descriptors on failed usercopy + CVE-2021-46938: d757bf4c69cda3c3ab7f775dfabbf5a80e2f6f9d dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: 2a1bd74b8186d7938bf004f5603f25b84785f63e tracing: Restructure trace_clock_global() to never block + CVE-2021-46940: 337b1546cde87fb8588ddaedf0201b769baa572a tools/power turbostat: Fix offset overflow issue in index converting + CVE-2021-46941: 1c10fd60c8595ea7ff7e29d3cf1fa88069941da3 usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46942: cb5e0b3d0f993a6268c1a2c7ede2f9aa0c17ef68 io_uring: fix shared sqpoll cancellation hangs + CVE-2021-46943: 6fb617e37a39db0a3eca4489431359d0bdf3b9bc media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: 74ba0adb5e983503b18a96121d965cad34ac7ce3 media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46945: 1e9ea8f4637026b8e965128953f2da061ccae9c4 ext4: always panic when errors=panic is specified + CVE-2021-46947: ebeac958b690123a0b40aa61f688f2f170035fad sfc: adjust efx->xdp_tx_queue_count with the real number of initialized queues + CVE-2021-46948: e531db1ea6f98c9612cb2de093a107c7eadfb96c sfc: farch: fix TX queue lookup in TX event handling + CVE-2021-46949: 98d91180748986bfb6dfb3e72765f3225719a647 sfc: farch: fix TX queue lookup in TX flush done handling + CVE-2021-46950: 538244fba59fde17186322776247cd9c05be86dd md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: ac07c557ca12ec9276c0375517bac7ae5be4e50c tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: 3d0163821c035040a46d816a42c0780f0f0a30a8 NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: 596e079c362ac17ed02aa1b99fdc444d62072a01 ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46954: 8e6dfb7beeb6489ac1365b8a71052e737f5da76e net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46955: b3502b04e84ac5349be95fc033c17bd701d2787a openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: 5116e79fc6e6725b8acdad8b7e928a83ab7b47e6 virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46957: fd0f06590d35c99f98d12c7984897ec4201a6263 riscv/kprobe: fix kernel panic when invoking sys_read traced by kprobe + CVE-2021-46958: e2da98788369bfba1138bada72765c47989a4338 btrfs: fix race between transaction aborts and fsyncs leading to use-after-free + CVE-2021-46960: b399c1a3ea0b9d10047ff266d65533df7f15532f cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: 3f72d3709f53af72835af7dc8b15ba61611a0e36 irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: d6e7fda496978f2763413b5523557b38dc2bf6c2 mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: a73208e3244127ef9f2cdf24e4adb947aaa32053 scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46964: 0f86d66b38501e3ac66cf2d9f9f8ad6838bad0e6 scsi: qla2xxx: Reserve extra IRQ vectors + CVE-2021-46965: 4d786870e3262ec098a3b4ed10b895176bc66ecb mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: b7a5baaae212a686ceb812c32fceed79c03c0234 ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46967: 93dbbf20e3ffad14f04227a0b7105f6e6f0387ce vhost-vdpa: fix vm_flags for virtqueue doorbell mapping + CVE-2021-46968: 971dc8706cee47393d393905d294ea47e39503d3 s390/zcrypt: fix zcard and zqueue hot-unplug memleak + CVE-2021-46969: a99b661c3187365f81026d89b1133a76cd2652b3 bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: ed541cff35cbdb695f0c98ef506dd7218883fc07 bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue CVEs fixed in 5.12.4: + CVE-2020-36778: a42ac16e6573f19c78f556ea292f5b534fcc4514 i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: c7ea772c9fcf711ed566814b92eecaffc0e2bfd0 i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: d3406ab52097328a3bc4cbe124bfd8f6d51fb86f i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: ff406f6cd09c273337ab4854292e4aca48f8affd i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: b100650d80cd2292f6c152f5f2943b5944b3e8ce i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: 7ee35cde1e810ad6ca589980b9ec2b7b62946a5b i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: a45fc41beed8e0fe31864619c34aa00797fb60c1 i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36785: 8267ccd7b9df7ab682043507dd682fe0621cf045 media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() + CVE-2020-36786: 27d2eab69f7da8e94e4751ac5c6d22d809275484 media: [next] staging: media: atomisp: fix memory leak of object flash + CVE-2020-36787: 75321dc8aebe3f30eff226028fe6da340fe0bf02 media: aspeed: fix clock handling logic CVE-2021-23134: 18175fe17ae043a0b81e5d511f8817825784c299 net/nfc: fix use-after-free llcp_sock_bind/connect CVE-2021-31440: b64a9914918d4f2112fd244fe7bb6f98b20e8f60 bpf: Fix propagation of 32 bit unsigned bounds from 64 bit bounds CVE-2021-32399: 93d388c087d71aed0e79b8c7db3132f28c010197 bluetooth: eliminate the potential race condition when removing the HCI controller @@ -19,17 +71,124 @@ CVE-2021-3490: 9fdd1d10daac186e21a77290f9d22b41e175e1b9 bpf: Fix alu32 const subreg bound tracking on bitwise operations CVE-2021-3491: ca2960d35c36f2e601563c49f6673efd111b94c0 io_uring: truncate lengths larger than MAX_RW_COUNT on provide buffers CVE-2021-45486: 806245375ff907cc8771de7a11585992a96d7937 inet: use bigger hash table for IP ID generation + CVE-2021-47010: e7d7bedd507bb732e600403b7a96f9fe48d0ca31 net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47011: c3ae6a3f3ca4f02f6ccddf213c027302586580d0 mm: memcontrol: slab: fix obtain a reference to a freeing memcg + CVE-2021-47012: ad9ce7188432650469a6c7625bf479f5ed0b6155 RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: e407495ba6788a67d1bd41714158c079e340879b net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47014: 0648941f4c8bbf8b4b6c0b270889ae7aa769b921 net/sched: act_ct: fix wild memory access when clearing fragments + CVE-2021-47015: 3fbc5bc651d688fbea2a59cdc91520a2f5334d0a bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: 5d34225169346cab5145978d153b9ce90e9ace21 m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47017: 5e413c0831ff4700d1739db3fa3ae9f859744676 ath10k: Fix a use after free in ath10k_htc_send_bundle + CVE-2021-47018: a84df7c80bdac598d6ac9268ae578da6928883e8 powerpc/64: Fix the definition of the fixmap area + CVE-2021-47019: b13cbc536990ff609afa878b6211cd6f6265ba60 mt76: mt7921: fix possible invalid register access + CVE-2021-47020: effd2bd62b416f6629e18e3ce077c60de14cfdea soundwire: stream: fix memory leak in stream config error path + CVE-2021-47021: d754c80ae82a662e692a82faad71b8c218cb7f52 mt76: mt7915: fix memleak when mt7915_unregister_device() + CVE-2021-47022: 6c5b2b0c6e5a6ce2d8f9f85b8b72bfad60eaa506 mt76: mt7615: fix memleak when mt7615_unregister_device() + CVE-2021-47023: 9d1ba11fabdd8f25abb24272ef1621417981320b net: marvell: prestera: fix port event handling on init + CVE-2021-47024: 37c38674ef2f8d7e8629e5d433c37d6c1273d16b vsock/virtio: free queued packets when closing socket + CVE-2021-47025: 5cad9e2caa9613fdcd246bd4ebf0ffbec1cba2ca iommu/mediatek: Always enable the clk on resume + CVE-2021-47026: d3cca8067d43dfee4a3535c645b55f618708dccb RDMA/rtrs-clt: destroy sysfs after removing session from active list + CVE-2021-47027: a46b536cd60c0dbd4bf767c62a8774dec52bf099 mt76: mt7921: fix kernel crash when the firmware fails to download + CVE-2021-47028: 4bd926e5ca88eac4d95eacb806b229f8729bc62e mt76: mt7915: fix txrate reporting + CVE-2021-47029: 2554b9cb4b5e097c6071ec3ed5bc7c665c477ca7 mt76: connac: fix kernel warning adding monitor interface + CVE-2021-47030: 54b989653c5531bc4416ced33f146b9cb633d978 mt76: mt7615: fix memory leak in mt7615_coredump_work + CVE-2021-47031: 4811226374453607175ea057777faa7e7f752204 mt76: mt7921: fix memory leak in mt7921_coredump_work + CVE-2021-47032: e2cdc9cb33c5963efe1a7c022753386f9463d1b7 mt76: mt7915: fix tx skb dma unmap + CVE-2021-47033: 821ae236ccea989a1fcc6abfc4d5b74ad4ba39d2 mt76: mt7615: fix tx skb dma unmap + CVE-2021-47034: e40c52ee67b155ad59f59e73ea136d02685f0e0d powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47035: 66c24699f266ff310381a9552d3576eea8ad6e20 iommu/vt-d: Remove WO permissions on second-level paging entries + CVE-2021-47036: 450687386cd16d081b58cd7a342acff370a96078 udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47037: 62413972f5266568848a36fd15160397b211fa74 ASoC: q6afe-clocks: fix reprobing of the driver + CVE-2021-47038: 332e69eb3bd90370f2d9f2c2ca7974ff523dea17 Bluetooth: avoid deadlock between hci_dev->lock and socket lock + CVE-2021-47039: 2a3a8bbca28b899806844c00d49ed1b7ccb50957 ataflop: potential out of bounds in do_format() + CVE-2021-47040: 84b8c266c4bfe9ed5128e13253c388deb74b1b03 io_uring: fix overflows checks in provide buffers + CVE-2021-47041: 906c538340dde6d891df89fe7dac8eaa724e40da nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47042: 296443139f893b554dddd56a99ba8471ab5802d4 drm/amd/display: Free local data after use + CVE-2021-47043: 711acdf0228dc71601247f28b56f13e850e395c8 media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47044: 805cea93e66ca7deaaf6ad3b67224ce47c104c2f sched/fair: Fix shift-out-of-bounds in load_balance() + CVE-2021-47045: 9bdcfbed2a9fe24d2c7eaa1bad7c705e18de8cc7 scsi: lpfc: Fix null pointer dereference in lpfc_prep_els_iocb() + CVE-2021-47046: 080bd41d6478a64edf96704fddcda52b1fd5fed7 drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47047: bad5a23cf2b477fa78b85fd392736dae09a1e818 spi: spi-zynqmp-gqspi: return -ENOMEM if dma_map_single fails + CVE-2021-47048: 23269ac9f123eca3aea7682d3345c02e71ed696c spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op + CVE-2021-47049: 2728f289b3270b0e273292b46c534421a33bbfd5 Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47050: a74cb41af7dbe019e4096171f8bc641c7ce910ad memory: renesas-rpc-if: fix possible NULL pointer dereference of resource + CVE-2021-47051: 6a2b5cee0d31ab6cc51030c441135b0e31217282 spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: b7bd0657c2036add71981d88a7fae50188150b6e crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47053: d3d702084d125689edb2b9395c707e09b471352e crypto: sun8i-ss - Fix memory leak of pad + CVE-2021-47054: c6f8e0dc8da1cd78d640dee392071cc2326ec1b2 bus: qcom: Put child node before return + CVE-2021-47055: a08799d3e8c8088640956237c183f83463c39668 mtd: require write permissions for locking and badblock ioctls + CVE-2021-47056: 1ea500ce6f7c9106e4a561d28e69215f3d451818 crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47057: 6516cb852d704ff8d615de1f93cd443a99736c3d crypto: sun8i-ss - Fix memory leak of object d when dma_iv fails to map + CVE-2021-47058: b9e569ae1da3a113b3acee8703c94777fd20938a regmap: set debugfs_name to NULL after it is freed + CVE-2021-47059: 50e7b39b808430ad49a637dc6fb72ca93b451b13 crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47060: 50cbad42bfea8c052b7ca590bd4126cdc898713c KVM: Stop looking for coalesced MMIO zones if the bus is destroyed + CVE-2021-47061: 30f46c6993731efb2a690c9197c0fd9ed425da2d KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU + CVE-2021-47062: ba7bf5d6336aa9c0d977b161bfa420c56d46ee40 KVM: SVM: Use online_vcpus, not created_vcpus, to iterate over vCPUs + CVE-2021-47063: 98d7d76a74e48ec3ddf2e23950adff7edcab9327 drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47064: 91b9548d413fda488ea853cd1b9f59b572db3a0c mt76: fix potential DMA mapping leak + CVE-2021-47065: 9cd09722e18a08b6a3d68b8bccfac39ddc22434c rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47066: 53f8208e11abd6dde9480dfcb97fecdb1bc2ac18 async_xor: increase src_offs when dropping destination page + CVE-2021-47067: ff39adf5d31c72025bba799aec69c5c86d81d549 soc/tegra: regulators: Fix locking up when voltage-spread is out of range + CVE-2021-47068: 18175fe17ae043a0b81e5d511f8817825784c299 net/nfc: fix use-after-free llcp_sock_bind/connect CVEs fixed in 5.12.5: CVE-2021-4157: 754efbbdaf4e99f9e8d9bd0ef1470ff639cdb5f4 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46976: f7520970d5353cb1fa4d9089a1b23669c5da97fe drm/i915: Fix crash in auto_retire + CVE-2021-46977: e3ea1895df719c4ef87862501bb10d95f4177bed KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46978: bd0e8455b85b651a4c77de9616e307129b15aaa7 KVM: nVMX: Always make an attempt to map eVMCS after migration + CVE-2021-46979: ab6c935ba3a04317632f3b8b68675bdbaf395303 iio: core: fix ioctl handlers removal + CVE-2021-46980: 5e9c6f58b01e6fdfbc740390c01f542a35c97e57 usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4 + CVE-2021-46981: 54b78ba7e96e5fe1edb8054e375d31a6c0dc60dc nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: 936158b15e2648253afb824d252c910c496d34b5 f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46983: 5bdb34466ad8370546dfa0497594fb1d6f2fed90 nvmet-rdma: Fix NULL deref when SEND is completed with error + CVE-2021-46984: 2ef3c76540c49167a0bc3d5f80d00fd1fc4586df kyber: fix out of bounds access when preempted + CVE-2021-46985: a7e17a8d421ae23c920240625b4413c7b94d94a4 ACPI: scan: Fix a memory leak in an error handling path + CVE-2021-46986: b4b8e9601d7ee8806d2687f081a42485d27674a1 usb: dwc3: gadget: Free gadget structure only after freeing endpoints + CVE-2021-46987: 96157707c0420e3d3edfe046f1cc797fee117ade btrfs: fix deadlock when cloning inline extents and using qgroups + CVE-2021-46988: 2d59a0ed8b26b8f3638d8afc31f839e27759f1f6 userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: 97314e45aa1223a42d60256a62c5d9af54baf446 hfsplus: prevent corruption in shrinking truncate + CVE-2021-46990: 5bc00fdda1e934c557351a9c751a205293e68cbf powerpc/64s: Fix crashes when toggling entry flush barrier + CVE-2021-46991: 1fd5d262e7442192ac7611ff1597a36c5b044323 i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: a388d10961ff8578b1a6691945d406c0f33aa71b netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: 42ee47c7e3569d9a0e2cb5053c496d97d380472f sched: Fix out-of-bound access in uclamp + CVE-2021-46994: e1e10a390fd9479209c4d834d916ca5e6d5d396b can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46995: 15f8f96ec7fc35024d4e03296e4d838fcea33d83 can: mcp251xfd: mcp251xfd_probe(): fix an error pointer dereference in probe + CVE-2021-46996: dd3bebf515f336214a91994348a2b86b9a1d3d7f netfilter: nftables: Fix a memleak from userdata error path in new objects + CVE-2021-46997: d8d52005f57bbb4a4ec02f647e2555d327135c68 arm64: entry: always set GIC_PRIO_PSR_I_SET during entry + CVE-2021-46998: d90529392aaf498dafa95d212295d64b2cea4e24 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-46999: 0bfd913c2121b3d553bfd52810fe6061d542d625 sctp: do asoc update earlier in sctp_sf_do_dupcook_a + CVE-2021-47000: 0a219432127d396120fc88cabd82785e0ff72a2f ceph: fix inode leak on getattr error in __fh_to_dentry + CVE-2021-47001: 19b5fa9489b5706bc878c3a522a7f771079e2fa0 xprtrdma: Fix cwnd update ordering + CVE-2021-47002: c664aaec9aee544538a78ba4893a44bc73a6d742 SUNRPC: Fix null pointer dereference in svc_rqst_free() + CVE-2021-47003: 7bc402f843e7817a4a808e7b9ab0bcd7ffd55bfa dmaengine: idxd: Fix potential null dereference on pointer status + CVE-2021-47004: 211372b2571520e394b56b431a0705586013b3ff f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: 0169d4f0bee44fdfef908c13ed21fcb326c38695 PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: dabe299425b1a53a69461fed7ac8922ea6733a25 ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47007: 822054e5026c43b1dd60cf387dd999e95ee2ecc2 f2fs: fix panic during f2fs_resize_fs() + CVE-2021-47008: fd722a57fe0b80133dacae4e1c852ee4212f9b2e KVM: SVM: Make sure GHCB is mapped before updating + CVE-2021-47009: 3e24fbd37e72e8a67b74991970fecc82d14f57af KEYS: trusted: Fix memory leak on object td CVEs fixed in 5.12.7: CVE-2020-26555: 58cca5ec43be72a1af95f11966381e9953b0c9f5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 58cca5ec43be72a1af95f11966381e9953b0c9f5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 58cca5ec43be72a1af95f11966381e9953b0c9f5 Bluetooth: SMP: Fail if remote and local public keys are identical + CVE-2021-47069: 807fa14536b26803b858da878b643be72952a097 ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47070: 5f59240cf25b2f7a0fdffc2701482a70310fec07 uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: 53486c467e356e06aa37047c984fccd64d78c827 uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47072: 6d0924c5b742036b4f20a0ffdf2b6cf3f963f5f6 btrfs: fix removed dentries still existing after log is synced + CVE-2021-47073: 8d746ea7c687bab060a2c05a35c449302406cd52 platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: 551ba08d4b7eb26f75758cdb9f15105b276517ad nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: afb680ed7ecbb7fd66ddb43650e9b533fd8b4b9a nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: abe31d25facdb9109fe2cf69890748295291570c RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: 11014efcec378bb0050a6cf08eaf375e3693400a scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: 03344e843ab6dd3b3f2cadfb65ed910590856c70 RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47079: beab753fe3b4e087411a850a64c6cd748544d8a1 platform/x86: ideapad-laptop: fix a NULL pointer dereference + CVE-2021-47080: e6871b4270c05f8b212e7d98aee82b357972c80a RDMA/core: Prevent divide-by-zero error triggered by the user + CVE-2021-47081: b49f5af30b0e4064fbd91e83823a4bfcb2c7a3e7 habanalabs/gaudi: Fix a potential use after free in gaudi_memset_device_memory CVEs fixed in 5.12.8: CVE-2021-33200: 9accd53bd479974c434554e3446149884890623a bpf: Wrap aux data inside bpf_sanitize_info container + CVE-2021-47180: 65234f50a90b64b335cbb9164b8a98c2a0d031dd NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 5.12.9: CVE-2020-24586: 94eebceb18e552c72b845055ca9d12c3debc0c99 mac80211: prevent mixed key and fragment cache attacks @@ -42,6 +201,46 @@ CVE-2021-32606: b190618d8337b9466d985854e417dc0e8b012e3c can: isotp: prevent race between isotp_bind() and isotp_setsockopt() CVE-2021-33098: 027c76ea1f107881babb79ddc04b5dfb27a8d4c3 ixgbe: fix large MTU request from VF CVE-2021-34981: 3178e0a38f204a61ed4fe5739d6a4732879b34d1 Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47136: 86ab133b695ed7ba1f8786b12f4ca43137ad8c18 net: zero-initialize tc skb extension on allocation + CVE-2021-47137: 46dd4abced3cb2c912916f4a5353e0927db0c4a2 net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: 285207a558ab456aa7d8aa877ecc7e91fcc51710 cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: 0921a0620b5077796fddffb22a8e6bc635a4bb50 net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47140: f3f2cf46291a693eab21adb94171b0128c2a9ec1 iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: 5278c75266c5094d3c0958793bf12fc90300e580 gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: d4ea141fd4b40636a8326df5a377d9c5cf9b3faa drm/amdgpu: Fix a use-after-free + CVE-2021-47143: 40588782f1016c655ae1d302892f61d35af96842 net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: 95a4ec905e51a30c64cf2d78b04a7acbeae5ca94 drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: b545442133580dcb2f2496133bf850824d41255c btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: a76fb9ba545289379acf409653ad5f74417be59c mld: fix panic in mld_newpack() + CVE-2021-47147: 0e38e702f1152479e6afac34f151dbfd99417f99 ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47148: 389146bc6d2bbb20714d06624b74856320ce40f7 octeontx2-pf: fix a buffer overflow in otx2_set_rxfh_context() + CVE-2021-47149: f14bf57a08779a5dee9936f63ada0149ea89c5e6 net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: 32a1777fd113335c3f70dc445dffee0ad1c6870f net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: 93d1dbe7043b3c9492bdf396b2e98a008435b55b interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47152: 18e7f0580da15cac1e79d73683ada5a9e70980f8 mptcp: fix data stream corruption + CVE-2021-47153: 1f583d3813f204449037cd2acbfc09168171362a i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: 987e4ab8b8a4fcbf783069e03e7524cd39ffd563 net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: 7b22466648a4f8e3e94f57ca428d1531866d1373 net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: 82ae35b6c14feae5f216913d5b433e143c756d4e net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: 12391be4724acc9269e1845ccbd881df37de4b56 spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: ace300eecbccaa698e2b472843c74a5f33f7dce8 tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: b9f5b7ad4ac3af006443f535b1ce7bff1d130d7d tipc: wait and exit until all work queues are done + CVE-2021-47164: bdfd3593a8248eea6ecfcbf7b47b56b86515672d net/mlx5e: Fix null deref accessing lag dev + CVE-2021-47165: b4b91033a0b11fe9ade58156cd9168f89f4a8c1a drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: 2fe1cac336b55a1f79e603e9ce3552c3623e90eb NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: 15ac6f14787649e8ebd75c142e2c5d2a243c8490 NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: d34fb628f6ef522f996205a9e578216bbee09e84 NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: 9b07b6973f7359e2dd6a9fe6db0c142634c823b7 serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: 9f7cb3f01a10d9064cf13b3d26fb7e7a5827d098 USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: 70c886ac93f87ae7214a0c69151a28a8075dd95b net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: 26da8040eccc6c6b0e415e9a3baf72fd39eb2fdc iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: a3c3face38cb49932c62adcc1289914f1c742096 misc/uss720: fix memory leak in uss720_probe + CVE-2021-47174: 727a2b4fc951ee69847d4904d98961856ea9fbe6 netfilter: nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version + CVE-2021-47175: 7a1bdec12e43e29cc34a4394590337069d8812ce net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47176: a16be88a3d7e5efcb59a15edea87a8bd369630c6 s390/dasd: add missing discipline function + CVE-2021-47177: ca466561eef36d1ec657673e3944eb6340bddb5b iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47178: a20b6eaf4f35046a429cde57bee7eb5f13d6857f scsi: target: core: Avoid smp_processor_id() in preemptible code + CVE-2021-47179: b090d110e66636bca473fd8b98d5c97b555a965a NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() CVEs fixed in 5.12.10: CVE-2021-28691: caec9bcaeb1a5f03f2d406305355c853af10c13e xen-netback: take a reference to the RX task thread @@ -49,10 +248,37 @@ CVE-2021-3573: 7422eadcf201f2e25eb45b46ffc900fc4214e14f Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: 0c4559736d9a4ec1ca58ba98ca34e7c4da4c422b nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: 0c4559736d9a4ec1ca58ba98ca34e7c4da4c422b nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47109: ddf088d7aaaaacfc836104f2e632b29b1d383cfc neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: 1df2dc09926f61319116c80ee85701df33577d70 x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: caec9bcaeb1a5f03f2d406305355c853af10c13e xen-netback: take a reference to the RX task thread + CVE-2021-47112: d1629b5b925de9b27979e929dae7fcb766daf6b6 x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: ff8de2cec65a8c8521faade12a31b39c80e49f5b btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: 0a31dd6fd2f4e7db538fb6eb1f06973d81f8dd3b ocfs2: fix data corruption by fallocate + CVE-2021-47116: 04fb2baa0b147f51db065a1b13a11954abe592d0 ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: 48105dc98c9ca35af418746277b087cb2bc6df7c ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: b8ff869f20152fbe66b6c2e2715d26a2f9897cca pid: take a reference when initializing `cad_pid` + CVE-2021-47120: 9cf27473f21913a3eaf4702dd2a25415afd5f33f HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: dde8686985ec24d6b00487080a906609bd613ea1 net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: 6a0e317f61094d377335547e015dd2ff12caf893 net: caif: fix memory leak in caif_device_notify + CVE-2021-47123: 1f64f5e903b9d1d157875721e02adadc9d6f0a5d io_uring: fix ltout double free on completion race + CVE-2021-47125: 2411c02d03892a5057499f8102d0cc1e0f852416 sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: 0a462e25ef0f7ab305081a08d435bbd1f13c0a94 ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47127: 1d34fa4fcf06649036ba0c97854fcf7a741ee18c ice: track AF_XDP ZC enabled queues in bitmap + CVE-2021-47128: acc43fc6cf0d50612193813c5906a1ab9d433e1e bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: 2c0e6b35b88a961127066a1028bce9c727cbc3e5 netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47130: 8a452d62e7cea3c8a2676a3b89a9118755a1a271 nvmet: fix freeing unallocated p2pmem + CVE-2021-47131: 0f1e6fe66977a864fe850522316f713d7b926fd9 net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47132: b9c78b1a95966a7bd2ddae05b73eafc0cda4fba3 mptcp: fix sk_forward_memory corruption on retransmission + CVE-2021-47133: 29beadea66a226d744d5ffdcde6b984623053d24 HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47134: 8a7e8b4e5631a03ea2fee27957857a56612108ca efi/fdt: fix panic when no valid fdt found + CVE-2021-47135: 6919e8a24e70b6ba148fe07f44f835bcdd1a8d02 mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report CVEs fixed in 5.12.11: CVE-2021-38198: 7707f7244d813f8279143d5dfdee7a318801231b KVM: X86: MMU: Use the correct inherited permissions to get shadow page +CVEs fixed in 5.12.12: + CVE-2021-46906: 21883bff0fd854e07429a773ff18f1e9658f50e8 HID: usbhid: fix info leak in hid_submit_ctrl + CVEs fixed in 5.12.13: CVE-2021-33624: 408a4956acde24413f3c684912b1d3e404bed8e2 bpf: Inherit expanded/patched seen count from old aux data CVE-2021-34693: dc6415cb5cf8ebc8b334b7d0be916a0bf4353779 can: bcm: fix infoleak in struct bcm_msg_head @@ -75,6 +301,7 @@ CVE-2021-3655: d91adac26d5ebac78c731b3aa23ff2c210ce2a0d sctp: validate from_addr_param return CVE-2021-38205: 7a9bfd7589c18c20df5a5b9278549a2807627e30 net: xilinx_emaclite: Do not print real IOMEM pointer CVE-2021-45485: 478ec08ae2097b7262a69d951f95e9ef16ff45a0 ipv6: use prandom_u32() for ID generation + CVE-2021-47119: cecfdb9cf9a700d1037066173abac0617f6788df ext4: fix memory leak in ext4_fill_super CVE-2022-41222: 864c4d1d25170def283b2bf87726218126634f04 mm/mremap: hold the rmap lock in write mode when moving page table entries. CVE-2023-28772: 681f78589bdb473de5276e0f5b7811101c0c7b87 seq_buf: Fix overflow in seq_buf_putmem_hex() @@ -84,6 +311,7 @@ CVE-2021-38199: 87871d990a2c1879fb5c543f7244f360532e2f28 NFSv4: Initialise connection to the server in nfs4_alloc_client() CVE-2021-38201: 9a4f77f171f68e5a275c4fabd8d78579af7b4950 sunrpc: Avoid a KASAN slab-out-of-bounds bug in xdr_set_page_base() CVE-2021-4154: 242f80be5b13257173eadbc03a90932e786b4c9b cgroup: verify that source is a string + CVE-2021-47124: ff4a96ba5c8f9b266706280ff8021d2ef3f17e86 io_uring: fix link timeout refs Outstanding CVEs: CVE-2005-3660: (unk) @@ -114,6 +342,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -222,6 +451,34 @@ CVE-2021-45402: (unk) bpf: Fix signed bounds propagation after mov32 CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46923: (unk) fs/mount_setattr: always cleanup mount_kattr + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47089: (unk) kfence: fix memory leak when cat kfence objects + CVE-2021-47090: (unk) mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() + CVE-2021-47091: (unk) mac80211: fix locking in ieee80211_start_ap error path + CVE-2021-47093: (unk) platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47094: (unk) KVM: x86/mmu: Don't advance iterator after restart due to yielding + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47097: (unk) Input: elantech - fix stack out of bound access in elantech_change_report_id() + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -476,6 +733,10 @@ CVE-2022-47521: (unk) wifi: wilc1000: validate length of IEEE80211_P2P_ATTR_CHANNEL_LIST attribute CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -561,6 +822,7 @@ CVE-2023-28410: (unk) drm/i915/gem: add missing boundary check in vm_access CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -654,7 +916,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4732: (unk) mm/userfaultfd: fix uffd-wp special cases for fork() CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() @@ -684,19 +946,128 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -706,7 +1077,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -716,15 +1087,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -734,7 +1106,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -744,13 +1116,136 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.13/5.13_CVEs.txt b/data/5.13/5.13_CVEs.txt index 5d931c9..86893e4 100644 --- a/data/5.13/5.13_CVEs.txt +++ b/data/5.13/5.13_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -149,6 +150,36 @@ CVE-2021-45480: Fix not seen in stream CVE-2021-45485: Fixed with 5.13.3 CVE-2021-45868: Fix not seen in stream +CVE-2021-46923: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47089: Fix not seen in stream +CVE-2021-47090: Fix not seen in stream +CVE-2021-47091: Fix not seen in stream +CVE-2021-47093: Fix not seen in stream +CVE-2021-47094: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47097: Fix not seen in stream +CVE-2021-47099: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47106: Fix not seen in stream +CVE-2021-47107: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -411,6 +442,10 @@ CVE-2022-47521: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -497,6 +532,7 @@ CVE-2023-28410: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 5.13.3 CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -592,7 +628,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fixed with 5.13.5 CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream @@ -623,19 +659,132 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -645,7 +794,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -656,16 +805,17 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -675,7 +825,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -685,8 +835,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream @@ -695,3 +843,130 @@ CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.13/5.13_security.txt b/data/5.13/5.13_security.txt index b881133..713492e 100644 --- a/data/5.13/5.13_security.txt +++ b/data/5.13/5.13_security.txt
@@ -100,6 +100,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -190,6 +191,36 @@ CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() CVE-2021-45480: (unk) rds: memory leak in __rds_conn_create() CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46923: (unk) fs/mount_setattr: always cleanup mount_kattr + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47089: (unk) kfence: fix memory leak when cat kfence objects + CVE-2021-47090: (unk) mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() + CVE-2021-47091: (unk) mac80211: fix locking in ieee80211_start_ap error path + CVE-2021-47093: (unk) platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47094: (unk) KVM: x86/mmu: Don't advance iterator after restart due to yielding + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47097: (unk) Input: elantech - fix stack out of bound access in elantech_change_report_id() + CVE-2021-47099: (unk) veth: ensure skb entering GRO are not cloned. + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47106: (unk) netfilter: nf_tables: fix use-after-free in nft_set_catchall_destroy() + CVE-2021-47107: (unk) NFSD: Fix READDIR buffer overflow CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -447,6 +478,10 @@ CVE-2022-47521: (unk) wifi: wilc1000: validate length of IEEE80211_P2P_ATTR_CHANNEL_LIST attribute CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -533,6 +568,7 @@ CVE-2023-28410: (unk) drm/i915/gem: add missing boundary check in vm_access CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -627,7 +663,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -657,19 +693,132 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -679,7 +828,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -690,16 +839,17 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -709,7 +859,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -719,8 +869,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() @@ -729,3 +877,130 @@ CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.14/5.14_CVEs.txt b/data/5.14/5.14_CVEs.txt index f8907d4..6ba93c9 100644 --- a/data/5.14/5.14_CVEs.txt +++ b/data/5.14/5.14_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -124,6 +125,40 @@ CVE-2021-45469: Fix not seen in stream CVE-2021-45480: Fix not seen in stream CVE-2021-45868: Fixed with 5.14.19 +CVE-2021-46923: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47087: Fix not seen in stream +CVE-2021-47089: Fix not seen in stream +CVE-2021-47090: Fix not seen in stream +CVE-2021-47091: Fix not seen in stream +CVE-2021-47093: Fix not seen in stream +CVE-2021-47094: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47097: Fix not seen in stream +CVE-2021-47098: Fix not seen in stream +CVE-2021-47099: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47102: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47106: Fix not seen in stream +CVE-2021-47107: Fix not seen in stream +CVE-2021-47108: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -384,6 +419,10 @@ CVE-2022-47521: Fix not seen in stream CVE-2022-47929: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fixed with 5.14.19 CVE-2023-0160: Fix not seen in stream @@ -473,6 +512,7 @@ CVE-2023-28410: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -567,7 +607,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -597,19 +637,134 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -619,7 +774,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -630,16 +785,17 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -649,7 +805,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -659,8 +815,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream @@ -669,3 +823,131 @@ CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.14/5.14_security.txt b/data/5.14/5.14_security.txt index 0bca842..cb138b0 100644 --- a/data/5.14/5.14_security.txt +++ b/data/5.14/5.14_security.txt
@@ -101,6 +101,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -164,6 +165,40 @@ CVE-2021-45402: (unk) bpf: Fix signed bounds propagation after mov32 CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() CVE-2021-45480: (unk) rds: memory leak in __rds_conn_create() + CVE-2021-46923: (unk) fs/mount_setattr: always cleanup mount_kattr + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47087: (unk) tee: optee: Fix incorrect page free bug + CVE-2021-47089: (unk) kfence: fix memory leak when cat kfence objects + CVE-2021-47090: (unk) mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() + CVE-2021-47091: (unk) mac80211: fix locking in ieee80211_start_ap error path + CVE-2021-47093: (unk) platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47094: (unk) KVM: x86/mmu: Don't advance iterator after restart due to yielding + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47097: (unk) Input: elantech - fix stack out of bound access in elantech_change_report_id() + CVE-2021-47098: (unk) hwmon: (lm90) Prevent integer overflow/underflow in hysteresis calculations + CVE-2021-47099: (unk) veth: ensure skb entering GRO are not cloned. + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47102: (unk) net: marvell: prestera: fix incorrect structure access + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47106: (unk) netfilter: nf_tables: fix use-after-free in nft_set_catchall_destroy() + CVE-2021-47107: (unk) NFSD: Fix READDIR buffer overflow + CVE-2021-47108: (unk) drm/mediatek: hdmi: Perform NULL pointer check for mtk_hdmi_conf CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -420,6 +455,10 @@ CVE-2022-47521: (unk) wifi: wilc1000: validate length of IEEE80211_P2P_ATTR_CHANNEL_LIST attribute CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap CVE-2023-0179: (unk) netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits @@ -507,6 +546,7 @@ CVE-2023-28410: (unk) drm/i915/gem: add missing boundary check in vm_access CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -601,7 +641,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -631,19 +671,134 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -653,7 +808,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -664,16 +819,17 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -683,7 +839,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -693,8 +849,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() @@ -703,3 +857,131 @@ CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.15/5.15_CVEs.txt b/data/5.15/5.15_CVEs.txt index b49697a..1d5271e 100644 --- a/data/5.15/5.15_CVEs.txt +++ b/data/5.15/5.15_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fixed with 5.15.61 CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -95,6 +96,46 @@ CVE-2021-45469: Fixed with 5.15.12 CVE-2021-45480: Fixed with 5.15.11 CVE-2021-45868: Fixed with 5.15.3 +CVE-2021-46923: Fixed with 5.15.13 +CVE-2021-46924: Fixed with 5.15.13 +CVE-2021-46925: Fixed with 5.15.13 +CVE-2021-46926: Fixed with 5.15.13 +CVE-2021-46927: Fixed with 5.15.13 +CVE-2021-46928: Fixed with 5.15.13 +CVE-2021-46929: Fixed with 5.15.13 +CVE-2021-46930: Fixed with 5.15.13 +CVE-2021-46931: Fixed with 5.15.13 +CVE-2021-46932: Fixed with 5.15.13 +CVE-2021-46933: Fixed with 5.15.13 +CVE-2021-46934: Fixed with 5.15.13 +CVE-2021-46935: Fixed with 5.15.13 +CVE-2021-46936: Fixed with 5.15.13 +CVE-2021-46937: Fixed with 5.15.13 +CVE-2021-47082: Fixed with 5.15.12 +CVE-2021-47083: Fixed with 5.15.12 +CVE-2021-47086: Fixed with 5.15.12 +CVE-2021-47087: Fixed with 5.15.12 +CVE-2021-47088: Fixed with 5.15.12 +CVE-2021-47089: Fixed with 5.15.12 +CVE-2021-47090: Fixed with 5.15.12 +CVE-2021-47091: Fixed with 5.15.12 +CVE-2021-47092: Fixed with 5.15.12 +CVE-2021-47093: Fixed with 5.15.12 +CVE-2021-47094: Fixed with 5.15.12 +CVE-2021-47095: Fixed with 5.15.12 +CVE-2021-47096: Fixed with 5.15.12 +CVE-2021-47097: Fixed with 5.15.12 +CVE-2021-47098: Fixed with 5.15.12 +CVE-2021-47099: Fixed with 5.15.12 +CVE-2021-47100: Fixed with 5.15.12 +CVE-2021-47101: Fixed with 5.15.12 +CVE-2021-47102: Fixed with 5.15.12 +CVE-2021-47103: Fixed with 5.15.12 +CVE-2021-47104: Fixed with 5.15.12 +CVE-2021-47105: Fixed with 5.15.12 +CVE-2021-47106: Fixed with 5.15.12 +CVE-2021-47107: Fixed with 5.15.12 +CVE-2021-47108: Fixed with 5.15.12 CVE-2022-0001: Fixed with 5.15.28 CVE-2022-0002: Fixed with 5.15.28 CVE-2022-0168: Fixed with 5.15.33 @@ -366,6 +407,10 @@ CVE-2022-48425: Fixed with 5.15.113 CVE-2022-48502: Fixed with 5.15.121 CVE-2022-48619: Fixed with 5.15.42 +CVE-2022-48626: Fixed with 5.15.23 +CVE-2022-48627: Fixed with 5.15.56 +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fixed with 5.15.31 CVE-2023-0045: Fixed with 5.15.87 CVE-2023-0047: Fixed with 5.15.3 CVE-2023-0160: Fixed with 5.15.111 @@ -461,6 +506,7 @@ CVE-2023-28410: Fixed with 5.15.33 CVE-2023-28466: Fixed with 5.15.105 CVE-2023-2860: Fixed with 5.15.68 +CVE-2023-28746: Fix not seen in stream CVE-2023-2898: Fixed with 5.15.121 CVE-2023-2985: Fixed with 5.15.99 CVE-2023-3006: Fixed with 5.15.77 @@ -573,7 +619,7 @@ CVE-2023-46813: Fixed with 5.15.137 CVE-2023-46838: Fixed with 5.15.148 CVE-2023-46862: Fixed with 5.15.140 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fixed with 5.15.132 CVE-2023-4921: Fixed with 5.15.132 CVE-2023-50431: Fix not seen in stream @@ -587,7 +633,7 @@ CVE-2023-5197: Fixed with 5.15.134 CVE-2023-52340: Fixed with 5.15.147 CVE-2023-52429: Fixed with 5.15.149 -CVE-2023-52434: Fix not seen in stream +CVE-2023-52434: Fixed with 5.15.150 CVE-2023-52435: Fixed with 5.15.149 CVE-2023-52436: Fixed with 5.15.148 CVE-2023-52438: Fixed with 5.15.148 @@ -597,27 +643,144 @@ CVE-2023-52443: Fixed with 5.15.148 CVE-2023-52444: Fixed with 5.15.148 CVE-2023-52445: Fixed with 5.15.148 -CVE-2023-52447: Fix not seen in stream +CVE-2023-52447: Fixed with 5.15.153 CVE-2023-52448: Fixed with 5.15.148 CVE-2023-52449: Fixed with 5.15.148 CVE-2023-52451: Fixed with 5.15.148 CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fixed with 5.15.148 CVE-2023-52456: Fixed with 5.15.148 -CVE-2023-52457: Fixed with 5.15.148 CVE-2023-52458: Fixed with 5.15.148 CVE-2023-52463: Fixed with 5.15.148 CVE-2023-52464: Fixed with 5.15.148 +CVE-2023-52467: Fixed with 5.15.148 +CVE-2023-52469: Fixed with 5.15.148 +CVE-2023-52470: Fixed with 5.15.148 +CVE-2023-52474: Fixed with 5.15.111 +CVE-2023-52475: Fixed with 5.15.136 +CVE-2023-52476: Fixed with 5.15.137 +CVE-2023-52477: Fixed with 5.15.136 +CVE-2023-52478: Fixed with 5.15.136 +CVE-2023-52479: Fixed with 5.15.135 +CVE-2023-52480: Fixed with 5.15.145 +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fixed with 5.15.134 +CVE-2023-52483: Fixed with 5.15.137 +CVE-2023-52484: Fixed with 5.15.134 +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fixed with 5.15.149 +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fixed with 5.15.149 +CVE-2023-52491: Fixed with 5.15.149 +CVE-2023-52492: Fixed with 5.15.149 +CVE-2023-52493: Fixed with 5.15.149 +CVE-2023-52494: Fixed with 5.15.149 +CVE-2023-52497: Fixed with 5.15.150 +CVE-2023-52498: Fixed with 5.15.149 +CVE-2023-52499: Fixed with 5.15.137 +CVE-2023-52500: Fixed with 5.15.134 +CVE-2023-52501: Fixed with 5.15.134 +CVE-2023-52502: Fixed with 5.15.136 +CVE-2023-52503: Fixed with 5.15.136 +CVE-2023-52504: Fixed with 5.15.136 +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fixed with 5.15.136 +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fixed with 5.15.136 +CVE-2023-52510: Fixed with 5.15.136 +CVE-2023-52511: Fixed with 5.15.134 +CVE-2023-52513: Fixed with 5.15.135 +CVE-2023-52515: Fixed with 5.15.136 +CVE-2023-52516: Fixed with 5.15.134 +CVE-2023-52517: Fixed with 5.15.134 +CVE-2023-52519: Fixed with 5.15.135 +CVE-2023-52520: Fixed with 5.15.136 +CVE-2023-52522: Fixed with 5.15.135 +CVE-2023-52523: Fixed with 5.15.135 +CVE-2023-52527: Fixed with 5.15.135 +CVE-2023-52528: Fixed with 5.15.135 +CVE-2023-52529: Fixed with 5.15.135 +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fixed with 5.15.135 +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fixed with 5.15.136 +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fixed with 5.15.134 +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fixed with 5.15.134 +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fixed with 5.15.134 +CVE-2023-52574: Fixed with 5.15.134 +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fixed with 5.15.134 +CVE-2023-52580: Fixed with 5.15.134 +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fixed with 5.15.149 +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fixed with 5.15.149 +CVE-2023-52588: Fixed with 5.15.149 +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fixed with 5.15.149 +CVE-2023-52595: Fixed with 5.15.149 +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fixed with 5.15.149 +CVE-2023-52598: Fixed with 5.15.149 +CVE-2023-52599: Fixed with 5.15.149 +CVE-2023-52600: Fixed with 5.15.149 +CVE-2023-52601: Fixed with 5.15.149 +CVE-2023-52602: Fixed with 5.15.149 +CVE-2023-52603: Fixed with 5.15.149 +CVE-2023-52604: Fixed with 5.15.149 +CVE-2023-52606: Fixed with 5.15.149 +CVE-2023-52607: Fixed with 5.15.149 +CVE-2023-52608: Fixed with 5.15.149 +CVE-2023-52609: Fixed with 5.15.148 +CVE-2023-52610: Fixed with 5.15.148 +CVE-2023-52612: Fixed with 5.15.148 +CVE-2023-52614: Fixed with 5.15.149 +CVE-2023-52615: Fixed with 5.15.149 +CVE-2023-52616: Fixed with 5.15.149 +CVE-2023-52617: Fixed with 5.15.149 +CVE-2023-52618: Fixed with 5.15.149 +CVE-2023-52619: Fixed with 5.15.149 +CVE-2023-52620: Fixed with 5.15.151 +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fixed with 5.15.149 +CVE-2023-52623: Fixed with 5.15.149 +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fixed with 5.15.149 +CVE-2023-52628: Fixed with 5.15.132 +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fixed with 5.15.149 +CVE-2023-52631: Fixed with 5.15.149 +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fixed with 5.15.149 +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fixed with 5.15.149 +CVE-2023-52637: Fixed with 5.15.149 +CVE-2023-52638: Fixed with 5.15.149 +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fixed with 5.15.150 +CVE-2023-52641: Fixed with 5.15.150 CVE-2023-5717: Fixed with 5.15.137 CVE-2023-6039: Fix not seen in stream CVE-2023-6040: Fixed with 5.15.147 CVE-2023-6121: Fixed with 5.15.141 CVE-2023-6176: Fixed with 5.15.132 CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 5.15.153 +CVE-2023-6356: Fixed with 5.15.148 CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fixed with 5.15.148 CVE-2023-6546: Fixed with 5.15.128 CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fixed with 5.15.146 @@ -627,29 +790,30 @@ CVE-2023-6915: Fixed with 5.15.148 CVE-2023-6931: Fixed with 5.15.143 CVE-2023-6932: Fixed with 5.15.142 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fixed with 5.15.153 CVE-2023-7192: Fixed with 5.15.100 CVE-2024-0340: Fixed with 5.15.149 CVE-2024-0562: Fixed with 5.15.64 CVE-2024-0564: Fix unknown -CVE-2024-0565: Fix not seen in stream +CVE-2024-0565: Fixed with 5.15.150 CVE-2024-0584: Fixed with 5.15.142 CVE-2024-0607: Fixed with 5.15.140 CVE-2024-0639: Fixed with 5.15.121 CVE-2024-0641: Fixed with 5.15.135 CVE-2024-0646: Fixed with 5.15.147 CVE-2024-0775: Fixed with 5.15.112 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fixed with 5.15.151 CVE-2024-1085: Fixed with 5.15.148 CVE-2024-1086: Fixed with 5.15.149 CVE-2024-1151: Fixed with 5.15.149 CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 5.15.153 CVE-2024-22386: Fix unknown CVE-2024-22705: Fixed with 5.15.146 -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fixed with 5.15.128 +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 5.15.149 CVE-2024-23850: Fixed with 5.15.149 @@ -659,7 +823,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fixed with 5.15.148 -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -669,8 +833,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fixed with 5.15.148 -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fixed with 5.15.148 CVE-2024-26591: Fixed with 5.15.148 CVE-2024-26592: Fixed with 5.15.149 @@ -679,3 +841,134 @@ CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fixed with 5.15.148 CVE-2024-26598: Fixed with 5.15.148 +CVE-2024-26600: Fixed with 5.15.149 +CVE-2024-26601: Fixed with 5.15.150 +CVE-2024-26602: Fixed with 5.15.149 +CVE-2024-26603: Fixed with 5.15.150 +CVE-2024-26606: Fixed with 5.15.149 +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fixed with 5.15.149 +CVE-2024-26610: Fixed with 5.15.149 +CVE-2024-26614: Fixed with 5.15.149 +CVE-2024-26615: Fixed with 5.15.149 +CVE-2024-26622: Fixed with 5.15.151 +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fixed with 5.15.149 +CVE-2024-26627: Fixed with 5.15.149 +CVE-2024-26631: Fixed with 5.15.148 +CVE-2024-26633: Fixed with 5.15.148 +CVE-2024-26635: Fixed with 5.15.149 +CVE-2024-26636: Fixed with 5.15.149 +CVE-2024-26640: Fixed with 5.15.149 +CVE-2024-26641: Fixed with 5.15.149 +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fixed with 5.15.149 +CVE-2024-26645: Fixed with 5.15.149 +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fixed with 5.15.153 +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fixed with 5.15.152 +CVE-2024-26660: Fixed with 5.15.149 +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fixed with 5.15.149 +CVE-2024-26664: Fixed with 5.15.149 +CVE-2024-26665: Fixed with 5.15.149 +CVE-2024-26668: Fixed with 5.15.149 +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fixed with 5.15.149 +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fixed with 5.15.149 +CVE-2024-26675: Fixed with 5.15.149 +CVE-2024-26676: Fixed with 5.15.149 +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fixed with 5.15.149 +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fixed with 5.15.149 +CVE-2024-26685: Fixed with 5.15.149 +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fixed with 5.15.151 +CVE-2024-26689: Fixed with 5.15.149 +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fixed with 5.15.149 +CVE-2024-26697: Fixed with 5.15.149 +CVE-2024-26698: Fixed with 5.15.149 +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fixed with 5.15.149 +CVE-2024-26704: Fixed with 5.15.149 +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fixed with 5.15.149 +CVE-2024-26712: Fixed with 5.15.149 +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fixed with 5.15.149 +CVE-2024-26717: Fixed with 5.15.149 +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fixed with 5.15.149 +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fixed with 5.15.149 +CVE-2024-26733: Fixed with 5.15.150 +CVE-2024-26735: Fixed with 5.15.150 +CVE-2024-26736: Fixed with 5.15.150 +CVE-2024-26737: Fixed with 5.15.150 +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fixed with 5.15.150 +CVE-2024-26744: Fixed with 5.15.150 +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fixed with 5.15.150 +CVE-2024-26748: Fixed with 5.15.150 +CVE-2024-26749: Fixed with 5.15.150 +CVE-2024-26751: Fixed with 5.15.150 +CVE-2024-26752: Fixed with 5.15.150 +CVE-2024-26754: Fixed with 5.15.150 +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fixed with 5.15.150 +CVE-2024-26764: Fixed with 5.15.150 +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fixed with 5.15.150 +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fixed with 5.15.150 +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fixed with 5.15.150 +CVE-2024-26772: Fixed with 5.15.150 +CVE-2024-26773: Fixed with 5.15.150 +CVE-2024-26774: Fixed with 5.15.150 +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fixed with 5.15.150 +CVE-2024-26777: Fixed with 5.15.150 +CVE-2024-26778: Fixed with 5.15.150 +CVE-2024-26779: Fixed with 5.15.150 +CVE-2024-26782: Fixed with 5.15.151 +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fixed with 5.15.152 +CVE-2024-26788: Fixed with 5.15.151 +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fixed with 5.15.151 +CVE-2024-26791: Fixed with 5.15.151 +CVE-2024-26793: Fixed with 5.15.151 +CVE-2024-26795: Fixed with 5.15.151 +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fixed with 5.15.151 +CVE-2024-26801: Fixed with 5.15.151 +CVE-2024-26802: Fixed with 5.15.151 +CVE-2024-26803: Fixed with 5.15.151 +CVE-2024-26804: Fixed with 5.15.151 +CVE-2024-26805: Fixed with 5.15.151 +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fixed with 5.15.149 +CVE-2024-26809: Fixed with 5.15.153
diff --git a/data/5.15/5.15_security.txt b/data/5.15/5.15_security.txt index ed7b475..42f689c 100644 --- a/data/5.15/5.15_security.txt +++ b/data/5.15/5.15_security.txt
@@ -52,10 +52,50 @@ CVE-2021-44733: 492eb7afe858d60408b2da09adc78540c4d16543 tee: handle lookup of shm with reference count 0 CVE-2021-45100: a2c144d17623984fdafa4634ecf4ab64580d29bb ksmbd: disable SMB2_GLOBAL_CAP_ENCRYPTION for SMB 3.1.1 CVE-2021-45469: a8a9d753edd7f71e6a2edaa580d8182530b68791 f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-47082: 3cb5ae77799e8ed6ec3fec0b6b4cd07f01650cc5 tun: avoid double free in tun_free_netdev + CVE-2021-47083: fb563baa3eb8e7a15f2cff3c2695e2cca0493e69 pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: 53ccdc73eedaf0e922c45b569b797d2796fbaafa phonet/pep: refuse to enable an unbound pipe + CVE-2021-47087: 91e94e42f6fc49635f1a16d8ae3f79552bcfda29 tee: optee: Fix incorrect page free bug + CVE-2021-47088: 330c6117a82c16a9a365a51cec5c9ab30b13245c mm/damon/dbgfs: protect targets destructions with kdamond_lock + CVE-2021-47089: 2f06c8293d27f6337f907042c602c9c953988c48 kfence: fix memory leak when cat kfence objects + CVE-2021-47090: c691e7575eff76e563b0199c23ec46bd454f43e3 mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() + CVE-2021-47091: c1d1ec4db5f7264cfc21993e59e8f2dcecf4b44f mac80211: fix locking in ieee80211_start_ap error path + CVE-2021-47092: e4e4e7cb229821cd215031abc47efdab5486a67c KVM: VMX: Always clear vmx->fail on emulation_required + CVE-2021-47093: 9ca1324755f1f8629a370af5cc315b175331f5d1 platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47094: d884eefd75cc54887bc2e9e724207443525dfb2c KVM: x86/mmu: Don't advance iterator after restart due to yielding + CVE-2021-47095: 77a7311ca167aa5b7055c549a940a56e73ee5f29 ipmi: ssif: initialize ssif_info->client early + CVE-2021-47096: b398fcbe4de1e1100867fdb6f447c6fbc8fe7085 ALSA: rawmidi - fix the uninitalized user_pversion + CVE-2021-47097: dfd5b60b5342b6b505a104e48f08ad9b9bdbbd7b Input: elantech - fix stack out of bound access in elantech_change_report_id() + CVE-2021-47098: d105f30bea9104c590a9e5b495cb8a49bdfe405f hwmon: (lm90) Prevent integer overflow/underflow in hysteresis calculations + CVE-2021-47099: d2269ae48598e05b59ec9ea9e6e44fd33941130d veth: ensure skb entering GRO are not cloned. + CVE-2021-47100: 6b3f7e4b10f343f05b5fb513b07a9168fbf1172e ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: d259f621c85949f30cc578cac813b82bb5169f56 asix: fix uninit-value in asix_mdio_read() + CVE-2021-47102: 5c553a0cd1263e4da5f220d80fa713fc3959c1d0 net: marvell: prestera: fix incorrect structure access + CVE-2021-47103: 0249a4b8a554f2eb6a27b62516fa50168584faa4 inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47104: aefcc25f3a0cd28a87d11d41d30419a12cd26a34 IB/qib: Fix memory leak in qib_user_sdma_queue_pkts() + CVE-2021-47105: ad6d20da2cfbe14b7b1200d15f39e65988b0b9e8 ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47106: 9d558e5f0d6fdd0a568f73dceb0b40c4f5012e5a netfilter: nf_tables: fix use-after-free in nft_set_catchall_destroy() + CVE-2021-47107: eabc0aab98e5218ceecd82069b0d6fdfff5ee885 NFSD: Fix READDIR buffer overflow + CVE-2021-47108: 71d07ebc5000b9c1d140e99e7493b0bafa954776 drm/mediatek: hdmi: Perform NULL pointer check for mtk_hdmi_conf CVE-2022-1195: 03d00f7f1815ec00dab5035851b3de83afd054a8 hamradio: improve the incomplete fix to avoid NPD CVE-2022-4744: 3cb5ae77799e8ed6ec3fec0b6b4cd07f01650cc5 tun: avoid double free in tun_free_netdev CVEs fixed in 5.15.13: + CVE-2021-46923: 47b5d0a7532d39e42a938f81e3904268145c341d fs/mount_setattr: always cleanup mount_kattr + CVE-2021-46924: 238920381b8925d070d32d73cd9ce52ab29896fe NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: b85f751d71ae8e2a15e9bda98852ea9af35282eb net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: cce476954401e3421afafb25bbaa926050688b1d ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46927: 90d2beed5e753805c5eab656b8d48257638fe543 nitro_enclaves: Use get_user_pages_unlocked() call to handle mmap assert + CVE-2021-46928: e96373f0a5f484bc1e193f9951dcb3adf24bf3f7 parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: 75799e71df1da11394740b43ae5686646179561d sctp: use call_rcu to free endpoint + CVE-2021-46930: 249ddfbe00570d6dc76208e88017937d4d374c79 usb: mtu3: fix list_head check warning + CVE-2021-46931: 07f13d58a8ecc3baf9a488588fb38c5cb0db484f net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: e79ff8c68acb1eddf709d3ac84716868f2a91012 Input: appletouch - initialize work before device registration + CVE-2021-46933: ebef2aa29f370b5096c16020c104e393192ef684 usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: f68599581067e8a5a8901ba9eb270b4519690e26 i2c: validate user data in compat ioctl + CVE-2021-46935: 17691bada6b2f1d5f1c0f6d28cd9d0727023b0ff binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: 08eacbd141e2495d2fcdde84358a06c4f95cbb13 net: fix use-after-free in tw_timer_handler + CVE-2021-46937: ffe4a1ba1a82c416a6b3a09d46594f6a885ae141 mm/damon/dbgfs: fix 'struct pid' leaks in 'dbgfs_target_ids_write()' CVE-2022-20154: 75799e71df1da11394740b43ae5686646179561d sctp: use call_rcu to free endpoint CVE-2023-23006: 4595dffccfa5b9360162c72cc0f6a33477d871cf net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources @@ -98,6 +138,7 @@ CVE-2022-0435: 1f1788616157b0222b0c2153828b475d95e374a7 tipc: improve size validations for received domain records CVE-2022-0487: af0e6c49438b1596e4be8a267d218a0c88a42323 moxart: fix potential use-after-free on remove path CVE-2022-0516: 14f880ea779e11a6c162f122c1199e3578e6e3f3 KVM: s390: Return error on SIDA memop on normal guest + CVE-2022-48626: af0e6c49438b1596e4be8a267d218a0c88a42323 moxart: fix potential use-after-free on remove path CVEs fixed in 5.15.24: CVE-2022-25258: 3e33e5c67cb9ebd2b791b9a9fb2b71daacebd8d4 USB: gadget: validate interface OS descriptor requests @@ -146,6 +187,7 @@ CVE-2022-20158: a055f5f2841f7522b44a2b1eccb1951b4b03d51a net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-20368: a055f5f2841f7522b44a2b1eccb1951b4b03d51a net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-3107: ab0ab176183191cffc69fe9dd8ac6c8db23f60d3 hv_netvsc: Add check for kvmalloc_array + CVE-2022-48629: ab9337c7cb6f875b6286440b1adfbeeef2b2b2bd crypto: qcom-rng - ensure buffer for generate is completely filled CVEs fixed in 5.15.32: CVE-2022-1015: 1bd57dea456149619f3b80d67eee012122325af8 netfilter: nf_tables: validate registers coming from userspace. @@ -275,6 +317,7 @@ CVEs fixed in 5.15.56: CVE-2022-36123: 26bb7afc027ce6ac8ab6747babec674d55689ff0 x86: Clear .brk area at early boot + CVE-2022-48627: 57964a5710252bc82fe22d9fa98c180c58c20244 vt: fix memory overlapping when deleting chars in the buffer CVEs fixed in 5.15.57: CVE-2022-23816: ccb25d7db1a29bc251692be745b000e6f0754048 x86/kvm/vmx: Make noinstr clean @@ -296,6 +339,7 @@ CVE-2022-39189: 92343314d34e04da0923cefd3be67521d706fa35 KVM: x86: do not report a vCPU as preempted outside instruction boundaries CVEs fixed in 5.15.61: + CVE-2019-25162: 35927d7509ab9bf41896b7e44f639504eae08af7 i2c: Fix a potential use after free CVE-2022-1679: 03ca957c5f7b55660957eda20b5db4110319ac7a ath9k: fix use-after-free in ath9k_hif_usb_rx_cb CVE-2022-20422: cc69ef95988b9ef2fc730ec452a7441efb90ef5e arm64: fix oops in concurrently setting insn_emulation sysctls CVE-2022-2585: 9e255ed238fc67058df87b0388ad6d4b2ef3a2bd posix-cpu-timers: Cleanup CPU timers before freeing them during exec @@ -550,6 +594,7 @@ CVE-2023-35824: c94388b5b9098db82d6ba4627ef6e41a35870818 media: dm1105: Fix use after free bug in dm1105_remove due to race condition CVE-2023-35828: 1e58fb6b1cef4d5e552a0c3038bf946890af6f3b usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition CVE-2023-35829: cac0f4f36e226c79c83d01dddc049ac59d2de157 media: rkvdec: fix use after free bug in rkvdec_remove + CVE-2023-52474: a2bd706ab63509793b5cd5065e685b7ef5cba678 IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests CVEs fixed in 5.15.112: CVE-2023-34256: 6d9a705a653eb146b4991dbd198b258f787c70b1 ext4: avoid a potential slab-out-of-bounds in ext4_group_desc_csum @@ -633,6 +678,7 @@ CVE-2023-4569: 1adaec4758d1cefbf348a291ad9b752aaa10f8d3 netfilter: nf_tables: deactivate catchall elements in next generation CVE-2023-51042: ef568da1fd843581e855c79a368209b752dea2c1 drm/amdgpu: Fix potential fence use-after-free v2 CVE-2023-6546: 2a523446438376bb7c224f3169ae9b98ce0fb893 tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux + CVE-2024-23196: 8703b26387e1fa4f8749db98d24c67617b873acb ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVEs fixed in 5.15.129: CVE-2022-36402: c8aab333d41a4ed6c5e7987c6cc5505ab86b5652 drm/vmwgfx: Fix shader stage validation @@ -647,6 +693,7 @@ CVE-2023-4623: 4cf994d3f4ff42d604fae2b461bdd5195a7dfabd net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-4881: 1ad7b189cc1411048434e8595ffcbe7873b71082 netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: 6ea277b2c6263931798234e2eed892ecfbb85596 net: sched: sch_qfq: Fix UAF in qfq_dequeue() + CVE-2023-52628: 1ad7b189cc1411048434e8595ffcbe7873b71082 netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-6176: 481bd6dcc5fe6c0ec57b61240ab552f67ff51b6b net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVEs fixed in 5.15.133: @@ -657,19 +704,56 @@ CVE-2023-42754: 8860d354f653628b6330e1c5b06b2828948135a4 ipv4: fix null-deref in ipv4_link_failure CVE-2023-4563: 7c7e658a36f8b1522bd3586d8137e5f93a25ddc5 netfilter: nf_tables: don't skip expired elements during walk CVE-2023-5197: 0c5fd85fb01fa1a5dbb9f213b0d1925e671f30df netfilter: nf_tables: disallow rule removal from chain binding + CVE-2023-52482: f090a8b4d2e3ec6f318d6fdab243a2edc5a8cc37 x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: f5a604757aa8e37ea9c7011dc9da54fa1b30f29b iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52500: d540a4370aba378fbedf349ba0bb68e96e24243d scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: 344f2f3e61a90f0150c754796ec9a17fcaeec03d ring-buffer: Do not attempt to read past "commit" + CVE-2023-52511: ff05ed4ae214011464a0156f05cac1b0b46b5fbc spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52516: ac0d068099349cbca3d93f2e3b15bb329364b08c dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: bd1ec7f9983b5cd3c77e0f7cda3fa8aed041af2f spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52563: 66cb6d74f5a1b6eafe3370b56bf2cb575a91acbc drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52566: 3936e8714907cd55e37c7cc50e50229e4a9042e8 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52573: ea82139e6e3561100d38d14401d57c0ea93fc07e net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: cd05eec2ee0cc396813a32ef675634e403748255 team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: 8bc97117b51d68d5cea8f5351cca2d8c4153f394 net: bridge: use DEV_STATS_INC() + CVE-2023-52580: f90a7b9586d72f907092078a9f394733ca502cc9 net/core: Fix ETH_P_1588 flow dissector CVEs fixed in 5.15.135: CVE-2023-31085: 0ea2a63497333019bd2931975ed489216b365755 ubi: Refuse attaching if mtd's erasesize is 0 CVE-2023-34324: c8af81a9d36e0d2e5f198eaceb38a743d834dfe2 xen/events: replace evtchn_rwlock with RCU CVE-2023-5158: 1e69422efcc60571cc04f6c1940da848a8c2f21b vringh: don't use vringh_kiov_advance() in vringh_iov_xfer() + CVE-2023-52479: 694e13732e830cbbfedb562e57f28644927c33fd ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52513: 81b7bf367eea795d259d0261710c6a89f548844d RDMA/siw: Fix connection failure handling + CVE-2023-52519: 8781fe259dd5a178fdd1069401bbd1437f9491c5 HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: 147d89ee41434b97043c2dcb17a97dc151859baa net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: bc8b89b6963803a123f64aa9494155a037b3d728 bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: cd1189956393bf850b2e275e37411855d3bd86bb ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: cda10784a176d7192f08ecb518f777a4e9575812 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: bb0707fde7492121917fd9ddb43829e96ec0bb9e HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52531: 7c8faa31080342aec4903c9acb20caf82fcca1ef wifi: iwlwifi: mvm: Fix a memory corruption issue CVE-2024-0641: 24fb22bddb71c6bfbe0fe25e1b7f793c5b580918 tipc: fix a potential deadlock on &tx->lock CVEs fixed in 5.15.136: CVE-2023-35827: 616761cf9df9af838c0a1a1232a69322a9eb67e6 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52475: 6a4a396386404e62fb59bc3bde48871a64a82b4f Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52477: 528f0ba9f7a4bc1b61c9b6eb591ff97ca37cac6b usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: 28ddc1e0b898291323b62d770b1b931de131a528 HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52502: d888d3f70b0de32b4f51534175f039ddab15eef8 net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: 1680c82929bc14d706065f123dab77f2f1293116 tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: ecba5afe86f30605eb9dfb7f265a8de0218d4cfc x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52507: 25dd54b95abfdca423b65a4ee620a774777d8213 nfc: nci: assert requested protocol is valid + CVE-2023-52509: 616761cf9df9af838c0a1a1232a69322a9eb67e6 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: 84c6aa0ae5c4dc121f9996bb8fed46c80909d80e ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52515: b9bdffb3f9aaeff8379c83f5449c6b42cb71c2b5 RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52520: 124cf0ea4b82e1444ec8c7420af4e7db5558c293 platform/x86: think-lmi: Fix reference leak + CVE-2023-52559: 29298c85a81abdc512e87537515ed4b1a9601d0e iommu/vt-d: Avoid memory allocation in iommu_suspend() CVEs fixed in 5.15.137: CVE-2023-46343: ffdc881f68073ff86bf21afb9bb954812e8278be nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46813: 582f7993353c7b116651f88385b1785dffa14c5d x86/sev: Check for user-space IOIO pointing to kernel space + CVE-2023-52476: 403d201d1fd144cb249836dafb222f6375871c6c perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52483: 6c52b12159049046483fdb0c411a0a1869c41a67 mctp: perform route lookups under a RCU read-side lock + CVE-2023-52499: 29017ab1a539101d9c7bec63cc13a019f97b2820 powerpc/47x: Fix 47x syscall return crash CVE-2023-5717: 71d224acc4d1df1b61a294abee0f1032a9b03b40 perf: Disallow mis-matched inherited group reads CVEs fixed in 5.15.140: @@ -710,6 +794,7 @@ CVE-2023-3867: 97f5c1e3086c8ba1473c265d9a5523cc9ef5579e ksmbd: add missing compound request handing in some commands CVE-2023-52441: 5c0df9d30c289d6b9d7d44e2a450de2f8e3cf40b ksmbd: fix out of bounds in init_smb2_rsp_hdr() CVE-2023-52442: 017d85c94f02090a87f4a473dbe0d6ee0da72693 ksmbd: validate session id and tree id in compound request + CVE-2023-52480: c77fd3e25a51ac92b0f1b347a96eff6a0b4f066f ksmbd: fix race condition between session lookup and expire CVEs fixed in 5.15.146: CVE-2023-51779: 2b16d960c79abc397f102c3d23d30005b68cb036 Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg @@ -734,10 +819,17 @@ CVE-2023-52451: 999a27b3ce9a69d54ccd5db000ec3a447bc43e6d powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: 4cb3cf7177ae3666be7fb27d4ad4d72a295fb02d nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: ff168d4fdb0e1ba35fb413a749b3d6cce918ec19 serial: imx: fix tx statemachine deadlock - CVE-2023-52457: 828cd829483f0cda920710997aed79130b0af690 serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: 5010c27120962c85d2f421d2cf211791c9603503 block: add check that partition length needs to be aligned with block size CVE-2023-52463: 2aa141f8bc580f8f9811dfe4e0e6009812b73826 efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: 700cf4bead80fac994dcc43ae1ca5d86d8959b21 EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: c3e3a2144bf50877551138ffce9f7aa6ddfe385b mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: b6dcba02ee178282e0d28684d241e0b8462dea6a drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: 14bbfaa5df273b26cde6707f6e655585700e6fe1 drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52609: 98fee5bee97ad47b527a997d5786410430d1f0e9 binder: fix race between mmput() and do_exit() + CVE-2023-52610: 172ba7d46c202e679f3ccb10264c67416aaeb1c4 net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: a5f2f91b3fd7387e5102060809316a0f8f0bc625 crypto: scomp - fix req->dst buffer overflow + CVE-2023-6356: 4cb3cf7177ae3666be7fb27d4ad4d72a295fb02d nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length + CVE-2023-6536: 0613a2fbdf8d32c3f8f1e62d704e92251a100795 nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6915: 5dbcdaf4dbfe074e9142991c5c28eef789c1f6c6 ida: Fix crash in ida_free when the bitmap is empty CVE-2024-1085: c9ed30eea4f7bfa2441235ce23abd339ee671f50 netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-24860: 4c71c01df8ef209e7fe22b58666cd2cf3dbafb44 Bluetooth: Fix atomicity violation in {min,max}_key_size_set @@ -746,10 +838,50 @@ CVE-2024-26591: a7b98aa10f895e2569403896f2d19b73b6c95653 bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26597: 3b5254862258b595662a0ccca6e9eeb88d6e7468 net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: 12c2759ab1343c124ed46ba48f27bd1ef5d2dff4 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26631: 62b3387beef11738eb6ce667601a28fa089fa02c ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26633: 4329426cf6b8e22b798db2331c7ef1dd2a9c748d ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 5.15.149: CVE-2023-52429: 888a0a46b80fa37eacfe81faf47ba0b83876251d dm: limit the number of targets and parameter size area CVE-2023-52435: 6c53e8547687d9c767c139cd4b50af566f58c29a net: prevent mss overflow in skb_segment() + CVE-2023-52486: b4af63da9d94986c529d74499fdfe44289acd551 drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52489: b448de2459b6d62a53892487ab18b7d823ff0529 mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: 1b1036c60a37a30caf6759a90fe5ecd06ec35590 media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: 047fce470412ab64cb7345f9ff5d06919078ad79 dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: 6e4c84316e2b70709f0d00c33ba3358d9fc8eece bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: 94991728c84f8df54fd9eec9b85855ef9057ea08 bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52498: a1d62c775b07213c73f81ae842424c74dd14b5f0 PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52583: a9c15d6e8aee074fae66c04d114f20b84274fcca ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52587: ed790bd0903ed3352ebf7f650d910f49b7319b34 IB/ipoib: Fix mcast list locking + CVE-2023-52588: 7ea0f29d9fd84905051be020c0df7d557e286136 f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52594: 9003fa9a0198ce004b30738766c67eb7373479c9 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: 4cc198580a7b93a36f5beb923f40f7ae27a3716c wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52597: 732a3bea7aba5b15026ea42d14953c3425cc7dc2 KVM: s390: fix setting of fpc register + CVE-2023-52598: 28a1f492cb527f64593457a0a0f0d809b3f36c25 s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: 6aa30020879042d46df9f747e4f0a486eea6fe98 jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: 8e44dc3f96e903815dab1d74fff8faafdc6feb61 jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: 8393c80cce45f40c1256d72e21ad351b3650c57e jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: 6c6a96c3d74df185ee344977d46944d6f33bb4dd jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: e4ce01c25ccbea02a09a5291c21749b1fc358e39 UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: 6fe8b702125aeee6ce83f20092a2341446704e7b FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: de4f5ed63b8a199704d8cdcbf810309d7eb4b36b powerpc/lib: Validate size for vector operations + CVE-2023-52607: ac3ed969a40357b0542d20f096a6d43acdfa6cc7 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: 614cc65032dcb0b64d23f5c5e338a8a04b12be5d firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52614: 796d3fad8c35ee9df9027899fb90ceaeb41b958f PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: 26cc6d7006f922df6cc4389248032d955750b2a0 hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: 2bb86817b33c9d704e127f92b838035a72c315b6 crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: ff1c7e2fb9e9c3f53715fbe04d3ac47b80be7eb8 PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: f6abd5e17da33eba15df2bddc93413e76c2b55f7 block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: 2a37905d47bffec61e95d99f0c1cc5dc6377956c pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52622: d76c8d7ffe163c6bf2f1ef680b0539c2b3902b90 ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: f8cf4dabbdcb8bef85335b0ed7ad5b25fd82ff56 SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52627: 49f322ce1f265935f15e5512da69a399f27a5091 iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52630: 1e4d3f8bd880e02932a9ea179f90bfa74fd2e899 blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: ae4acad41b0f93f1c26cc0fc9135bb79d8282d0b fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52633: 0c7478a2da3f5fe106b4658338873d50c86ac7ab um: time-travel: fix time corruption + CVE-2023-52635: 099f6a9edbe30b142c1d97fe9a4748601d995675 PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: 41ccb5bcbf03f02d820bc6ea8390811859f558f8 can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: 03358aba991668d3bb2c65b3c82aa32c36851170 can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock CVE-2024-0340: be38f291fd4d106be66370debd23d625c576023e vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-1086: 960cf4f812530f01f6acc6878ceaa5404c06af7b netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: c45f2fa92cb273f77be33b60a120ff7cf6df8085 net: openvswitch: limit the number of recursions from action sets @@ -759,6 +891,109 @@ CVE-2024-26592: 999daf367b924fdf14e9d83e034ee0f86bc17ec6 ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: 1f8d0691c50581ba6043f009ec9e8b9f78f09d5a i2c: i801: Fix block process call transactions CVE-2024-26594: dd1de9268745f0eac83a430db7afc32cbd62e84b ksmbd: validate mech token in session setup + CVE-2024-26600: 8cc889b9dea0579726be9520fcc766077890b462 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: 50fb4e17df319bb33be6f14e2a856950c1577dee sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: 82722b453dc2f967b172603e389ee7dc1b3137cc binder: signal epoll threads of self-work + CVE-2024-26608: aaa1f1a2ee80888c12ae2783f3a0be10e14067c5 ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: 99a23462fe1a6f709f0fda3ebbe8b6b193ac75bd wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: d86cc6ab33b085eaef27ea88b78fc8e2375c0ef3 tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: 68b888d51ac82f2b96bf5e077a31d76afcdef25a net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26625: dbc1b89981f9c5360277071d33d7f04a43ffda4a llc: call sock_orphan() at release time + CVE-2024-26627: d37c1c81419fdef66ebd0747cf76fb8b7d979059 scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26635: c0fe2fe7a5a291dfcf6dc64301732c8d3dc6a828 llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: c22044270da68881074fda81a7d34812726cb249 llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: 718f446e60316bf606946f7f42367d691d21541e tcp: add sanity checks to rx zerocopy + CVE-2024-26641: af6b5c50d47ab43e5272ad61935d0ed2e264d3f0 ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26644: 0877497dc97834728e1b528ddf1e1c484292c29c btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: aef1cb00856ccfd614467cfb50b791278992e177 tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26660: 42442f74314d41ddc68227047036fa3e78940054 drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26663: c1701ea85ef0ec7be6a1b36c7da69f572ed2fd12 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: a16afec8e83c56b14a4a73d2e3fb8eec3a8a057e hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: d964dd1bc1452594b4207d9229c157d9386e5d8a tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: 79d4efd75e7dbecd855a3b8a63e65f7265f466e1 netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26671: 89e0e66682e1538aeeaa3109503473663cd24c8b blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26673: b775ced05489f4b77a35fe203e9aeb22f428e38f netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: 58fbe665b097bf7b3144da7e7b91fb27aa8d0ae3 ppp_async: limit MRU to 64K + CVE-2024-26676: 4fe505c63aa3273135a57597fda761e9aecc7668 af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26679: 3266e638ba5cc1165f5e6989eb8c0720f1cc4b41 inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26684: 6609e98ed82966a1b3168c142aca30f8284a7b89 net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: 8fa90634ec3e9cc50f42dd605eec60f2d146ced8 nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26689: 70e329b440762390258a6fe8c0de93c9fdd56c77 ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26696: 7e9b622bd0748cc104d66535b76d9b3535f9dc0f nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: 120f7fa2008e3bd8b7680b4ab5df942decf60fd5 nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: 7656372ae190e54e8c8cf1039725a5ea59fdf84a hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26702: 8d5838a473e8e6d812257c69745f5920e4924a60 iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: afba9d11320dad5ce222ac8964caf64b7b4bedb1 ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26707: de769423b2f053182a41317c4db5a927e90622a0 net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: 2738e0aa2fb24a7ab9c878d912dc2b239738c6c6 powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26715: 88936ceab6b426f1312327e9ef849c215c6007a7 usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: 62f5d219edbd174829aa18d4b3d97cd5fefbb783 HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26720: 5099871b370335809c0fd1abad74d9c7c205d43f mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26727: e31546b0f34af21738c4ceac47d662c00ee6382f btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26808: 70f17b48c86622217a58d5099d29242fc9adac58 netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + +CVEs fixed in 5.15.150: + CVE-2023-52434: 890bc4fac3c0973a49cac35f634579bebba7fe48 smb: client: fix potential OOBs in smb2_parse_contexts() + CVE-2023-52497: 77cbc04a1a8610e303a0e0d74f2676667876a184 erofs: fix lz4 inplace decompression + CVE-2023-52640: a585faf0591548fe0920641950ebfa8a6eefe1cd fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: ee8db6475cb15c8122855f72ad4cfa5375af6a7b fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() + CVE-2024-0565: 858e73ff25639a0cc1f6f8d2587b62c045867e41 smb: client: fix OOB in receive_encrypted_standard() + CVE-2024-26601: c1317822e2de80e78f137d3a2d99febab1b80326 ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26603: 8bd3eee7720c14b59a206bd05b98d7586bccf99a x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26733: 97eaa2955db4120ce6ec2ef123e860bc32232c50 arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: 91b020aaa1e59bfb669d34c968e3db3d5416bcee ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: e56662160fc24d28cb75ac095cc6415ae1bda43e afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: 5268bb02107b9eedfdcd51db75b407d10043368c bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26743: 135e5465fefa463c5ec93c4eede48b9fedac894a RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: 989af2f29342a9a7c7515523d879b698ac8465f4 RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26747: ef982fc41055fcebb361a92288d3225783d12913 usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: 3a2a909942b5335b7ea66366d84261b3ed5f89c8 usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: 4e5c73b15d95452c1ba9c771dd013a3fbe052ff3 usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: eec6cbbfa1e8d685cc245cfd5626d0715a127a48 ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: 0da15a70395182ee8cb75716baf00dddc0bea38d l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: a576308800be28f2eaa099e7caad093b97d66e77 gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26763: 1a4371db68a31076afbe56ecce34fbbe6c80c529 dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: d7b6fa97ec894edd02f64b83e5e72e1aa352f353 fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26766: 47ae64df23ed1318e27bd9844e135a5e1c0e6e39 IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26769: 5e0bc09a52b6169ce90f7ac6e195791adb16cec4 nvmet-fc: avoid deadlock on delete association path + CVE-2024-26771: 4fe4e5adc7d29d214c59b59f61db73dec505ca3d dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: 8de8305a25bfda607fc13475ebe84b978c96d7ff ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: 4c21fa60a6f4606f6214a38f50612b17b2f738f5 ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: 687061cfaa2ac3095170e136dd9c29a4974f41d4 ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26776: 0399d7eba41d9b28f5bdd7757ec21a5b7046858d spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: df6e2088c6f4cad539cf67cba2d6764461e798d1 fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: 8c54acf33e5adaad6374bf3ec1e3aff0591cc8e1 fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: 88c18fd06608b3adee547102505d715f21075c9d wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 5.15.151: + CVE-2023-52620: 00b19ee0dcc1aef06294471ab489bae26d94524e netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2024-0841: 22850c9950a4e43a67299755d11498f3292d02ff fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26622: 7d930a4da17958f869ef679ee0e4a8729337affc tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26688: 22850c9950a4e43a67299755d11498f3292d02ff fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26782: 4a4eeb6912538c2d0b158e8d11b62d96c1dada4e mptcp: fix double-free on socket dismantle + CVE-2024-26788: 4529c084a320be78ff2c5e64297ae998c6fdf66b dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26790: 106c1ac953a66556ec77456c46e818208d3a9bce dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: ab2d68655d0f04650bef09fee948ff80597c5fb9 btrfs: dev-replace: properly validate device names + CVE-2024-26793: 9376d059a705c5dfaac566c2d09891242013ae16 gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: 5941a90c55d3bfba732b32208d58d997600b44ef riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26798: 20a4b5214f7bee13c897477168c77bbf79683c3d fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: da4569d450b193e39e87119fd316c0291b585d14 Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: 8e99556301172465c8fe33c7f78c39a3d4ce8462 stmmac: Clear variable when destroying workqueue + CVE-2024-26803: f011c103e654d83dc85f057a7d1bd0960d02831c net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: afec0c5cd2ed71ca95a8b36a5e6d03333bf34282 net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: c71ed29d15b1a1ed6c464f8c3536996963046285 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + +CVEs fixed in 5.15.152: + CVE-2024-26659: 2aa7bcfdbb46241c701811bbc0d64d7884e3346c xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26787: 5ae5060e17a3fc38e54c3e5bd8abd6b1d5bfae7c mmc: mmci: stm32: fix DMA API overlapping mappings warning + +CVEs fixed in 5.15.153: + CVE-2023-52447: 37d98fb9c3144c0fddf7f6e99aece9927ac8dce6 bpf: Defer the free of inner map when necessary + CVE-2023-6270: 7dd09fa80b0765ce68bfae92f4e2f395ccf0fba4 aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: 4c4e592266b6eec748ce90e82bd9cbc9838f3633 wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 8d1753973f598531baaa2c1033cf7f7b5bb004b0 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: 276873ae26c8d75b00747c1dadb9561d6ef20581 sr9800: Add check for usbnet_get_endpoints + CVE-2024-26809: 362508506bf545e9ce18c72a2c48dcbfb891ab9c netfilter: nft_set_pipapo: release elements in clone only from destroy path Outstanding CVEs: CVE-2005-3660: (unk) @@ -851,6 +1086,7 @@ CVE-2022-45884: (unk) CVE-2022-45885: (unk) CVE-2022-45888: (unk) char: xillybus: Prevent use-after-free due to race condition + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0597: (unk) x86/mm: Randomize per-cpu entry area CVE-2023-1075: (unk) net/tls: tls_is_tx_ready() checked list_entry CVE-2023-1476: (unk) @@ -863,6 +1099,7 @@ CVE-2023-23000: (unk) phy: tegra: xusb: Fix return value of tegra_xusb_find_port_node function CVE-2023-23039: (unk) CVE-2023-26242: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-31081: (unk) CVE-2023-31082: (unk) CVE-2023-31083: (unk) Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO @@ -877,35 +1114,56 @@ CVE-2023-4134: (unk) Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync() CVE-2023-4155: (unk) KVM: SEV: only access GHCB fields once CVE-2023-4622: (unk) unix: Convert unix_stream_sendpage() to use MSG_SPLICE_PAGES - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() - CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() - CVE-2023-52447: (unk) bpf: Defer the free of inner map when necessary CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) CVE-2023-6535: (unk) - CVE-2023-6536: (unk) CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() - CVE-2023-7042: (unk) CVE-2024-0564: (unk) - CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() - CVE-2024-0841: (unk) CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -914,6 +1172,49 @@ CVE-2024-26583: (unk) tls: fix race between async notify and socket close CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks
diff --git a/data/5.16/5.16_CVEs.txt b/data/5.16/5.16_CVEs.txt index 75a5933..c59517e 100644 --- a/data/5.16/5.16_CVEs.txt +++ b/data/5.16/5.16_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -334,6 +335,10 @@ CVE-2022-48425: Fix not seen in stream CVE-2022-48502: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fixed with 5.16.9 +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fixed with 5.16.17 CVE-2023-0045: Fix not seen in stream CVE-2023-0160: Fix not seen in stream CVE-2023-0179: Fix not seen in stream @@ -429,6 +434,7 @@ CVE-2023-28410: Fixed with 5.16.19 CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -542,7 +548,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -573,21 +579,140 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6039: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -597,7 +722,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0562: Fix not seen in stream @@ -609,17 +734,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -629,7 +755,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -639,8 +765,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream CVE-2024-26591: Fix not seen in stream @@ -650,3 +774,134 @@ CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.16/5.16_security.txt b/data/5.16/5.16_security.txt index a9a4bef..bff481f 100644 --- a/data/5.16/5.16_security.txt +++ b/data/5.16/5.16_security.txt
@@ -39,6 +39,7 @@ CVE-2022-0435: 59ff7514f8c56f166aadca49bcecfa028e0ad50f tipc: improve size validations for received domain records CVE-2022-0487: 7f901d53f120d1921f84f7b9b118e87e94b403c5 moxart: fix potential use-after-free on remove path CVE-2022-0516: 8c68c50109c22502b647f4e86ec74400c7a3f6e0 KVM: s390: Return error on SIDA memop on normal guest + CVE-2022-48626: 7f901d53f120d1921f84f7b9b118e87e94b403c5 moxart: fix potential use-after-free on remove path CVEs fixed in 5.16.10: CVE-2022-25258: 8895017abfc76bbc223499b179919dd205047197 USB: gadget: validate interface OS descriptor requests @@ -89,6 +90,7 @@ CVE-2022-20158: ef591b35176029fdefea38e8388ffa371e18f4b2 net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-20368: ef591b35176029fdefea38e8388ffa371e18f4b2 net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-3107: 411e256ddf6c2295439c74f2176b0ed630c148f3 hv_netvsc: Add check for kvmalloc_array + CVE-2022-48629: 485995cbc98a4f77cfd4f8ed4dd7ff8ab262964d crypto: qcom-rng - ensure buffer for generate is completely filled CVEs fixed in 5.16.18: CVE-2022-1015: 2c8ebdaa7c9755b85d90c07530210e83665bad9a netfilter: nf_tables: validate registers coming from userspace. @@ -157,6 +159,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -378,6 +381,8 @@ CVE-2022-48425: (unk) fs/ntfs3: Validate MFT flags before replaying logs CVE-2022-48502: (unk) fs/ntfs3: Check fields while reading CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap CVE-2023-0179: (unk) netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits @@ -465,6 +470,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -578,7 +584,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -609,21 +615,140 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -633,7 +758,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0562: (unk) writeback: avoid use-after-free after removing device @@ -645,17 +770,18 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -665,7 +791,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -675,8 +801,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach @@ -686,3 +810,134 @@ CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.17/5.17_CVEs.txt b/data/5.17/5.17_CVEs.txt index 82c3456..be1e703 100644 --- a/data/5.17/5.17_CVEs.txt +++ b/data/5.17/5.17_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -278,6 +279,10 @@ CVE-2022-48425: Fix not seen in stream CVE-2022-48502: Fix not seen in stream CVE-2022-48619: Fixed with 5.17.10 +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fixed with 5.17 +CVE-2022-48630: Fixed with 5.17.10 CVE-2023-0045: Fix not seen in stream CVE-2023-0160: Fix not seen in stream CVE-2023-0179: Fix not seen in stream @@ -371,6 +376,7 @@ CVE-2023-28410: Fixed with 5.17.2 CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28866: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -488,7 +494,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -520,21 +526,140 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6039: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -544,7 +669,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0562: Fix not seen in stream @@ -556,17 +681,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -576,7 +702,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -586,8 +712,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream CVE-2024-26591: Fix not seen in stream @@ -598,3 +722,136 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.17/5.17_security.txt b/data/5.17/5.17_security.txt index e0a9dfc..ffd40cd 100644 --- a/data/5.17/5.17_security.txt +++ b/data/5.17/5.17_security.txt
@@ -5,6 +5,7 @@ CVE-2022-20368: c700525fcc06b05adfea78039de02628af79e07a net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-20423: 65f3324f4b6fed78b8761c3b74615ecf0ffa81fa usb: gadget: rndis: prevent integer overflow in rndis_set_response() CVE-2022-3107: 886e44c9298a6b428ae046e2fa092ca52e822e6a hv_netvsc: Add check for kvmalloc_array + CVE-2022-48629: a680b1832ced3b5fa7c93484248fd221ea0d614b crypto: qcom-rng - ensure buffer for generate is completely filled CVEs fixed in 5.17.1: CVE-2022-1015: afdc3f4b81f0ec9f97f0910476af4620a2481a6d netfilter: nf_tables: validate registers coming from userspace. @@ -80,6 +81,7 @@ CVE-2022-1729: 22fb2974224c9836eeaf0d24fdd481fcdaa0aea8 perf: Fix sys_perf_event_open() race against self CVE-2022-21499: 281d356a035132f2603724ee0f04767d70e2e98e lockdown: also lock down previous kgdb use CVE-2022-48619: 93cf9a32d6c21325761503dcaae3c58ae55cc018 Input: add bounds checking to input_set_capability() + CVE-2022-48630: 05d4d17475d8d094c519bb51658bc47899c175e3 crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ CVE-2023-1838: d759015c9bcaa87d2ebf41c7bab561f7033c3e80 Fix double fget() in vhost_net_set_backend() CVE-2023-4387: 54f87f3478097fe5b7e473738b787a24cbc2061e net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() CVE-2023-4459: 8d20af6cdd1639c1e14346d4cb1d7b1d19fee34b net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() @@ -142,6 +144,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -323,6 +326,8 @@ CVE-2022-48424: (unk) fs/ntfs3: Validate attribute name offset CVE-2022-48425: (unk) fs/ntfs3: Validate MFT flags before replaying logs CVE-2022-48502: (unk) fs/ntfs3: Check fields while reading + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap CVE-2023-0179: (unk) netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits @@ -409,6 +414,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28866: (unk) Bluetooth: HCI: Fix global-out-of-bounds CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -520,7 +526,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -552,21 +558,140 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -576,7 +701,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0562: (unk) writeback: avoid use-after-free after removing device @@ -588,17 +713,18 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -608,7 +734,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -618,8 +744,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach @@ -630,3 +754,136 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.18/5.18_CVEs.txt b/data/5.18/5.18_CVEs.txt index 3198f96..5e6af88 100644 --- a/data/5.18/5.18_CVEs.txt +++ b/data/5.18/5.18_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fixed with 5.18.18 CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -232,6 +233,9 @@ CVE-2022-48424: Fix not seen in stream CVE-2022-48425: Fix not seen in stream CVE-2022-48502: Fix not seen in stream +CVE-2022-48627: Fixed with 5.18.13 +CVE-2022-48628: Fix not seen in stream +CVE-2022-48630: Fixed with 5.18 CVE-2023-0045: Fix not seen in stream CVE-2023-0160: Fix not seen in stream CVE-2023-0179: Fix not seen in stream @@ -321,6 +325,7 @@ CVE-2023-28410: Fixed with 5.18-rc1 CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28866: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -437,7 +442,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -469,20 +474,141 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52505: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52512: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6039: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -492,7 +618,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0562: Fix not seen in stream @@ -504,17 +630,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -524,7 +651,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -534,8 +661,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream CVE-2024-26591: Fix not seen in stream @@ -546,3 +671,139 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.18/5.18_security.txt b/data/5.18/5.18_security.txt index b875d53..de74415 100644 --- a/data/5.18/5.18_security.txt +++ b/data/5.18/5.18_security.txt
@@ -2,6 +2,7 @@ CVEs fixed in 5.18: CVE-2022-1729: 3ac6487e584a1eb54071dbe1212e05b884136704 perf: Fix sys_perf_event_open() race against self CVE-2022-1789: 9f46c187e2e680ecd9de7983e4d081c3391acc76 KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID + CVE-2022-48630: 16287397ec5c08aa58db6acf7dbc55470d78087d crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ CVE-2023-1838: fb4554c2232e44d595920f4d5c66cf8f7d13f9bc Fix double fget() in vhost_net_set_backend() CVE-2023-4387: 9e7fef9521e73ca8afd7da9e58c14654b02dfad8 net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() CVE-2023-4459: edf410cb74dc612fd47ef5be319c5a0bcd6e6ccd net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() @@ -66,6 +67,7 @@ CVE-2022-1462: fa3302714c03e4e6c9b5aad5dacae33e75f76cf7 tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() CVE-2022-36123: 2334bdfc2da469c9807767002a2831274b82c39a x86: Clear .brk area at early boot CVE-2022-4128: ff151c477f6a529b0e4643d90f4f0b8eca85de04 mptcp: fix subflow traversal at disconnect time + CVE-2022-48627: 14d2cc21ca622310babf373e3a8f0b40acfe8265 vt: fix memory overlapping when deleting chars in the buffer CVEs fixed in 5.18.14: CVE-2022-23816: e492002673b03c636d2297fb869d68ae545c41c4 x86/kvm/vmx: Make noinstr clean @@ -87,6 +89,7 @@ CVE-2022-39189: 719492d2bc3b99c067076bddc62e63cda8ad16e2 KVM: x86: do not report a vCPU as preempted outside instruction boundaries CVEs fixed in 5.18.18: + CVE-2019-25162: e8e1a046cf87c8b1363e5de835114f2779e2aaf4 i2c: Fix a potential use after free CVE-2022-1679: 6b14ab47937ba441e75e8dbb9fbfc9c55efa41c6 ath9k: fix use-after-free in ath9k_hif_usb_rx_cb CVE-2022-20422: 6a2fd114678d7fc1b5a0f8865ae98f1c17787455 arm64: fix oops in concurrently setting insn_emulation sysctls CVE-2022-2585: e8cb6e8fd9890780f1bfcf5592889e1b879e779c posix-cpu-timers: Cleanup CPU timers before freeing them during exec @@ -280,6 +283,7 @@ CVE-2022-48424: (unk) fs/ntfs3: Validate attribute name offset CVE-2022-48425: (unk) fs/ntfs3: Validate MFT flags before replaying logs CVE-2022-48502: (unk) fs/ntfs3: Check fields while reading + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap CVE-2023-0179: (unk) netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits @@ -360,6 +364,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28866: (unk) Bluetooth: HCI: Fix global-out-of-bounds CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -473,7 +478,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -505,20 +510,141 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: (unk) phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52512: (unk) pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -528,7 +654,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0562: (unk) writeback: avoid use-after-free after removing device @@ -540,17 +666,18 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -560,7 +687,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -570,8 +697,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach @@ -582,3 +707,139 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.19/5.19_CVEs.txt b/data/5.19/5.19_CVEs.txt index 019b2df..f7f20a0 100644 --- a/data/5.19/5.19_CVEs.txt +++ b/data/5.19/5.19_CVEs.txt
@@ -26,6 +26,7 @@ CVE-2019-19378: Fix unknown CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-10708: Fix unknown CVE-2020-11725: Fix unknown @@ -141,7 +142,7 @@ CVE-2022-41674: Fixed with 5.19.16 CVE-2022-41848: Fix unknown CVE-2022-41849: Fix not seen in stream -CVE-2022-41850: Fix not seen in stream +CVE-2022-41850: Fixed with 5.19.17 CVE-2022-42328: Fix not seen in stream CVE-2022-42329: Fix not seen in stream CVE-2022-42432: Fixed with 5.19.12 @@ -186,6 +187,7 @@ CVE-2022-48424: Fix not seen in stream CVE-2022-48425: Fix not seen in stream CVE-2022-48502: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0160: Fix not seen in stream CVE-2023-0179: Fix not seen in stream @@ -278,6 +280,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28866: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -394,7 +397,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -426,20 +429,141 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52505: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52512: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6039: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -449,7 +573,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0562: Fixed with 5.19.6 @@ -461,17 +585,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -481,7 +606,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -491,8 +616,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream CVE-2024-26591: Fix not seen in stream @@ -503,3 +626,144 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26629: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26638: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26667: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26760: Fix not seen in stream +CVE-2024-26761: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.19/5.19_security.txt b/data/5.19/5.19_security.txt index 9401c91..2ec5fc5 100644 --- a/data/5.19/5.19_security.txt +++ b/data/5.19/5.19_security.txt
@@ -82,6 +82,7 @@ CVE-2022-3565: 1f76323ac43fe0b00677794c930dee9f66ea2999 mISDN: fix use-after-free bugs in l1oip timer handlers CVE-2022-3594: 2e896abccf99fef76691d8e1019bd44105a12e1f r8152: Rate limit overflow messages CVE-2022-3623: 86a913d55c89dd13ba070a87f61a493563e94b54 mm/hugetlb: fix races when looking up a CONT-PTE/PMD size hugetlb page + CVE-2022-41850: 2d38886ae0365463cdba3db669170eef1e3d55c0 HID: roccat: Fix use-after-free in roccat_read() CVE-2022-43945: c2a878095b5c6f04f90553a3c45872f990dab14e NFSD: Protect against send buffer overflow in NFSv2 READDIR Outstanding CVEs: @@ -113,6 +114,7 @@ CVE-2019-19378: (unk) CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -193,7 +195,6 @@ CVE-2022-4139: (unk) drm/i915: fix TLB invalidation for Gen12 video and compute engines CVE-2022-41848: (unk) CVE-2022-41849: (unk) fbdev: smscufx: Fix use-after-free in ufx_ops_open() - CVE-2022-41850: (unk) HID: roccat: Fix use-after-free in roccat_read() CVE-2022-42328: (unk) xen/netback: don't call kfree_skb() with interrupts disabled CVE-2022-42329: (unk) xen/netback: don't call kfree_skb() with interrupts disabled CVE-2022-4269: (unk) act_mirred: use the backlog for nested calls to mirred ingress @@ -224,6 +225,7 @@ CVE-2022-48424: (unk) fs/ntfs3: Validate attribute name offset CVE-2022-48425: (unk) fs/ntfs3: Validate MFT flags before replaying logs CVE-2022-48502: (unk) fs/ntfs3: Check fields while reading + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap CVE-2023-0179: (unk) netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits @@ -311,6 +313,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28866: (unk) Bluetooth: HCI: Fix global-out-of-bounds CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -425,7 +428,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -457,20 +460,141 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: (unk) phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52512: (unk) pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -480,7 +604,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -491,17 +615,18 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -511,7 +636,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -521,8 +646,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach @@ -533,3 +656,144 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26629: (unk) nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: (unk) nbd: always initialize struct msghdr completely + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26667: (unk) drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26760: (unk) scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: (unk) cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.2/5.2_CVEs.txt b/data/5.2/5.2_CVEs.txt index bd8c36f..28dcd04 100644 --- a/data/5.2/5.2_CVEs.txt +++ b/data/5.2/5.2_CVEs.txt
@@ -180,6 +180,7 @@ CVE-2019-20908: Fix not seen in stream CVE-2019-20934: Fixed with 5.2.6 CVE-2019-2214: Fixed with 5.2.5 +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-5108: Fix not seen in stream CVE-2019-9506: Fixed with 5.2 @@ -349,6 +350,14 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8428: Fix not seen in stream @@ -515,6 +524,134 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -733,6 +870,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -804,6 +945,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -879,7 +1021,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -904,18 +1046,112 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -923,7 +1159,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -932,15 +1168,16 @@ CVE-2024-0607: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -949,7 +1186,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -958,12 +1195,117 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.2/5.2_security.txt b/data/5.2/5.2_security.txt index 1fe6a5f..1b57de9 100644 --- a/data/5.2/5.2_security.txt +++ b/data/5.2/5.2_security.txt
@@ -220,6 +220,7 @@ CVE-2019-20810: (unk) media: go7007: fix a miss of snd_card_free CVE-2019-20812: (unk) af_packet: set defaule value for tmo CVE-2019-20908: (unk) efi: Restrict efivar_ssdt_load when the kernel is locked down + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2019-5108: (unk) mac80211: Do not send Layer 2 Update frame before authorization CVE-2020-0009: (unk) staging: android: ashmem: Disallow ashmem memory from being remapped @@ -388,6 +389,14 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8428: (unk) do_last(): fetch directory ->i_mode and ->i_uid before it's too late @@ -553,6 +562,134 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -771,6 +908,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -842,6 +983,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -917,7 +1059,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -942,18 +1084,112 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -961,7 +1197,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -970,15 +1206,16 @@ CVE-2024-0607: (unk) netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -987,7 +1224,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -996,12 +1233,117 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.3/5.3_CVEs.txt b/data/5.3/5.3_CVEs.txt index 0b43b4b..fc1085f 100644 --- a/data/5.3/5.3_CVEs.txt +++ b/data/5.3/5.3_CVEs.txt
@@ -152,6 +152,7 @@ CVE-2019-20810: Fix not seen in stream CVE-2019-20812: Fix not seen in stream CVE-2019-20908: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fix not seen in stream CVE-2019-5108: Fixed with 5.3 CVE-2020-0009: Fix not seen in stream @@ -319,6 +320,14 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8428: Fix not seen in stream @@ -487,6 +496,139 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46993: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47012: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -706,6 +848,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -779,6 +925,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -854,7 +1001,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -879,18 +1026,115 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -898,7 +1142,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -907,15 +1151,16 @@ CVE-2024-0607: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -924,7 +1169,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -933,13 +1178,119 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.3/5.3_security.txt b/data/5.3/5.3_security.txt index c361c13..48b818b 100644 --- a/data/5.3/5.3_security.txt +++ b/data/5.3/5.3_security.txt
@@ -193,6 +193,7 @@ CVE-2019-20810: (unk) media: go7007: fix a miss of snd_card_free CVE-2019-20812: (unk) af_packet: set defaule value for tmo CVE-2019-20908: (unk) efi: Restrict efivar_ssdt_load when the kernel is locked down + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2019-3016: (unk) x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit CVE-2020-0009: (unk) staging: android: ashmem: Disallow ashmem memory from being remapped CVE-2020-0067: (unk) f2fs: fix to avoid memory leakage in f2fs_listxattr @@ -356,6 +357,14 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8428: (unk) do_last(): fetch directory ->i_mode and ->i_uid before it's too late @@ -523,6 +532,139 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: (unk) sched: Fix out-of-bound access in uclamp + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: (unk) RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -742,6 +884,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -815,6 +961,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -890,7 +1037,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -915,18 +1062,115 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -934,7 +1178,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -943,15 +1187,16 @@ CVE-2024-0607: (unk) netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -960,7 +1205,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -969,13 +1214,119 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.4/5.4_CVEs.txt b/data/5.4/5.4_CVEs.txt index 0bb8002..1f34fd3 100644 --- a/data/5.4/5.4_CVEs.txt +++ b/data/5.4/5.4_CVEs.txt
@@ -79,6 +79,7 @@ CVE-2019-20794: Fix unknown CVE-2019-20810: Fixed with 5.4.48 CVE-2019-20812: Fixed with 5.4.7 +CVE-2019-25162: Fixed with 5.4.211 CVE-2019-3016: Fixed with 5.4.19 CVE-2020-0009: Fixed with 5.4.23 CVE-2020-0041: Fixed with 5.4.4 @@ -244,6 +245,14 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fixed with 5.4.86 CVE-2020-36766: Fixed with 5.4.62 +CVE-2020-36775: Fixed with 5.4.189 +CVE-2020-36777: Fixed with 5.4.118 +CVE-2020-36780: Fixed with 5.4.119 +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fixed with 5.4.119 +CVE-2020-36783: Fixed with 5.4.119 +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fixed with 5.4.119 CVE-2020-3702: Fixed with 5.4.143 CVE-2020-4788: Fixed with 5.4.79 CVE-2020-8428: Fixed with 5.4.16 @@ -412,6 +421,144 @@ CVE-2021-45485: Fixed with 5.4.133 CVE-2021-45486: Fixed with 5.4.119 CVE-2021-45868: Fixed with 5.4.160 +CVE-2021-46904: Fixed with 5.4.112 +CVE-2021-46906: Fixed with 5.4.127 +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fixed with 5.4.114 +CVE-2021-46915: Fixed with 5.4.114 +CVE-2021-46921: Fixed with 5.4.115 +CVE-2021-46924: Fixed with 5.4.170 +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fixed with 5.4.170 +CVE-2021-46930: Fixed with 5.4.170 +CVE-2021-46932: Fixed with 5.4.170 +CVE-2021-46933: Fixed with 5.4.170 +CVE-2021-46934: Fixed with 5.4.170 +CVE-2021-46935: Fixed with 5.4.170 +CVE-2021-46936: Fixed with 5.4.170 +CVE-2021-46938: Fixed with 5.4.118 +CVE-2021-46939: Fixed with 5.4.118 +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fixed with 5.4.118 +CVE-2021-46944: Fixed with 5.4.118 +CVE-2021-46950: Fixed with 5.4.118 +CVE-2021-46951: Fixed with 5.4.118 +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fixed with 5.4.118 +CVE-2021-46955: Fixed with 5.4.118 +CVE-2021-46956: Fixed with 5.4.118 +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fixed with 5.4.118 +CVE-2021-46961: Fixed with 5.4.118 +CVE-2021-46962: Fixed with 5.4.118 +CVE-2021-46965: Fix not seen in stream +CVE-2021-46966: Fixed with 5.4.118 +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fixed with 5.4.117 +CVE-2021-46974: Fixed with 5.4.117 +CVE-2021-46981: Fixed with 5.4.120 +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fixed with 5.4.120 +CVE-2021-46988: Fixed with 5.4.120 +CVE-2021-46989: Fixed with 5.4.120 +CVE-2021-46991: Fixed with 5.4.120 +CVE-2021-46992: Fixed with 5.4.120 +CVE-2021-46993: Fixed with 5.4.120 +CVE-2021-46998: Fixed with 5.4.120 +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fixed with 5.4.120 +CVE-2021-47010: Fixed with 5.4.119 +CVE-2021-47012: Fixed with 5.4.119 +CVE-2021-47013: Fixed with 5.4.119 +CVE-2021-47015: Fixed with 5.4.119 +CVE-2021-47016: Fixed with 5.4.119 +CVE-2021-47020: Fixed with 5.4.119 +CVE-2021-47024: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fixed with 5.4.119 +CVE-2021-47041: Fixed with 5.4.119 +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fixed with 5.4.119 +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fixed with 5.4.119 +CVE-2021-47056: Fixed with 5.4.119 +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fixed with 5.4.119 +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fixed with 5.4.122 +CVE-2021-47073: Fixed with 5.4.122 +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fixed with 5.4.122 +CVE-2021-47082: Fixed with 5.4.240 +CVE-2021-47083: Fixed with 5.4.169 +CVE-2021-47086: Fixed with 5.4.169 +CVE-2021-47095: Fixed with 5.4.169 +CVE-2021-47100: Fixed with 5.4.169 +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fixed with 5.4.220 +CVE-2021-47109: Fixed with 5.4.125 +CVE-2021-47110: Fixed with 5.4.125 +CVE-2021-47112: Fixed with 5.4.125 +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fixed with 5.4.125 +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fixed with 5.4.125 +CVE-2021-47118: Fixed with 5.4.125 +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fixed with 5.4.125 +CVE-2021-47121: Fixed with 5.4.125 +CVE-2021-47122: Fixed with 5.4.125 +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fixed with 5.4.125 +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fixed with 5.4.125 +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fixed with 5.4.124 +CVE-2021-47138: Fixed with 5.4.124 +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fixed with 5.4.124 +CVE-2021-47142: Fixed with 5.4.124 +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fixed with 5.4.124 +CVE-2021-47145: Fixed with 5.4.124 +CVE-2021-47146: Fixed with 5.4.124 +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fixed with 5.4.124 +CVE-2021-47150: Fixed with 5.4.124 +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fixed with 5.4.124 +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fixed with 5.4.124 +CVE-2021-47160: Fixed with 5.4.124 +CVE-2021-47161: Fixed with 5.4.124 +CVE-2021-47162: Fixed with 5.4.124 +CVE-2021-47163: Fixed with 5.4.124 +CVE-2021-47165: Fixed with 5.4.124 +CVE-2021-47166: Fixed with 5.4.124 +CVE-2021-47167: Fixed with 5.4.124 +CVE-2021-47168: Fixed with 5.4.124 +CVE-2021-47169: Fixed with 5.4.124 +CVE-2021-47170: Fixed with 5.4.124 +CVE-2021-47171: Fixed with 5.4.124 +CVE-2021-47172: Fixed with 5.4.124 +CVE-2021-47173: Fixed with 5.4.124 +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fixed with 5.4.124 +CVE-2021-47179: Fixed with 5.4.124 +CVE-2021-47180: Fixed with 5.4.123 CVE-2022-0001: Fixed with 5.4.184 CVE-2022-0002: Fixed with 5.4.184 CVE-2022-0168: Fix not seen in stream @@ -634,6 +781,10 @@ CVE-2022-47929: Fixed with 5.4.229 CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fixed with 5.4.196 +CVE-2022-48626: Fixed with 5.4.179 +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fixed with 5.4.187 CVE-2023-0045: Fixed with 5.4.229 CVE-2023-0047: Fixed with 5.4.160 CVE-2023-0160: Fixed with 5.4.243 @@ -708,6 +859,7 @@ CVE-2023-28328: Fixed with 5.4.229 CVE-2023-28466: Fixed with 5.4.240 CVE-2023-2860: Fixed with 5.4.213 +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fixed with 5.4.133 CVE-2023-2985: Fixed with 5.4.235 CVE-2023-3006: Fixed with 5.4.253 @@ -783,7 +935,7 @@ CVE-2023-4623: Fixed with 5.4.257 CVE-2023-46343: Fixed with 5.4.259 CVE-2023-46838: Fixed with 5.4.268 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fixed with 5.4.257 CVE-2023-50431: Fix not seen in stream @@ -808,18 +960,116 @@ CVE-2023-52449: Fixed with 5.4.268 CVE-2023-52451: Fixed with 5.4.268 CVE-2023-52454: Fixed with 5.4.268 -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fixed with 5.4.268 CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fixed with 5.4.268 +CVE-2023-52469: Fixed with 5.4.268 +CVE-2023-52470: Fixed with 5.4.268 +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fixed with 5.4.259 +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fixed with 5.4.259 +CVE-2023-52478: Fixed with 5.4.259 +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fixed with 5.4.269 +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fixed with 5.4.259 +CVE-2023-52504: Fixed with 5.4.270 +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fixed with 5.4.259 +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fixed with 5.4.259 +CVE-2023-52510: Fixed with 5.4.259 +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fixed with 5.4.258 +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fixed with 5.4.258 +CVE-2023-52527: Fixed with 5.4.258 +CVE-2023-52528: Fixed with 5.4.258 +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fixed with 5.4.258 +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fixed with 5.4.258 +CVE-2023-52574: Fixed with 5.4.258 +CVE-2023-52578: Fixed with 5.4.258 +CVE-2023-52583: Fixed with 5.4.269 +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fixed with 5.4.269 +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fixed with 5.4.269 +CVE-2023-52595: Fixed with 5.4.269 +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fixed with 5.4.269 +CVE-2023-52598: Fixed with 5.4.269 +CVE-2023-52599: Fixed with 5.4.269 +CVE-2023-52600: Fixed with 5.4.269 +CVE-2023-52601: Fixed with 5.4.269 +CVE-2023-52602: Fixed with 5.4.269 +CVE-2023-52603: Fixed with 5.4.269 +CVE-2023-52604: Fixed with 5.4.269 +CVE-2023-52606: Fixed with 5.4.269 +CVE-2023-52607: Fixed with 5.4.269 +CVE-2023-52609: Fixed with 5.4.268 +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fixed with 5.4.268 +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fixed with 5.4.269 +CVE-2023-52617: Fixed with 5.4.269 +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fixed with 5.4.269 +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fixed with 5.4.269 +CVE-2023-52623: Fixed with 5.4.269 +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fixed with 5.4.269 +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fixed with 5.4.259 CVE-2023-6040: Fixed with 5.4.267 CVE-2023-6121: Fixed with 5.4.263 CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 5.4.273 +CVE-2023-6356: Fixed with 5.4.268 CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fixed with 5.4.268 CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fixed with 5.4.266 @@ -827,7 +1077,7 @@ CVE-2023-6915: Fixed with 5.4.268 CVE-2023-6931: Fixed with 5.4.264 CVE-2023-6932: Fixed with 5.4.263 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fixed with 5.4.273 CVE-2023-7192: Fixed with 5.4.235 CVE-2024-0340: Fixed with 5.4.269 CVE-2024-0564: Fix unknown @@ -836,15 +1086,16 @@ CVE-2024-0607: Fixed with 5.4.269 CVE-2024-0646: Fixed with 5.4.267 CVE-2024-0775: Fixed with 5.4.243 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fixed with 5.4.271 CVE-2024-1086: Fixed with 5.4.269 CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 5.4.273 CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fixed with 5.4.255 +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 5.4.269 CVE-2024-23851: Fix not seen in stream @@ -853,7 +1104,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -862,13 +1113,123 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fixed with 5.4.269 CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fixed with 5.4.268 CVE-2024-26598: Fixed with 5.4.269 +CVE-2024-26600: Fixed with 5.4.269 +CVE-2024-26602: Fixed with 5.4.269 +CVE-2024-26606: Fixed with 5.4.269 +CVE-2024-26607: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fixed with 5.4.269 +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fixed with 5.4.269 +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fixed with 5.4.268 +CVE-2024-26635: Fixed with 5.4.269 +CVE-2024-26636: Fixed with 5.4.269 +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fixed with 5.4.269 +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fixed with 5.4.273 +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fixed with 5.4.269 +CVE-2024-26664: Fixed with 5.4.269 +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fixed with 5.4.269 +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fixed with 5.4.269 +CVE-2024-26675: Fixed with 5.4.269 +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fixed with 5.4.269 +CVE-2024-26684: Fixed with 5.4.269 +CVE-2024-26685: Fixed with 5.4.269 +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fixed with 5.4.271 +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fixed with 5.4.269 +CVE-2024-26697: Fixed with 5.4.269 +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fixed with 5.4.269 +CVE-2024-26704: Fixed with 5.4.269 +CVE-2024-26706: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fixed with 5.4.269 +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fixed with 5.4.270 +CVE-2024-26736: Fixed with 5.4.270 +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fixed with 5.4.270 +CVE-2024-26749: Fixed with 5.4.270 +CVE-2024-26751: Fixed with 5.4.270 +CVE-2024-26752: Fixed with 5.4.270 +CVE-2024-26754: Fixed with 5.4.270 +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fixed with 5.4.270 +CVE-2024-26764: Fixed with 5.4.270 +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fixed with 5.4.270 +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fixed with 5.4.270 +CVE-2024-26773: Fixed with 5.4.270 +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fixed with 5.4.270 +CVE-2024-26778: Fixed with 5.4.270 +CVE-2024-26779: Fixed with 5.4.270 +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fixed with 5.4.271 +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fixed with 5.4.271 +CVE-2024-26791: Fixed with 5.4.271 +CVE-2024-26793: Fixed with 5.4.271 +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fixed with 5.4.271 +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fixed with 5.4.271 +CVE-2024-26805: Fixed with 5.4.271 +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.4/5.4_security.txt b/data/5.4/5.4_security.txt index f51242f..e5096ce 100644 --- a/data/5.4/5.4_security.txt +++ b/data/5.4/5.4_security.txt
@@ -407,6 +407,7 @@ CVE-2020-25672: 404daa4d62a364623b48349eb73a18579edf51ac nfc: fix memory leak in llcp_sock_connect() CVE-2020-25673: aa0cff2e075152d474b0b01233ac0adfcfc0c0db nfc: Avoid endless loops caused by repeated llcp_sock_connect() CVE-2021-3659: 38ea2b3ed00fb4632a706f2c796d6aa4a884f573 net: mac802154: Fix general protection fault + CVE-2021-46904: 4a2933c88399c0ebc738db39bbce3ae89786d723 net: hso: fix null-ptr-deref during tty device unregistration CVEs fixed in 5.4.113: CVE-2021-0937: cc59b872f2e1995b8cc819b9445c1198bfe83b2d netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -414,25 +415,77 @@ CVEs fixed in 5.4.114: CVE-2021-23133: 6180d2274b17fc0473fb0764d3417c0bddb99b2e net/sctp: fix race condition in sctp_destroy_sock + CVE-2021-46909: 871b569a3e67f570df9f5ba195444dc7c621293b ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: 01fb1626b620cb37a65ad08e0f626489e8f042ef netfilter: nft_limit: avoid possible divide error in nft_limit_init + +CVEs fixed in 5.4.115: + CVE-2021-46921: 82808cc026811fbc3ecf0c0b267a12a339eead56 locking/qrwlock: Fix ordering in queued_write_lock_slowpath() CVEs fixed in 5.4.117: CVE-2021-31829: 53e0db429b37a32b8fc706d0d90eb4583ad13848 bpf: Fix masking negation logic upon negative dst register + CVE-2021-46971: b246759284d6a2bc5b6f1009caeeb3abce2ec9ff perf/core: Fix unconditional security_locked_down() call + CVE-2021-46974: 53e0db429b37a32b8fc706d0d90eb4583ad13848 bpf: Fix masking negation logic upon negative dst register CVEs fixed in 5.4.118: + CVE-2020-36777: 9185b3b1c143b8da409c19ac5a785aa18d67a81b media: dvbdev: Fix memory leak in dvb_media_device_free() CVE-2021-3506: 27a130638406815eba083c632ee083f0c5e688c2 f2fs: fix to avoid out-of-bounds memory access + CVE-2021-46938: a992a283c0b77d0a7c2c348add0e6a21fb1dab67 dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: c64da3294a7d59a4bf6874c664c13be892f15f44 tracing: Restructure trace_clock_global() to never block + CVE-2021-46943: a03fb1e8a110658215a4cefc3e2ad53279e496a6 media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: ff792ae52005c85a2d829c153e08d99a356e007d media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: 6920cef604fa57f9409e3960413e9cc11f5c5a40 md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: 2f12258b5224cfaa808c54fd29345f3c1cbfca76 tpm: efi: Use local variable for calculating final log size + CVE-2021-46953: 504632a3577a049dd9bb7aabae5b4476f9c586b4 ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: 490ad0a2390442d0a7b8c00972a83dbb09cab142 openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: 310efc95c72c13faf855c692d19cd4d054d827c8 virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46960: 93f3339b22ba17e66f0808737467b70ba087eaec cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: e7ea8e46e3b777be26aa855fe07778c415f24926 irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: 0d8941b9b2d3e7b3481fdf43b1a6189d162175b7 mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46966: 72814a94c38a33239793f7622cec6ace1e540c4b ACPI: custom_method: fix potential use-after-free issue CVEs fixed in 5.4.119: + CVE-2020-36780: 7e1764312440c5df9dfe6b436035a03673b0c1b9 i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: 815859cb1d2302e74f11bf6894bceace9ca9eb4a i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: 4734c4b1d9573c9d20bbc46cf37dde095ee011b8 i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: 1dc1d30ac101bb8335d9852de2107af60c2580e7 media: aspeed: fix clock handling logic CVE-2021-32399: eeec325c9944b4427f482018d00b737220c31fd9 bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: 3a826ffa80d5c73ad7338fd98ace9c5b53844968 Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-45486: fee81285bd09ec2080ce2cbb5063aad0e58eb272 inet: use bigger hash table for IP ID generation + CVE-2021-47010: 9884f745108f7d25b189bbcd6754e284fb29ab68 net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: 30b9e92d0b5e5d5dc1101ab856c17009537cbca4 RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: 55fcdd1258faaecca74b91b88cc0921f9edd775d net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: b1523e4ba293b2a32d9fabaf70c1dcaa6e3e2847 bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: f6a90818a32058fca62cda3a2027a6a2364e1878 m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47020: 870533403ffa28ff63e173045fc5369365642002 soundwire: stream: fix memory leak in stream config error path + CVE-2021-47034: 73f9dccb29e4f82574bec2765c0090cdb0404301 powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47041: 999d606a820c36ae9b9e9611360c8b3d8d4bb777 nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47051: 4a01ad002d2e03c399af536562693752af7c81b1 spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47054: 3a76ec28824c01b57aa1f0927841d75e4f167cb8 bus: qcom: Put child node before return + CVE-2021-47056: 05ec8192ee4bfdf2a8894a68350dac9f1a155fa6 crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47065: 6b5aa0cf321c25f41e09a61c83ee4dc7ab9549cb rtw88: Fix array overrun in rtw_get_tx_power_params() CVEs fixed in 5.4.120: CVE-2021-4157: 89862bd77e9cf511628eb7a97fe7f8d246192eec pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() + CVE-2021-46981: 1c4962df938891af9ab4775f5224ef8601764107 nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46984: 0b6b4b90b74c27bea968c214d820ba4254b903a5 kyber: fix out of bounds access when preempted + CVE-2021-46988: b3f1731c6d7fbc1ebe3ed8eff6d6bec56d76ff43 userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: c451a6bafb5f422197d31536f82116aed132b72c hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: d718c15a2bf9ae082d5ae4d177fb19ef23cb4132 i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: c77e2ef18167ad334e27610ced9a7f6af5ec1787 netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: 687f523c134b7f0bd040ee1230f6d17990d54172 sched: Fix out-of-bound access in uclamp + CVE-2021-46998: f7f6f07774091a6ddd98500b85386c3c6afb30d3 ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47006: 3ed8832aeaa9a37b0fc386bb72ff604352567c80 ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook CVEs fixed in 5.4.122: CVE-2020-26555: f97257cde764ad6979a7dbeb460b9fb69276342e Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: f97257cde764ad6979a7dbeb460b9fb69276342e Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: f97257cde764ad6979a7dbeb460b9fb69276342e Bluetooth: SMP: Fail if remote and local public keys are identical + CVE-2021-47071: cdd91637d4ef33e2be19a8e16e72e7d00c996d76 uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: 6fa78a6b9a3beb676a010dc489c1257f7e432525 platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47078: a62225d951d77eb20208fed8fc199e0c9b1df08b RDMA/rxe: Clear all QP fields if creation failed + +CVEs fixed in 5.4.123: + CVE-2021-47180: af2a4426baf71163c0c354580ae98c7888a9aba7 NFC: nci: fix memory leak in nci_allocate_device CVEs fixed in 5.4.124: CVE-2020-24586: 14f29a67f40496c832ca9fe8502e03b10cca6e59 mac80211: prevent mixed key and fragment cache attacks @@ -444,12 +497,52 @@ CVE-2020-26147: b90cf214e2bbb3f0a25d19937807238f646d1d72 mac80211: assure all fragments are encrypted CVE-2021-33098: cf20c704a26eb763daf6bfb10369a4f11fef2d9a ixgbe: fix large MTU request from VF CVE-2021-34981: fe201316ac36c48fc3cb2891dfdc8ab68058734d Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails + CVE-2021-47137: 8bb1077448d43a871ed667520763e3b9f9b7975d net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: 0bf49b3c8d8b3a43ce09f1b2db70e5484d31fcdf cxgb4: avoid accessing registers when clearing filters + CVE-2021-47141: 821149ee88c206fa37e79c1868cc270518484876 gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: 7398c2aab4da960761ec182d04d6d5abbb4a226e drm/amdgpu: Fix a use-after-free + CVE-2021-47144: dde2656e0bbb2ac7d83a7bd95a8d5c3c95bbc009 drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: 0ed102453aa1cd12fefde8f6b60b9519b0b1f003 btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: 37d697759958d111439080bab7e14d2b0e7b39f5 mld: fix panic in mld_newpack() + CVE-2021-47149: 22049c3d40f08facd1867548716a484dad6b3251 net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: 20255d41ac560397b6a07d8d87dcc5e2efc7672a net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47153: 04cc05e3716ae31b17ecdab7bc55c8170def1b8b i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47159: ce5355f140a7987011388c7e30c4f8fbe180d3e8 net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: 4fe4e1f48ba119bdbc7c897c83b04ba0d08f5488 net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: 15d1cc4b4b585f9a2ce72c52cca004d5d735bdf1 spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: 64d17ec9f1ded042c4b188d15734f33486ed9966 tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: d1f76dfadaf8f47ed1753f97dbcbd41c16215ffa tipc: wait and exit until all work queues are done + CVE-2021-47165: 4ce2bf20b4a6e307e114847d60b2bf40a6a1fac0 drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: 785917316b25685c9b3a2a88f933139f2de75e33 NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: 1fc5f4eb9d31268ac3ce152d74ad5501ad24ca3e NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: e411df81cd862ef3d5b878120b2a2fef0ca9cdb1 NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: 915452f40e2f495e187276c4407a4f567ec2307e serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: 2c835fede13e03f2743a333e4370b5ed2db91e83 USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: b95fb96e6339e34694dd578fb6bde3575b01af17 net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: f49149964d2423fb618fb6b755bb1eaa431cca2c iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: 36b5ff1db1a4ef4fdbc2bae364344279f033ad88 misc/uss720: fix memory leak in uss720_probe + CVE-2021-47177: 044bbe8b92ab4e542de7f6c93c88ea65cccd8e29 iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: aba3c7795f51717ae316f3566442dee7cc3eeccb NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() CVEs fixed in 5.4.125: CVE-2021-3564: 8d3d0ac73a4a1d31e3d4f7c068312aba78470166 Bluetooth: fix the erroneous flush_work() order CVE-2021-3573: b6f97555c71f78288682bc967121572f10715c89 Bluetooth: use correct lock to prevent UAF of hdev object CVE-2021-3587: 5d4c4b06ed9fb7a69d0b2e2a73fc73226d25ab70 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect CVE-2021-38208: 5d4c4b06ed9fb7a69d0b2e2a73fc73226d25ab70 nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect + CVE-2021-47109: d99029e6aab62aef0a0251588b2867e77e83b137 neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: 9084fe1b3572664ad276f427dce575f580c9799a x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47112: 7620a669111b52f224d006dea9e1e688e2d62c54 x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47114: cc2edb99ea606a45182b5ea38cc8f4e583aa0774 ocfs2: fix data corruption by fallocate + CVE-2021-47117: 920697b004e49cb026e2e15fe91be065bf0741b7 ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: 2cd6eedfa6344f5ef5c3dac3aee57a39b5b46dff pid: take a reference when initializing `cad_pid` + CVE-2021-47120: 368c5d45a87e1bcc7f1e98e0c255c37b7b12c5d6 HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: 4d94f530cd24c85aede6e72b8923f371b45d6886 net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: f52f4fd67264c70cd0b4ba326962ebe12d9cba94 net: caif: fix memory leak in caif_device_notify + CVE-2021-47126: 7ba7fa78a92dc410b6f93ed73075ab669c3a0b59 ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47129: da8d31e80ff425f5a65dab7060d5c4aba749e562 netfilter: nft_ct: skip expectations for confirmed conntrack + +CVEs fixed in 5.4.127: + CVE-2021-46906: 7f5a4b24cdbd7372770a02f23e347d7d9a9ac8f1 HID: usbhid: fix info leak in hid_submit_ctrl CVEs fixed in 5.4.128: CVE-2021-34693: c297559a2a2a6b6f0de61ed333a978a118b0e660 can: bcm: fix infoleak in struct bcm_msg_head @@ -581,10 +674,22 @@ CVEs fixed in 5.4.169: CVE-2021-45469: b0406b5ef4e2c4fb21d9e7d5c36a0453b4279e9b f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() + CVE-2021-47083: f373298e1bf0c6ea097c0bcc558dc43ad53e421f pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: 48c76fc53582e7f13c1e0b11c916e503256c4d0b phonet/pep: refuse to enable an unbound pipe + CVE-2021-47095: 8efd6a3391f7b0b19fb0c38e50add06ca30c94af ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: 992649b8b16843d27eb39ceea5f9cf85ffb50a18 ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module CVE-2022-1195: a5c6a13e9056d87805ba3042c208fbd4164ad22b hamradio: improve the incomplete fix to avoid NPD CVEs fixed in 5.4.170: CVE-2021-44733: 940e68e57ab69248fabba5889e615305789db8a7 tee: handle lookup of shm with reference count 0 + CVE-2021-46924: 1cd4063dbc91cf7965d73a6a3855e2028cd4613b NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46929: 831de271452b87657fcf8d715ee20519b79caef5 sctp: use call_rcu to free endpoint + CVE-2021-46930: 585e2b244dda7ea733274e4b8fa27853d625d3bf usb: mtu3: fix list_head check warning + CVE-2021-46932: 975774ea7528b489930b76a77ffc4d5379b95ff2 Input: appletouch - initialize work before device registration + CVE-2021-46933: 240fc586e83d645912accce081a48aa63a45f6ee usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: 9e4a3f47eff476097e0c7faac04d1831fc70237d i2c: validate user data in compat ioctl + CVE-2021-46935: 103b16a8c51f96d5fe063022869ea906c256e5da binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: fe5838c22b986c1190f1dce9aa09bf6a491c1a69 net: fix use-after-free in tw_timer_handler CVE-2022-20154: 831de271452b87657fcf8d715ee20519b79caef5 sctp: use call_rcu to free endpoint CVE-2023-23006: db484d35a9482d21a7f36da4dfc7a68aa2e9e1d6 net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources @@ -618,6 +723,7 @@ CVEs fixed in 5.4.179: CVE-2022-0435: d692e3406e052dbf9f6d9da0cba36cb763272529 tipc: improve size validations for received domain records CVE-2022-0487: 3a0a7ec5574b510b067cfc734b8bdb6564b31d4e moxart: fix potential use-after-free on remove path + CVE-2022-48626: 3a0a7ec5574b510b067cfc734b8bdb6564b31d4e moxart: fix potential use-after-free on remove path CVEs fixed in 5.4.180: CVE-2022-25258: 38fd68f55a7ef57fb9cc3102ac65d1ac474a1a18 USB: gadget: validate interface OS descriptor requests @@ -656,6 +762,7 @@ CVE-2022-20158: 268dcf1f7b3193bc446ec3d14e08a240e9561e4d net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-20368: 268dcf1f7b3193bc446ec3d14e08a240e9561e4d net/packet: fix slab-out-of-bounds access in packet_recvmsg() CVE-2022-3107: b01e2df5fbf68719dfb8e766c1ca6089234144c2 hv_netvsc: Add check for kvmalloc_array + CVE-2022-48629: 184f7bd08ce56f003530fc19f160d54e75bf5c9d crypto: qcom-rng - ensure buffer for generate is completely filled CVEs fixed in 5.4.188: CVE-2022-1016: 06f0ff82c70241a766a811ae1acf07d6e2734dcb netfilter: nf_tables: initialize registers in nft_do_chain() @@ -664,6 +771,7 @@ CVE-2022-28356: 572f9a0d3f3feb8bd3422e88ad71882bc034b3ff llc: fix netdevice reference leaks in llc_ui_bind() CVEs fixed in 5.4.189: + CVE-2020-36775: 0478ccdc8ea016de1ebaf6fe6da0275c2b258c5b f2fs: fix to avoid potential deadlock CVE-2021-4197: 691a0fd625e06c138f7662286a87ffba48773f34 cgroup: Use open-time credentials for process migraton perm checks CVE-2022-1158: 1553126eccf4fad17afaeaed08db9e5944aa2d55 KVM: x86/mmu: do compare-and-exchange of gPTE via the user address CVE-2022-1198: 28c8fd84bea13cbf238d7b19d392de2fcc31331c drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() @@ -765,6 +873,7 @@ CVE-2022-26373: f2f41ef0352db9679bfae250d7a44b3113f3a3cc x86/speculation: Add RSB VM Exit protections CVEs fixed in 5.4.211: + CVE-2019-25162: 871a1e94929a27bf6e2cd99523865c840bbc2d87 i2c: Fix a potential use after free CVE-2022-1679: e9e21206b8ea62220b486310c61277e7ebfe7cec ath9k: fix use-after-free in ath9k_hif_usb_rx_cb CVE-2022-20422: 04549063d5701976034d8c2bfda3d3a8cbf0409f arm64: fix oops in concurrently setting insn_emulation sysctls CVE-2022-2153: 8cdba919acefdd6fea5dd2b77a119f54fb88ce11 KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() @@ -814,6 +923,7 @@ CVE-2022-42719: 0cb5be43dc4b79da010522f79a06fa56f944d3cd wifi: mac80211: fix MBSSID parsing use-after-free CVEs fixed in 5.4.220: + CVE-2021-47103: c3bb4a7e8cbc984e1cdac0fe6af60e880214ed6e inet: fully convert sk->sk_rx_dst to RCU rules CVE-2022-2602: 04df9719df1865f6770af9bc7880874af0e594b2 io_uring/af_unix: defer registered files gc to io_uring release CVE-2022-3535: 72c0d361940aec02d114d6f8f351147b85190464 net: mvpp2: fix mvpp2 debugfs leak CVE-2022-3542: 71e0ab5b7598d88001762fddbfeb331543c62841 bnx2x: fix potential memory leak in bnx2x_tpa_stop() @@ -907,6 +1017,7 @@ CVEs fixed in 5.4.240: CVE-2021-33631: 14b6ad56df25c3a4a50cfbc0638e176577a9fce9 ext4: fix kernel BUG in 'ext4_write_inline_data_end()' + CVE-2021-47082: 0c0e566f0387490d16f166808c72e9c772027681 tun: avoid double free in tun_free_netdev CVE-2022-4744: 0c0e566f0387490d16f166808c72e9c772027681 tun: avoid double free in tun_free_netdev CVE-2023-0590: 0f5c0e0a4c0b081e5f959578a8e56c7921e63a2d net: sched: fix race condition in qdisc_graft() CVE-2023-1670: a07ec453e86abbd14e2d06d59367b4dd11437358 xirc2ps_cs: Fix use after free bug in xirc2ps_detach @@ -996,6 +1107,7 @@ CVE-2023-3772: 8046beb890ebc83c5820188c650073e1c6066e67 xfrm: add NULL check in xfrm_update_ae_params CVE-2023-39194: 373848d51fde9138cdc539b1d97dc6b301cc04d5 net: xfrm: Fix xfrm_address_filter OOB read CVE-2023-51042: c6059af6bf5ed436b4aa5229e8113bd2546322d4 drm/amdgpu: Fix potential fence use-after-free v2 + CVE-2024-23196: 109f0aaa0b8838a88af9125b79579023539300a7 ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVEs fixed in 5.4.257: CVE-2023-39189: a44602888bbe89d9dd89cb84baed2e356aba7436 netfilter: nfnetlink_osf: avoid OOB read @@ -1011,10 +1123,25 @@ CVEs fixed in 5.4.258: CVE-2023-31085: c6d358387632a6d45b3e5d4c310cfec1bde59423 ubi: Refuse attaching if mtd's erasesize is 0 CVE-2023-42754: 810fd23d9715474aa27997584e8fc9396ef3cb67 ipv4: fix null-deref in ipv4_link_failure + CVE-2023-52513: 6e26812e289b374c17677d238164a5a8f5770594 RDMA/siw: Fix connection failure handling + CVE-2023-52522: 95eabb075a5902f4c0834ab1fb12dc35730c05af net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: 1fc793d68d50dee4782ef2e808913d5dd880bcc6 ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: 310f1c92f65ad905b7e81fe14de82d979ebbd825 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52566: 193b5a1c6c67c36b430989dc063fe7ea4e200a33 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52573: 812da2a08dc5cc75fb71e29083ea20904510ac7a net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: c5f6478686bb45f453031594ae19b6c9723a780d team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: ad8d39c7b437fcdab7208a6a56c093d222c008d5 net: bridge: use DEV_STATS_INC() CVEs fixed in 5.4.259: CVE-2023-35827: 65d34cfd4e347054eb4193bc95d9da7eaa72dee5 ravb: Fix use-after-free issue in ravb_tx_timeout_work() CVE-2023-46343: 76050b0cc5a72e0c7493287b7e18e1cb9e3c4612 nfc: nci: fix possible NULL pointer dereference in send_acknowledge() + CVE-2023-52475: 5aa514100aaf59868d745196258269a16737c7bd Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52477: 6ad3e9fd3632106696692232bf7ff88b9f7e1bc3 usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: cd0e2bf7fb22fe9b989c59c42dca06367fd10e6b HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52502: 7adcf014bda16cdbf804af5c164d94d5d025db2d net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52507: 95733ea130e35ef9ec5949a5908dde3feaba92cb nfc: nci: assert requested protocol is valid + CVE-2023-52509: 65d34cfd4e347054eb4193bc95d9da7eaa72dee5 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: 85c2857ef90041f567ce98722c1c342c4d31f4bc ieee802154: ca8210: Fix a potential UAF in ca8210_probe CVE-2023-5717: 7252c8b981853bb8930de44fab924f947362683f perf: Disallow mis-matched inherited group reads CVEs fixed in 5.4.260: @@ -1054,19 +1181,102 @@ CVE-2023-52449: 1bf4fe14e97cda621522eb2f28b0a4e87c5b0745 mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: 9b5f03500bc5b083c0df696d7dd169d7ef3dd0c7 powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: ee5e7632e981673f42a50ade25e71e612e543d9d nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52457: b502fb43f7fb55aaf07f6092ab44657595214b93 serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52464: 5da3b6e7196f0b4f3728e4e25eb20233a9ddfaf6 EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: 8b55b06e737feb2a645b0293ea27e38418876d63 drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: 5d12c5d75f7c78b83a738025947651ec5c95b4d4 drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52609: 252a2a5569eb9f8d16428872cc24dea1ac0bb097 binder: fix race between mmput() and do_exit() + CVE-2023-52612: e0e3f4a18784182cfe34e20c00eca11e78d53e76 crypto: scomp - fix req->dst buffer overflow + CVE-2023-6356: ee5e7632e981673f42a50ade25e71e612e543d9d nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length + CVE-2023-6536: 9638beb4e10ac116c6a4fc13315e9c3608055ac0 nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6915: ef7152f8705fed11796641d7644acc3c950b5967 ida: Fix crash in ida_free when the bitmap is empty CVE-2024-26597: 02467ab8b404d80429107588e0f3425cf5fcd2e5 net: qualcomm: rmnet: fix global oob in rmnet_policy + CVE-2024-26633: 3f15ba3dc14e6ee002ea01b4faddc3d49200377c ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 5.4.269: CVE-2023-52435: cd1022eaf87be8e6151435bd4df4c242c347e083 net: prevent mss overflow in skb_segment() + CVE-2023-52486: 9dd334a8245011ace45e53298175c7b659edb3e7 drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52583: 6ab4fd508fad942f1f1ba940492f2735e078e980 ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52587: 615e3adc2042b7be4ad122a043fc9135e6342c90 IB/ipoib: Fix mcast list locking + CVE-2023-52594: f11f0fd1ad6c11ae7856d4325fe9d05059767225 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: e1f113b57ddd18274d7c83618deca25cc880bc48 wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52597: 5e63c9ae8055109d805aacdaf2a4fe2c3b371ba1 KVM: s390: fix setting of fpc register + CVE-2023-52598: 6d0822f2cc9b153bf2df49a84599195a2e0d21a8 s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: de6a91aed1e0b1a23e9c11e7d7557f088eeeb017 jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: 93df0a2a0b3cde2d7ab3a52ed46ea1d6d4aaba5f jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: 3f8217c323fd6ecd6829a0c3ae7ac3f14eac368e jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: 1b9d6828589d57f94a23fb1c46112cda39d7efdb jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: fd3486a893778770557649fe28afa5e463d4ed07 UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: 98f9537fe61b8382b3cc5dd97347531698517c56 FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: 0580f4403ad33f379eef865c2a6fe94de37febdf powerpc/lib: Validate size for vector operations + CVE-2023-52607: f6781add1c311c17eff43e14c786004bbacf901e powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52615: 5030d4c798863ccb266563201b341a099e8cdd48 hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: d8c293549946ee5078ed0ab77793cec365559355 PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52619: e9f6ac50890104fdf8194f2865680689239d30fb pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52622: b183fe8702e78bba3dcef8e7193cab6898abee07 ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: 7a96d85bf196c170dcf1b47a82e9bb97cca69aa6 SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52637: 08de58abedf6e69396e1207e4f99ef8904b2b532 can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) CVE-2024-0340: 88c7e1e7a6b82d38ff82ca446862f3d5de34192a vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0607: 25b42be4e067e107a2559266b54bf07fa5b094fb netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-1086: 4e66422f1b56149761dc76030e6345d1cca6f869 netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-23849: a37ae111db5e0f7e3d6b692056c30e3e0f6f79cd net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-26593: d074d5ff5ae77b18300e5079c6bda6342a4d44b7 i2c: i801: Fix block process call transactions CVE-2024-26598: d04acadb6490aa3314f9c9e087691e55de153b88 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: 8398d8d735ee93a04fb9e9f490e8cacd737e3bf5 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: 2441a64070b85c14eecc3728cc87e883f953f265 sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: 42beab162dcee1e691ee4934292d51581c29df61 binder: signal epoll threads of self-work + CVE-2024-26615: 1fea9969b81c67d0cb1611d1b8b7d19049d937be net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26625: 64babb17e8150771c58575d8f93a35c5296b499f llc: call sock_orphan() at release time + CVE-2024-26635: b8e8838f82f332ae80c643dbb1ca4418d0628097 llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: b643d0defcbacd7fe548bc65c3e4e6f17dc5eb2d llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26645: dad9b28f675ed99b4dec261db2a397efeb80b74c tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26663: 6f70f0b412458c622a12d4292782c8e92e210c2f tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: 1eb74c00c9c3b13cb65e508c5d5a2f11afb96b8b hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26671: ecd7744a1446eb02ccc63e493e2eb6ede4ef1e10 blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26673: f549f340c91f08b938d60266e792ff7748dae483 netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: 56fae81633ccee307cfcb032f706bf1863a56982 ppp_async: limit MRU to 64K + CVE-2024-26679: 5993f121fbc01dc2d734f0ff2628009b258fb1dd inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26684: e9837c83befb5b852fa76425dde98a87b737df00 net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: d31c8721e816eff5ca6573cc487754f357c093cd nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26696: 862ee4422c38be5c249844a684b00d0dbe9d1e46 nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: a6efe6dbaaf504f5b3f8a5c3f711fe54e7dda0ba nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26702: 7200170e88e3ec54d9e9c63f07514c3cead11481 iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: afbcad9ae7d6d11608399188f03a837451b6b3a1 ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26720: 1f12e4b3284d6c863f272eb2de0d4248ed211cf4 mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + +CVEs fixed in 5.4.270: + CVE-2023-52504: 3770c38cd6a60494da29ac2da73ff8156440a2d1 x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2024-26735: 82831e3ff76ef09fb184eb93b79a3eb3fb284f1d ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: 5c27d85a69fa16a08813ba37ddfb4bbc9a1ed6b5 afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26748: aad6132ae6e4809e375431f8defd1521985e44e7 usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: cfa9abb5570c489dabf6f7fb3a066cc576fc8824 usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: 999a8bb70da2946336327b4480824d1691cae1fa ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: c1d3a84a67db910ce28a871273c992c3d7f9efb5 l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: f8cbd1791900b5d96466eede8e9439a5b9ca4de7 gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26763: 0dccbb93538fe89a86c6de31d4b1c8c560848eaa dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: b4eea7a05ee0ab5ab0514421e6ba8c5d249cf942 fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26766: 5833024a9856f454a964a198c63a57e59e07baf5 IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26772: 6b92b1bc16d691c95b152c6dbf027ad64315668d ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: 260fc96283c0f594de18a1b045faf6d8fb42874d ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26777: 6db07619d173765bd8622d63809cbfe361f04207 fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: 84dce0f6a4cc5b7bfd7242ef9290db8ac1dd77ff fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: 85720b69aef177318f4a18efbcc4302228a340e5 wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 5.4.271: + CVE-2024-0841: 1dde8ef4b7a749ae1bc73617c91775631d167557 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26688: 1dde8ef4b7a749ae1bc73617c91775631d167557 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26788: 3cc5fb824c2125aa3740d905b3e5b378c8a09478 dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26790: 518d78b4fac68cac29a263554d7f3b19da99d0da dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: c6652e20d7d783d060fe5f987eac7b5cabe31311 btrfs: dev-replace: properly validate device names + CVE-2024-26793: ec92aa2cab6f0048f10d6aa4f025c5885cb1a1b6 gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26801: 98fb98fd37e42fd4ce13ff657ea64503e24b6090 Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26804: f81e94d2dcd2397137edcb8b85f4c5bed5d22383 net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: 9ae51361da43270f4ba0eb924427a07e87e48777 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + +CVEs fixed in 5.4.273: + CVE-2023-6270: 1a54aa506b3b2f31496731039e49778f54eee881 aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: 88a9dffaec779504ab3680d33cf677741c029420 wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 5f369efd9d963c1f711a06c9b8baf9f5ce616d85 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: 8a8b6a24684bc278036c3f159f7b3a31ad89546a sr9800: Add check for usbnet_get_endpoints Outstanding CVEs: CVE-2005-3660: (unk) @@ -1126,6 +1336,8 @@ CVE-2020-36313: (unk) KVM: Fix out of range accesses to memslots CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails CVE-2021-0399: (unk) CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-20177: (unk) netfilter: add and use nf_hook_slow_list() @@ -1146,6 +1358,48 @@ CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4218: (unk) sysctl: pass kernel pointers to ->proc_handler + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1198,6 +1452,8 @@ CVE-2022-45885: (unk) CVE-2022-47520: (unk) wifi: wilc1000: validate pairwise and authentication suite offsets CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0240: (unk) io_uring: COW io_identity on mismatch CVE-2023-0386: (unk) ovl: fail on invalid uid/gid mapping at copy up CVE-2023-0597: (unk) x86/mm: Randomize per-cpu entry area @@ -1217,6 +1473,7 @@ CVE-2023-23004: (unk) malidp: Fix NULL vs IS_ERR() checking CVE-2023-23039: (unk) CVE-2023-26242: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-31081: (unk) CVE-2023-31082: (unk) CVE-2023-31083: (unk) Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO @@ -1231,34 +1488,86 @@ CVE-2023-4133: (unk) cxgb4: fix use after free bugs caused by circular dependency problem CVE-2023-4134: (unk) Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync() CVE-2023-4622: (unk) unix: Convert unix_stream_sendpage() to use MSG_SPLICE_PAGES - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg CVE-2023-52429: (unk) dm: limit the number of targets and parameter size area CVE-2023-52434: (unk) smb: client: fix potential OOBs in smb2_parse_contexts() CVE-2023-52442: (unk) ksmbd: validate session id and tree id in compound request - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) CVE-2023-6535: (unk) - CVE-2023-6536: (unk) CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() - CVE-2023-7042: (unk) CVE-2024-0564: (unk) CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() - CVE-2024-0841: (unk) CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() @@ -1266,7 +1575,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -1275,10 +1584,74 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.5/5.5_CVEs.txt b/data/5.5/5.5_CVEs.txt index 74c637c..b170be4 100644 --- a/data/5.5/5.5_CVEs.txt +++ b/data/5.5/5.5_CVEs.txt
@@ -39,6 +39,7 @@ CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown CVE-2019-20810: Fix not seen in stream +CVE-2019-25162: Fix not seen in stream CVE-2019-3016: Fixed with 5.5.3 CVE-2020-0009: Fixed with 5.5.7 CVE-2020-0110: Fixed with 5.5.7 @@ -196,6 +197,14 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8428: Fixed with 5.5 @@ -370,6 +379,153 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46956: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46963: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46966: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46977: Fix not seen in stream +CVE-2021-46981: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46993: Fix not seen in stream +CVE-2021-46994: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47001: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47012: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47018: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47043: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47067: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47111: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -594,6 +750,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -669,6 +829,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -744,7 +905,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -769,18 +930,116 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -788,7 +1047,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -798,15 +1057,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -815,7 +1075,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -824,13 +1084,125 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.5/5.5_security.txt b/data/5.5/5.5_security.txt index 326e725..0116147 100644 --- a/data/5.5/5.5_security.txt +++ b/data/5.5/5.5_security.txt
@@ -109,6 +109,7 @@ CVE-2019-19814: (unk) CVE-2019-20794: (unk) CVE-2019-20810: (unk) media: go7007: fix a miss of snd_card_free + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0255: (unk) selinux: properly handle multiple messages in selinux_netlink_send() CVE-2020-0347: (unk) CVE-2020-0423: (unk) binder: fix UAF when releasing todo list @@ -240,6 +241,14 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36775: (unk) f2fs: fix to avoid potential deadlock + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8694: (unk) powercap: restrict energy meter to root access @@ -405,6 +414,153 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: (unk) virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: (unk) scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: (unk) ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46971: (unk) perf/core: Fix unconditional security_locked_down() call + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46977: (unk) KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46981: (unk) nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: (unk) sched: Fix out-of-bound access in uclamp + CVE-2021-46994: (unk) can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47001: (unk) xprtrdma: Fix cwnd update ordering + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: (unk) RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47018: (unk) powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: (unk) media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47067: (unk) soc/tegra: regulators: Fix locking up when voltage-spread is out of range + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: (unk) xen-netback: take a reference to the RX task thread + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -628,6 +784,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -703,6 +863,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -778,7 +939,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -803,18 +964,116 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -822,7 +1081,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -832,15 +1091,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -849,7 +1109,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -858,13 +1118,125 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.6/5.6_CVEs.txt b/data/5.6/5.6_CVEs.txt index 9ecff0c..219651a 100644 --- a/data/5.6/5.6_CVEs.txt +++ b/data/5.6/5.6_CVEs.txt
@@ -34,6 +34,7 @@ CVE-2019-19770: Fix not seen in stream CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0255: Fixed with 5.6.11 CVE-2020-0347: Fix unknown CVE-2020-0423: Fix not seen in stream @@ -174,6 +175,16 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36775: Fixed with 5.6.7 +CVE-2020-36777: Fix not seen in stream +CVE-2020-36778: Fix not seen in stream +CVE-2020-36779: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8694: Fix not seen in stream @@ -343,6 +354,159 @@ CVE-2021-45485: Fix not seen in stream CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46919: Fix not seen in stream +CVE-2021-46920: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46956: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46963: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46966: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46977: Fix not seen in stream +CVE-2021-46981: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46993: Fix not seen in stream +CVE-2021-46994: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-47001: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47012: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47018: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47035: Fix not seen in stream +CVE-2021-47036: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47043: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47067: Fix not seen in stream +CVE-2021-47069: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47111: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47139: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -569,6 +733,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -647,6 +815,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -725,7 +894,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -750,18 +919,119 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -770,7 +1040,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -780,15 +1050,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -797,7 +1068,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -806,13 +1077,126 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.6/5.6_security.txt b/data/5.6/5.6_security.txt index 687e440..71fcd64 100644 --- a/data/5.6/5.6_security.txt +++ b/data/5.6/5.6_security.txt
@@ -26,6 +26,7 @@ CVEs fixed in 5.6.7: CVE-2020-12659: 98d3c852e63b49129515dd18c875999efaf8530a xsk: Add missing check on user supplied headroom size + CVE-2020-36775: 8e8542437bb4070423c9754d5ba270ffdbae8c8d f2fs: fix to avoid potential deadlock CVEs fixed in 5.6.8: CVE-2020-11884: 8a0e9d7867f59ca8067775fdaddb49aec8353268 s390/mm: fix page table upgrade vs 2ndary address mode accesses @@ -98,6 +99,7 @@ CVE-2019-19770: (unk) blktrace: fix debugfs use after free CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-0423: (unk) binder: fix UAF when releasing todo list CVE-2020-0465: (unk) HID: core: Sanitize event code and type when mapping input @@ -211,6 +213,15 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36778: (unk) i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: (unk) i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8694: (unk) powercap: restrict energy meter to root access @@ -377,6 +388,159 @@ CVE-2021-45485: (unk) ipv6: use prandom_u32() for ID generation CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46919: (unk) dmaengine: idxd: fix wq size store permission state + CVE-2021-46920: (unk) dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: (unk) virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: (unk) scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: (unk) ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46971: (unk) perf/core: Fix unconditional security_locked_down() call + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46977: (unk) KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46981: (unk) nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: (unk) sched: Fix out-of-bound access in uclamp + CVE-2021-46994: (unk) can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-47001: (unk) xprtrdma: Fix cwnd update ordering + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: (unk) RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47018: (unk) powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47035: (unk) iommu/vt-d: Remove WO permissions on second-level paging entries + CVE-2021-47036: (unk) udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: (unk) media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47067: (unk) soc/tegra: regulators: Fix locking up when voltage-spread is out of range + CVE-2021-47069: (unk) ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: (unk) xen-netback: take a reference to the RX task thread + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: (unk) net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -603,6 +767,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -681,6 +849,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -759,7 +928,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -784,18 +953,119 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -804,7 +1074,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -814,15 +1084,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -831,7 +1102,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -840,13 +1111,126 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.7/5.7_CVEs.txt b/data/5.7/5.7_CVEs.txt index 25ce010..f02b9fb 100644 --- a/data/5.7/5.7_CVEs.txt +++ b/data/5.7/5.7_CVEs.txt
@@ -31,6 +31,7 @@ CVE-2019-19770: Fixed with 5.7.16 CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-0423: Fix not seen in stream CVE-2020-0465: Fix not seen in stream @@ -153,6 +154,15 @@ CVE-2020-36691: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36778: Fix not seen in stream +CVE-2020-36779: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8694: Fix not seen in stream @@ -327,6 +337,168 @@ CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream CVE-2021-46283: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46911: Fix not seen in stream +CVE-2021-46912: Fix not seen in stream +CVE-2021-46913: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46919: Fix not seen in stream +CVE-2021-46920: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46956: Fix not seen in stream +CVE-2021-46958: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46963: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46966: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46977: Fix not seen in stream +CVE-2021-46981: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46993: Fix not seen in stream +CVE-2021-46994: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-46999: Fix not seen in stream +CVE-2021-47001: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47012: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47018: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47035: Fix not seen in stream +CVE-2021-47036: Fix not seen in stream +CVE-2021-47038: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47043: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47067: Fix not seen in stream +CVE-2021-47069: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47111: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47139: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47152: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47174: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -563,6 +735,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -645,6 +821,7 @@ CVE-2023-28328: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2985: Fix not seen in stream CVE-2023-3006: Fix not seen in stream @@ -725,7 +902,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream @@ -751,19 +928,122 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -772,7 +1052,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -782,15 +1062,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -799,7 +1080,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -809,13 +1090,126 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.7/5.7_security.txt b/data/5.7/5.7_security.txt index 58a8226..10bee1e 100644 --- a/data/5.7/5.7_security.txt +++ b/data/5.7/5.7_security.txt
@@ -98,6 +98,7 @@ CVE-2019-19449: (unk) f2fs: fix to do sanity check on segment/section count CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-0423: (unk) binder: fix UAF when releasing todo list CVE-2020-0465: (unk) HID: core: Sanitize event code and type when mapping input @@ -190,6 +191,15 @@ CVE-2020-36691: (unk) netlink: limit recursion depth in policy validation CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU CVE-2020-36766: (unk) cec-api: prevent leaking memory through hole in structure + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36778: (unk) i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: (unk) i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8694: (unk) powercap: restrict energy meter to root access @@ -362,6 +372,168 @@ CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file CVE-2021-46283: (unk) netfilter: nf_tables: initialize set before expression setup + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46911: (unk) ch_ktls: Fix kernel panic + CVE-2021-46912: (unk) net: Make tcp_allowed_congestion_control readonly in non-init netns + CVE-2021-46913: (unk) netfilter: nftables: clone set element expression template + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46919: (unk) dmaengine: idxd: fix wq size store permission state + CVE-2021-46920: (unk) dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: (unk) virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46958: (unk) btrfs: fix race between transaction aborts and fsyncs leading to use-after-free + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: (unk) scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: (unk) ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46971: (unk) perf/core: Fix unconditional security_locked_down() call + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46977: (unk) KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46981: (unk) nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: (unk) sched: Fix out-of-bound access in uclamp + CVE-2021-46994: (unk) can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-46999: (unk) sctp: do asoc update earlier in sctp_sf_do_dupcook_a + CVE-2021-47001: (unk) xprtrdma: Fix cwnd update ordering + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: (unk) RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47018: (unk) powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47035: (unk) iommu/vt-d: Remove WO permissions on second-level paging entries + CVE-2021-47036: (unk) udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47038: (unk) Bluetooth: avoid deadlock between hci_dev->lock and socket lock + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: (unk) media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47067: (unk) soc/tegra: regulators: Fix locking up when voltage-spread is out of range + CVE-2021-47069: (unk) ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: (unk) xen-netback: take a reference to the RX task thread + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: (unk) net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47152: (unk) mptcp: fix data stream corruption + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47174: (unk) netfilter: nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -597,6 +769,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -679,6 +855,7 @@ CVE-2023-28328: (unk) media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super CVE-2023-3006: (unk) arm64: Add AMPERE1 to the Spectre-BHB affected list @@ -759,7 +936,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4732: (unk) mm/userfaultfd: fix uffd-wp special cases for fork() CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() @@ -785,19 +962,122 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -806,7 +1086,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -816,15 +1096,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -833,7 +1114,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -843,13 +1124,126 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.8/5.8_CVEs.txt b/data/5.8/5.8_CVEs.txt index 434de10..8bb04f4 100644 --- a/data/5.8/5.8_CVEs.txt +++ b/data/5.8/5.8_CVEs.txt
@@ -30,6 +30,7 @@ CVE-2019-19770: Fixed with 5.8.2 CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-0423: Fixed with 5.8.17 CVE-2020-0465: Fixed with 5.8.7 @@ -129,6 +130,17 @@ CVE-2020-36516: Fix not seen in stream CVE-2020-36694: Fix not seen in stream CVE-2020-36766: Fixed with 5.8.6 +CVE-2020-36776: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36778: Fix not seen in stream +CVE-2020-36779: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36785: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fix not seen in stream CVE-2020-8694: Fix not seen in stream @@ -306,6 +318,182 @@ CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream CVE-2021-46283: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46911: Fix not seen in stream +CVE-2021-46912: Fix not seen in stream +CVE-2021-46913: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46917: Fix not seen in stream +CVE-2021-46919: Fix not seen in stream +CVE-2021-46920: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46956: Fix not seen in stream +CVE-2021-46958: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46963: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46966: Fix not seen in stream +CVE-2021-46967: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fix not seen in stream +CVE-2021-46972: Fix not seen in stream +CVE-2021-46973: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46976: Fix not seen in stream +CVE-2021-46977: Fix not seen in stream +CVE-2021-46980: Fix not seen in stream +CVE-2021-46981: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46993: Fix not seen in stream +CVE-2021-46994: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-46999: Fix not seen in stream +CVE-2021-47000: Fix not seen in stream +CVE-2021-47001: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47007: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47012: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47014: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47017: Fix not seen in stream +CVE-2021-47018: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47026: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47035: Fix not seen in stream +CVE-2021-47036: Fix not seen in stream +CVE-2021-47038: Fix not seen in stream +CVE-2021-47040: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47043: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47067: Fix not seen in stream +CVE-2021-47069: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47111: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47130: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47139: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47152: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47164: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47174: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -547,6 +735,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -630,6 +822,7 @@ CVE-2023-28410: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -712,7 +905,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream @@ -738,20 +931,123 @@ CVE-2023-52449: Fix not seen in stream CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream -CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -760,7 +1056,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -770,15 +1066,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23851: Fix not seen in stream @@ -787,7 +1084,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -797,13 +1094,127 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.8/5.8_security.txt b/data/5.8/5.8_security.txt index 935663e..8fdc588 100644 --- a/data/5.8/5.8_security.txt +++ b/data/5.8/5.8_security.txt
@@ -107,6 +107,7 @@ CVE-2019-19449: (unk) f2fs: fix to do sanity check on segment/section count CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -172,6 +173,17 @@ CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36516: (unk) ipv4: avoid using shared IP generator for connected sockets CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU + CVE-2020-36776: (unk) thermal/drivers/cpufreq_cooling: Fix slab OOB issue + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36778: (unk) i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: (unk) i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36785: (unk) media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2020-4788: (unk) powerpc/64s: flush L1D on kernel entry CVE-2020-8694: (unk) powercap: restrict energy meter to root access @@ -341,6 +353,182 @@ CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file CVE-2021-46283: (unk) netfilter: nf_tables: initialize set before expression setup + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46911: (unk) ch_ktls: Fix kernel panic + CVE-2021-46912: (unk) net: Make tcp_allowed_congestion_control readonly in non-init netns + CVE-2021-46913: (unk) netfilter: nftables: clone set element expression template + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46917: (unk) dmaengine: idxd: fix wq cleanup of WQCFG registers + CVE-2021-46919: (unk) dmaengine: idxd: fix wq size store permission state + CVE-2021-46920: (unk) dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: (unk) virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46958: (unk) btrfs: fix race between transaction aborts and fsyncs leading to use-after-free + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: (unk) scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: (unk) ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46967: (unk) vhost-vdpa: fix vm_flags for virtqueue doorbell mapping + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46971: (unk) perf/core: Fix unconditional security_locked_down() call + CVE-2021-46972: (unk) ovl: fix leaked dentry + CVE-2021-46973: (unk) net: qrtr: Avoid potential use after free in MHI send + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46976: (unk) drm/i915: Fix crash in auto_retire + CVE-2021-46977: (unk) KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46980: (unk) usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4 + CVE-2021-46981: (unk) nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: (unk) sched: Fix out-of-bound access in uclamp + CVE-2021-46994: (unk) can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-46999: (unk) sctp: do asoc update earlier in sctp_sf_do_dupcook_a + CVE-2021-47000: (unk) ceph: fix inode leak on getattr error in __fh_to_dentry + CVE-2021-47001: (unk) xprtrdma: Fix cwnd update ordering + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47007: (unk) f2fs: fix panic during f2fs_resize_fs() + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: (unk) RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47014: (unk) net/sched: act_ct: fix wild memory access when clearing fragments + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47017: (unk) ath10k: Fix a use after free in ath10k_htc_send_bundle + CVE-2021-47018: (unk) powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47026: (unk) RDMA/rtrs-clt: destroy sysfs after removing session from active list + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47035: (unk) iommu/vt-d: Remove WO permissions on second-level paging entries + CVE-2021-47036: (unk) udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47038: (unk) Bluetooth: avoid deadlock between hci_dev->lock and socket lock + CVE-2021-47040: (unk) io_uring: fix overflows checks in provide buffers + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: (unk) media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47067: (unk) soc/tegra: regulators: Fix locking up when voltage-spread is out of range + CVE-2021-47069: (unk) ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: (unk) xen-netback: take a reference to the RX task thread + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47130: (unk) nvmet: fix freeing unallocated p2pmem + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: (unk) net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47152: (unk) mptcp: fix data stream corruption + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47164: (unk) net/mlx5e: Fix null deref accessing lag dev + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47174: (unk) netfilter: nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -581,6 +769,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -664,6 +856,7 @@ CVE-2023-28410: (unk) drm/i915/gem: add missing boundary check in vm_access CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -746,7 +939,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4732: (unk) mm/userfaultfd: fix uffd-wp special cases for fork() CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() @@ -772,20 +965,123 @@ CVE-2023-52449: (unk) mtd: Fix gluebi NULL pointer dereference caused by ftl notifier CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length - CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -794,7 +1090,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -804,15 +1100,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23851: (unk) dm: limit the number of targets and parameter size area @@ -821,7 +1118,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -831,13 +1128,127 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/5.9/5.9_CVEs.txt b/data/5.9/5.9_CVEs.txt index ac424be..32ffa1e 100644 --- a/data/5.9/5.9_CVEs.txt +++ b/data/5.9/5.9_CVEs.txt
@@ -28,6 +28,7 @@ CVE-2019-19449: Fix not seen in stream CVE-2019-19814: Fix unknown CVE-2019-20794: Fix unknown +CVE-2019-25162: Fix not seen in stream CVE-2020-0347: Fix unknown CVE-2020-0423: Fixed with 5.9.2 CVE-2020-10708: Fix unknown @@ -102,6 +103,17 @@ CVE-2020-36385: Fix not seen in stream CVE-2020-36516: Fix not seen in stream CVE-2020-36694: Fix not seen in stream +CVE-2020-36776: Fix not seen in stream +CVE-2020-36777: Fix not seen in stream +CVE-2020-36778: Fix not seen in stream +CVE-2020-36779: Fix not seen in stream +CVE-2020-36780: Fix not seen in stream +CVE-2020-36781: Fix not seen in stream +CVE-2020-36782: Fix not seen in stream +CVE-2020-36783: Fix not seen in stream +CVE-2020-36784: Fix not seen in stream +CVE-2020-36785: Fix not seen in stream +CVE-2020-36787: Fix not seen in stream CVE-2020-3702: Fix not seen in stream CVE-2020-4788: Fixed with 5.9.10 CVE-2020-8694: Fixed with 5.9.8 @@ -275,6 +287,190 @@ CVE-2021-45486: Fix not seen in stream CVE-2021-45868: Fix not seen in stream CVE-2021-46283: Fix not seen in stream +CVE-2021-46904: Fix not seen in stream +CVE-2021-46906: Fix not seen in stream +CVE-2021-46908: Fix not seen in stream +CVE-2021-46909: Fix not seen in stream +CVE-2021-46911: Fix not seen in stream +CVE-2021-46912: Fix not seen in stream +CVE-2021-46913: Fix not seen in stream +CVE-2021-46914: Fix not seen in stream +CVE-2021-46915: Fix not seen in stream +CVE-2021-46917: Fix not seen in stream +CVE-2021-46919: Fix not seen in stream +CVE-2021-46920: Fix not seen in stream +CVE-2021-46921: Fix not seen in stream +CVE-2021-46924: Fix not seen in stream +CVE-2021-46925: Fix not seen in stream +CVE-2021-46926: Fix not seen in stream +CVE-2021-46928: Fix not seen in stream +CVE-2021-46929: Fix not seen in stream +CVE-2021-46930: Fix not seen in stream +CVE-2021-46931: Fix not seen in stream +CVE-2021-46932: Fix not seen in stream +CVE-2021-46933: Fix not seen in stream +CVE-2021-46934: Fix not seen in stream +CVE-2021-46935: Fix not seen in stream +CVE-2021-46936: Fix not seen in stream +CVE-2021-46938: Fix not seen in stream +CVE-2021-46939: Fix not seen in stream +CVE-2021-46941: Fix not seen in stream +CVE-2021-46943: Fix not seen in stream +CVE-2021-46944: Fix not seen in stream +CVE-2021-46950: Fix not seen in stream +CVE-2021-46951: Fix not seen in stream +CVE-2021-46952: Fix not seen in stream +CVE-2021-46953: Fix not seen in stream +CVE-2021-46955: Fix not seen in stream +CVE-2021-46956: Fix not seen in stream +CVE-2021-46958: Fix not seen in stream +CVE-2021-46959: Fix not seen in stream +CVE-2021-46960: Fix not seen in stream +CVE-2021-46961: Fix not seen in stream +CVE-2021-46962: Fix not seen in stream +CVE-2021-46963: Fix not seen in stream +CVE-2021-46965: Fix not seen in stream +CVE-2021-46966: Fix not seen in stream +CVE-2021-46967: Fix not seen in stream +CVE-2021-46969: Fix not seen in stream +CVE-2021-46970: Fix not seen in stream +CVE-2021-46971: Fix not seen in stream +CVE-2021-46972: Fix not seen in stream +CVE-2021-46973: Fix not seen in stream +CVE-2021-46974: Fix not seen in stream +CVE-2021-46976: Fix not seen in stream +CVE-2021-46977: Fix not seen in stream +CVE-2021-46980: Fix not seen in stream +CVE-2021-46981: Fix not seen in stream +CVE-2021-46982: Fix not seen in stream +CVE-2021-46983: Fix not seen in stream +CVE-2021-46984: Fix not seen in stream +CVE-2021-46987: Fix not seen in stream +CVE-2021-46988: Fix not seen in stream +CVE-2021-46989: Fix not seen in stream +CVE-2021-46991: Fix not seen in stream +CVE-2021-46992: Fix not seen in stream +CVE-2021-46993: Fix not seen in stream +CVE-2021-46994: Fix not seen in stream +CVE-2021-46998: Fix not seen in stream +CVE-2021-46999: Fix not seen in stream +CVE-2021-47000: Fix not seen in stream +CVE-2021-47001: Fix not seen in stream +CVE-2021-47004: Fix not seen in stream +CVE-2021-47005: Fix not seen in stream +CVE-2021-47006: Fix not seen in stream +CVE-2021-47007: Fix not seen in stream +CVE-2021-47010: Fix not seen in stream +CVE-2021-47012: Fix not seen in stream +CVE-2021-47013: Fix not seen in stream +CVE-2021-47014: Fix not seen in stream +CVE-2021-47015: Fix not seen in stream +CVE-2021-47016: Fix not seen in stream +CVE-2021-47017: Fix not seen in stream +CVE-2021-47018: Fix not seen in stream +CVE-2021-47020: Fix not seen in stream +CVE-2021-47024: Fix not seen in stream +CVE-2021-47026: Fix not seen in stream +CVE-2021-47028: Fix not seen in stream +CVE-2021-47034: Fix not seen in stream +CVE-2021-47035: Fix not seen in stream +CVE-2021-47036: Fix not seen in stream +CVE-2021-47038: Fix not seen in stream +CVE-2021-47040: Fix not seen in stream +CVE-2021-47041: Fix not seen in stream +CVE-2021-47043: Fix not seen in stream +CVE-2021-47046: Fix not seen in stream +CVE-2021-47049: Fix not seen in stream +CVE-2021-47050: Fix not seen in stream +CVE-2021-47051: Fix not seen in stream +CVE-2021-47052: Fix not seen in stream +CVE-2021-47054: Fix not seen in stream +CVE-2021-47055: Fix not seen in stream +CVE-2021-47056: Fix not seen in stream +CVE-2021-47059: Fix not seen in stream +CVE-2021-47060: Fix not seen in stream +CVE-2021-47061: Fix not seen in stream +CVE-2021-47063: Fix not seen in stream +CVE-2021-47065: Fix not seen in stream +CVE-2021-47067: Fix not seen in stream +CVE-2021-47069: Fix not seen in stream +CVE-2021-47070: Fix not seen in stream +CVE-2021-47071: Fix not seen in stream +CVE-2021-47073: Fix not seen in stream +CVE-2021-47074: Fix not seen in stream +CVE-2021-47075: Fix not seen in stream +CVE-2021-47076: Fix not seen in stream +CVE-2021-47077: Fix not seen in stream +CVE-2021-47078: Fix not seen in stream +CVE-2021-47082: Fix not seen in stream +CVE-2021-47083: Fix not seen in stream +CVE-2021-47086: Fix not seen in stream +CVE-2021-47093: Fix not seen in stream +CVE-2021-47095: Fix not seen in stream +CVE-2021-47100: Fix not seen in stream +CVE-2021-47101: Fix not seen in stream +CVE-2021-47103: Fix not seen in stream +CVE-2021-47105: Fix not seen in stream +CVE-2021-47109: Fix not seen in stream +CVE-2021-47110: Fix not seen in stream +CVE-2021-47111: Fix not seen in stream +CVE-2021-47112: Fix not seen in stream +CVE-2021-47113: Fix not seen in stream +CVE-2021-47114: Fix not seen in stream +CVE-2021-47116: Fix not seen in stream +CVE-2021-47117: Fix not seen in stream +CVE-2021-47118: Fix not seen in stream +CVE-2021-47119: Fix not seen in stream +CVE-2021-47120: Fix not seen in stream +CVE-2021-47121: Fix not seen in stream +CVE-2021-47122: Fix not seen in stream +CVE-2021-47124: Fix not seen in stream +CVE-2021-47125: Fix not seen in stream +CVE-2021-47126: Fix not seen in stream +CVE-2021-47128: Fix not seen in stream +CVE-2021-47129: Fix not seen in stream +CVE-2021-47130: Fix not seen in stream +CVE-2021-47131: Fix not seen in stream +CVE-2021-47133: Fix not seen in stream +CVE-2021-47135: Fix not seen in stream +CVE-2021-47136: Fix not seen in stream +CVE-2021-47137: Fix not seen in stream +CVE-2021-47138: Fix not seen in stream +CVE-2021-47139: Fix not seen in stream +CVE-2021-47140: Fix not seen in stream +CVE-2021-47141: Fix not seen in stream +CVE-2021-47142: Fix not seen in stream +CVE-2021-47143: Fix not seen in stream +CVE-2021-47144: Fix not seen in stream +CVE-2021-47145: Fix not seen in stream +CVE-2021-47146: Fix not seen in stream +CVE-2021-47147: Fix not seen in stream +CVE-2021-47149: Fix not seen in stream +CVE-2021-47150: Fix not seen in stream +CVE-2021-47151: Fix not seen in stream +CVE-2021-47152: Fix not seen in stream +CVE-2021-47153: Fix not seen in stream +CVE-2021-47158: Fix not seen in stream +CVE-2021-47159: Fix not seen in stream +CVE-2021-47160: Fix not seen in stream +CVE-2021-47161: Fix not seen in stream +CVE-2021-47162: Fix not seen in stream +CVE-2021-47163: Fix not seen in stream +CVE-2021-47164: Fix not seen in stream +CVE-2021-47165: Fix not seen in stream +CVE-2021-47166: Fix not seen in stream +CVE-2021-47167: Fix not seen in stream +CVE-2021-47168: Fix not seen in stream +CVE-2021-47169: Fix not seen in stream +CVE-2021-47170: Fix not seen in stream +CVE-2021-47171: Fix not seen in stream +CVE-2021-47172: Fix not seen in stream +CVE-2021-47173: Fix not seen in stream +CVE-2021-47174: Fix not seen in stream +CVE-2021-47175: Fix not seen in stream +CVE-2021-47177: Fix not seen in stream +CVE-2021-47179: Fix not seen in stream +CVE-2021-47180: Fix not seen in stream CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream @@ -519,6 +715,10 @@ CVE-2022-47929: Fix not seen in stream CVE-2022-47946: Fix not seen in stream CVE-2022-48619: Fix not seen in stream +CVE-2022-48626: Fix not seen in stream +CVE-2022-48627: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream +CVE-2022-48629: Fix not seen in stream CVE-2023-0045: Fix not seen in stream CVE-2023-0047: Fix not seen in stream CVE-2023-0160: Fix not seen in stream @@ -602,6 +802,7 @@ CVE-2023-28410: Fix not seen in stream CVE-2023-28466: Fix not seen in stream CVE-2023-2860: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28772: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -689,7 +890,7 @@ CVE-2023-4623: Fix not seen in stream CVE-2023-46343: Fix not seen in stream CVE-2023-46838: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4732: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream @@ -718,19 +919,124 @@ CVE-2023-52451: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6040: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -739,7 +1045,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -749,15 +1055,16 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -767,7 +1074,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -777,13 +1084,133 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream -CVE-2024-26591: Fix not seen in stream CVE-2024-26592: Fix not seen in stream CVE-2024-26593: Fix not seen in stream CVE-2024-26594: Fix not seen in stream CVE-2024-26595: Fix not seen in stream CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/5.9/5.9_security.txt b/data/5.9/5.9_security.txt index 082a82a..7cbcbc7 100644 --- a/data/5.9/5.9_security.txt +++ b/data/5.9/5.9_security.txt
@@ -92,6 +92,7 @@ CVE-2019-19449: (unk) f2fs: fix to do sanity check on segment/section count CVE-2019-19814: (unk) CVE-2019-20794: (unk) + CVE-2019-25162: (unk) i2c: Fix a potential use after free CVE-2020-0347: (unk) CVE-2020-10708: (unk) CVE-2020-11725: (unk) @@ -138,6 +139,17 @@ CVE-2020-36385: (unk) RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy CVE-2020-36516: (unk) ipv4: avoid using shared IP generator for connected sockets CVE-2020-36694: (unk) netfilter: x_tables: Switch synchronization to RCU + CVE-2020-36776: (unk) thermal/drivers/cpufreq_cooling: Fix slab OOB issue + CVE-2020-36777: (unk) media: dvbdev: Fix memory leak in dvb_media_device_free() + CVE-2020-36778: (unk) i2c: xiic: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36779: (unk) i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36780: (unk) i2c: sprd: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36781: (unk) i2c: imx: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36782: (unk) i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36783: (unk) i2c: img-scb: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36784: (unk) i2c: cadence: fix reference leak when pm_runtime_get_sync fails + CVE-2020-36785: (unk) media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() + CVE-2020-36787: (unk) media: aspeed: fix clock handling logic CVE-2020-3702: (unk) ath: Use safer key clearing with key cache entries CVE-2021-0129: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0399: (unk) @@ -305,6 +317,190 @@ CVE-2021-45486: (unk) inet: use bigger hash table for IP ID generation CVE-2021-45868: (unk) quota: check block number when reading the block in quota file CVE-2021-46283: (unk) netfilter: nf_tables: initialize set before expression setup + CVE-2021-46904: (unk) net: hso: fix null-ptr-deref during tty device unregistration + CVE-2021-46906: (unk) HID: usbhid: fix info leak in hid_submit_ctrl + CVE-2021-46908: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic + CVE-2021-46909: (unk) ARM: footbridge: fix PCI interrupt mapping + CVE-2021-46911: (unk) ch_ktls: Fix kernel panic + CVE-2021-46912: (unk) net: Make tcp_allowed_congestion_control readonly in non-init netns + CVE-2021-46913: (unk) netfilter: nftables: clone set element expression template + CVE-2021-46914: (unk) ixgbe: fix unbalanced device enable/disable in suspend/resume + CVE-2021-46915: (unk) netfilter: nft_limit: avoid possible divide error in nft_limit_init + CVE-2021-46917: (unk) dmaengine: idxd: fix wq cleanup of WQCFG registers + CVE-2021-46919: (unk) dmaengine: idxd: fix wq size store permission state + CVE-2021-46920: (unk) dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback + CVE-2021-46921: (unk) locking/qrwlock: Fix ordering in queued_write_lock_slowpath() + CVE-2021-46924: (unk) NFC: st21nfca: Fix memory leak in device probe and remove + CVE-2021-46925: (unk) net/smc: fix kernel panic caused by race of smc_sock + CVE-2021-46926: (unk) ALSA: hda: intel-sdw-acpi: harden detection of controller + CVE-2021-46928: (unk) parisc: Clear stale IIR value on instruction access rights trap + CVE-2021-46929: (unk) sctp: use call_rcu to free endpoint + CVE-2021-46930: (unk) usb: mtu3: fix list_head check warning + CVE-2021-46931: (unk) net/mlx5e: Wrap the tx reporter dump callback to extract the sq + CVE-2021-46932: (unk) Input: appletouch - initialize work before device registration + CVE-2021-46933: (unk) usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. + CVE-2021-46934: (unk) i2c: validate user data in compat ioctl + CVE-2021-46935: (unk) binder: fix async_free_space accounting for empty parcels + CVE-2021-46936: (unk) net: fix use-after-free in tw_timer_handler + CVE-2021-46938: (unk) dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails + CVE-2021-46939: (unk) tracing: Restructure trace_clock_global() to never block + CVE-2021-46941: (unk) usb: dwc3: core: Do core softreset when switch mode + CVE-2021-46943: (unk) media: staging/intel-ipu3: Fix set_fmt error handling + CVE-2021-46944: (unk) media: staging/intel-ipu3: Fix memory leak in imu_fmt + CVE-2021-46950: (unk) md/raid1: properly indicate failure when ending a failed write request + CVE-2021-46951: (unk) tpm: efi: Use local variable for calculating final log size + CVE-2021-46952: (unk) NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds + CVE-2021-46953: (unk) ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure + CVE-2021-46955: (unk) openvswitch: fix stack OOB read while fragmenting IPv4 packets + CVE-2021-46956: (unk) virtiofs: fix memory leak in virtio_fs_probe() + CVE-2021-46958: (unk) btrfs: fix race between transaction aborts and fsyncs leading to use-after-free + CVE-2021-46959: (unk) spi: Fix use-after-free with devm_spi_alloc_* + CVE-2021-46960: (unk) cifs: Return correct error code from smb2_get_enc_key + CVE-2021-46961: (unk) irqchip/gic-v3: Do not enable irqs when handling spurious interrups + CVE-2021-46962: (unk) mmc: uniphier-sd: Fix a resource leak in the remove function + CVE-2021-46963: (unk) scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand() + CVE-2021-46965: (unk) mtd: physmap: physmap-bt1-rom: Fix unintentional stack access + CVE-2021-46966: (unk) ACPI: custom_method: fix potential use-after-free issue + CVE-2021-46967: (unk) vhost-vdpa: fix vm_flags for virtqueue doorbell mapping + CVE-2021-46969: (unk) bus: mhi: core: Fix invalid error returning in mhi_queue + CVE-2021-46970: (unk) bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue + CVE-2021-46971: (unk) perf/core: Fix unconditional security_locked_down() call + CVE-2021-46972: (unk) ovl: fix leaked dentry + CVE-2021-46973: (unk) net: qrtr: Avoid potential use after free in MHI send + CVE-2021-46974: (unk) bpf: Fix masking negation logic upon negative dst register + CVE-2021-46976: (unk) drm/i915: Fix crash in auto_retire + CVE-2021-46977: (unk) KVM: VMX: Disable preemption when probing user return MSRs + CVE-2021-46980: (unk) usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4 + CVE-2021-46981: (unk) nbd: Fix NULL pointer in flush_workqueue + CVE-2021-46982: (unk) f2fs: compress: fix race condition of overwrite vs truncate + CVE-2021-46983: (unk) nvmet-rdma: Fix NULL deref when SEND is completed with error + CVE-2021-46984: (unk) kyber: fix out of bounds access when preempted + CVE-2021-46987: (unk) btrfs: fix deadlock when cloning inline extents and using qgroups + CVE-2021-46988: (unk) userfaultfd: release page in error path to avoid BUG_ON + CVE-2021-46989: (unk) hfsplus: prevent corruption in shrinking truncate + CVE-2021-46991: (unk) i40e: Fix use-after-free in i40e_client_subtask() + CVE-2021-46992: (unk) netfilter: nftables: avoid overflows in nft_hash_buckets() + CVE-2021-46993: (unk) sched: Fix out-of-bound access in uclamp + CVE-2021-46994: (unk) can: mcp251x: fix resume from sleep before interface was brought up + CVE-2021-46998: (unk) ethernet:enic: Fix a use after free bug in enic_hard_start_xmit + CVE-2021-46999: (unk) sctp: do asoc update earlier in sctp_sf_do_dupcook_a + CVE-2021-47000: (unk) ceph: fix inode leak on getattr error in __fh_to_dentry + CVE-2021-47001: (unk) xprtrdma: Fix cwnd update ordering + CVE-2021-47004: (unk) f2fs: fix to avoid touching checkpointed data in get_victim() + CVE-2021-47005: (unk) PCI: endpoint: Fix NULL pointer dereference for ->get_features() + CVE-2021-47006: (unk) ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook + CVE-2021-47007: (unk) f2fs: fix panic during f2fs_resize_fs() + CVE-2021-47010: (unk) net: Only allow init netns to set default tcp cong to a restricted algo + CVE-2021-47012: (unk) RDMA/siw: Fix a use after free in siw_alloc_mr + CVE-2021-47013: (unk) net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send + CVE-2021-47014: (unk) net/sched: act_ct: fix wild memory access when clearing fragments + CVE-2021-47015: (unk) bnxt_en: Fix RX consumer index logic in the error path. + CVE-2021-47016: (unk) m68k: mvme147,mvme16x: Don't wipe PCC timer config bits + CVE-2021-47017: (unk) ath10k: Fix a use after free in ath10k_htc_send_bundle + CVE-2021-47018: (unk) powerpc/64: Fix the definition of the fixmap area + CVE-2021-47020: (unk) soundwire: stream: fix memory leak in stream config error path + CVE-2021-47024: (unk) vsock/virtio: free queued packets when closing socket + CVE-2021-47026: (unk) RDMA/rtrs-clt: destroy sysfs after removing session from active list + CVE-2021-47028: (unk) mt76: mt7915: fix txrate reporting + CVE-2021-47034: (unk) powerpc/64s: Fix pte update for kernel memory on radix + CVE-2021-47035: (unk) iommu/vt-d: Remove WO permissions on second-level paging entries + CVE-2021-47036: (unk) udp: skip L4 aggregation for UDP tunnel packets + CVE-2021-47038: (unk) Bluetooth: avoid deadlock between hci_dev->lock and socket lock + CVE-2021-47040: (unk) io_uring: fix overflows checks in provide buffers + CVE-2021-47041: (unk) nvmet-tcp: fix incorrect locking in state_change sk callback + CVE-2021-47043: (unk) media: venus: core: Fix some resource leaks in the error path of 'venus_probe()' + CVE-2021-47046: (unk) drm/amd/display: Fix off by one in hdmi_14_process_transaction() + CVE-2021-47049: (unk) Drivers: hv: vmbus: Use after free in __vmbus_open() + CVE-2021-47050: (unk) memory: renesas-rpc-if: fix possible NULL pointer dereference of resource + CVE-2021-47051: (unk) spi: fsl-lpspi: Fix PM reference leak in lpspi_prepare_xfer_hardware() + CVE-2021-47052: (unk) crypto: sa2ul - Fix memory leak of rxd + CVE-2021-47054: (unk) bus: qcom: Put child node before return + CVE-2021-47055: (unk) mtd: require write permissions for locking and badblock ioctls + CVE-2021-47056: (unk) crypto: qat - ADF_STATUS_PF_RUNNING should be set after adf_dev_init + CVE-2021-47059: (unk) crypto: sun8i-ss - fix result memory leak on error path + CVE-2021-47060: (unk) KVM: Stop looking for coalesced MMIO zones if the bus is destroyed + CVE-2021-47061: (unk) KVM: Destroy I/O bus devices on unregister failure _after_ sync'ing SRCU + CVE-2021-47063: (unk) drm: bridge/panel: Cleanup connector on bridge detach + CVE-2021-47065: (unk) rtw88: Fix array overrun in rtw_get_tx_power_params() + CVE-2021-47067: (unk) soc/tegra: regulators: Fix locking up when voltage-spread is out of range + CVE-2021-47069: (unk) ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry + CVE-2021-47070: (unk) uio_hv_generic: Fix another memory leak in error handling paths + CVE-2021-47071: (unk) uio_hv_generic: Fix a memory leak in error handling paths + CVE-2021-47073: (unk) platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios + CVE-2021-47074: (unk) nvme-loop: fix memory leak in nvme_loop_create_ctrl() + CVE-2021-47075: (unk) nvmet: fix memory leak in nvmet_alloc_ctrl() + CVE-2021-47076: (unk) RDMA/rxe: Return CQE error if invalid lkey was supplied + CVE-2021-47077: (unk) scsi: qedf: Add pointer checks in qedf_update_link_speed() + CVE-2021-47078: (unk) RDMA/rxe: Clear all QP fields if creation failed + CVE-2021-47082: (unk) tun: avoid double free in tun_free_netdev + CVE-2021-47083: (unk) pinctrl: mediatek: fix global-out-of-bounds issue + CVE-2021-47086: (unk) phonet/pep: refuse to enable an unbound pipe + CVE-2021-47093: (unk) platform/x86: intel_pmc_core: fix memleak on registration failure + CVE-2021-47095: (unk) ipmi: ssif: initialize ssif_info->client early + CVE-2021-47100: (unk) ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module + CVE-2021-47101: (unk) asix: fix uninit-value in asix_mdio_read() + CVE-2021-47103: (unk) inet: fully convert sk->sk_rx_dst to RCU rules + CVE-2021-47105: (unk) ice: xsk: return xsk buffers back to pool when cleaning the ring + CVE-2021-47109: (unk) neighbour: allow NUD_NOARP entries to be forced GCed + CVE-2021-47110: (unk) x86/kvm: Disable kvmclock on all CPUs on shutdown + CVE-2021-47111: (unk) xen-netback: take a reference to the RX task thread + CVE-2021-47112: (unk) x86/kvm: Teardown PV features on boot CPU as well + CVE-2021-47113: (unk) btrfs: abort in rename_exchange if we fail to insert the second ref + CVE-2021-47114: (unk) ocfs2: fix data corruption by fallocate + CVE-2021-47116: (unk) ext4: fix memory leak in ext4_mb_init_backend on error path. + CVE-2021-47117: (unk) ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed + CVE-2021-47118: (unk) pid: take a reference when initializing `cad_pid` + CVE-2021-47119: (unk) ext4: fix memory leak in ext4_fill_super + CVE-2021-47120: (unk) HID: magicmouse: fix NULL-deref on disconnect + CVE-2021-47121: (unk) net: caif: fix memory leak in cfusbl_device_notify + CVE-2021-47122: (unk) net: caif: fix memory leak in caif_device_notify + CVE-2021-47124: (unk) io_uring: fix link timeout refs + CVE-2021-47125: (unk) sch_htb: fix refcount leak in htb_parent_to_leaf_offload + CVE-2021-47126: (unk) ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions + CVE-2021-47128: (unk) bpf, lockdown, audit: Fix buggy SELinux lockdown permission checks + CVE-2021-47129: (unk) netfilter: nft_ct: skip expectations for confirmed conntrack + CVE-2021-47130: (unk) nvmet: fix freeing unallocated p2pmem + CVE-2021-47131: (unk) net/tls: Fix use-after-free after the TLS device goes down and up + CVE-2021-47133: (unk) HID: amd_sfh: Fix memory leak in amd_sfh_work + CVE-2021-47135: (unk) mt76: mt7921: fix possible AOOB issue in mt7921_mcu_tx_rate_report + CVE-2021-47136: (unk) net: zero-initialize tc skb extension on allocation + CVE-2021-47137: (unk) net: lantiq: fix memory corruption in RX ring + CVE-2021-47138: (unk) cxgb4: avoid accessing registers when clearing filters + CVE-2021-47139: (unk) net: hns3: put off calling register_netdev() until client initialize complete + CVE-2021-47140: (unk) iommu/amd: Clear DMA ops when switching domain + CVE-2021-47141: (unk) gve: Add NULL pointer checks when freeing irqs. + CVE-2021-47142: (unk) drm/amdgpu: Fix a use-after-free + CVE-2021-47143: (unk) net/smc: remove device from smcd_dev_list after failed device_add() + CVE-2021-47144: (unk) drm/amd/amdgpu: fix refcount leak + CVE-2021-47145: (unk) btrfs: do not BUG_ON in link_to_fixup_dir + CVE-2021-47146: (unk) mld: fix panic in mld_newpack() + CVE-2021-47147: (unk) ptp: ocp: Fix a resource leak in an error handling path + CVE-2021-47149: (unk) net: fujitsu: fix potential null-ptr-deref + CVE-2021-47150: (unk) net: fec: fix the potential memory leak in fec_enet_init() + CVE-2021-47151: (unk) interconnect: qcom: bcm-voter: add a missing of_node_put() + CVE-2021-47152: (unk) mptcp: fix data stream corruption + CVE-2021-47153: (unk) i2c: i801: Don't generate an interrupt on bus reset + CVE-2021-47158: (unk) net: dsa: sja1105: add error handling in sja1105_setup() + CVE-2021-47159: (unk) net: dsa: fix a crash if ->get_sset_count() fails + CVE-2021-47160: (unk) net: dsa: mt7530: fix VLAN traffic leaks + CVE-2021-47161: (unk) spi: spi-fsl-dspi: Fix a resource leak in an error handling path + CVE-2021-47162: (unk) tipc: skb_linearize the head skb when reassembling msgs + CVE-2021-47163: (unk) tipc: wait and exit until all work queues are done + CVE-2021-47164: (unk) net/mlx5e: Fix null deref accessing lag dev + CVE-2021-47165: (unk) drm/meson: fix shutdown crash when component not probed + CVE-2021-47166: (unk) NFS: Don't corrupt the value of pg_bytes_written in nfs_do_recoalesce() + CVE-2021-47167: (unk) NFS: Fix an Oopsable condition in __nfs_pageio_add_request() + CVE-2021-47168: (unk) NFS: fix an incorrect limit in filelayout_decode_layout() + CVE-2021-47169: (unk) serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait' + CVE-2021-47170: (unk) USB: usbfs: Don't WARN about excessively large memory allocations + CVE-2021-47171: (unk) net: usb: fix memory leak in smsc75xx_bind + CVE-2021-47172: (unk) iio: adc: ad7124: Fix potential overflow due to non sequential channel numbers + CVE-2021-47173: (unk) misc/uss720: fix memory leak in uss720_probe + CVE-2021-47174: (unk) netfilter: nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version + CVE-2021-47175: (unk) net/sched: fq_pie: fix OOB access in the traffic path + CVE-2021-47177: (unk) iommu/vt-d: Fix sysfs leak in alloc_iommu() + CVE-2021-47179: (unk) NFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return() + CVE-2021-47180: (unk) NFC: nci: fix memory leak in nci_allocate_device CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() @@ -549,6 +745,10 @@ CVE-2022-47929: (unk) net: sched: disallow noqueue for qdisc classes CVE-2022-47946: (unk) io_uring: kill sqo_dead and sqo submission halting CVE-2022-48619: (unk) Input: add bounds checking to input_set_capability() + CVE-2022-48626: (unk) moxart: fix potential use-after-free on remove path + CVE-2022-48627: (unk) vt: fix memory overlapping when deleting chars in the buffer + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting + CVE-2022-48629: (unk) crypto: qcom-rng - ensure buffer for generate is completely filled CVE-2023-0045: (unk) x86/bugs: Flush IBP in ib_prctl_set() CVE-2023-0047: (unk) mm, oom: do not trigger out_of_memory from the #PF CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap @@ -632,6 +832,7 @@ CVE-2023-28410: (unk) drm/i915/gem: add missing boundary check in vm_access CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() CVE-2023-2860: (unk) ipv6: sr: fix out-of-bounds read when setting HMAC data. + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28772: (unk) seq_buf: Fix overflow in seq_buf_putmem_hex() CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -719,7 +920,7 @@ CVE-2023-4623: (unk) net/sched: sch_hfsc: Ensure inner classes have fsc curve CVE-2023-46343: (unk) nfc: nci: fix possible NULL pointer dereference in send_acknowledge() CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4732: (unk) mm/userfaultfd: fix uffd-wp special cases for fork() CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() @@ -748,19 +949,124 @@ CVE-2023-52451: (unk) powerpc/pseries/memhp: Fix access beyond end of drmem array CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6040: (unk) netfilter: nf_tables: Reject tables of unsupported family CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -769,7 +1075,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -779,15 +1085,16 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -797,7 +1104,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -807,13 +1114,133 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS - CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach CVE-2024-26592: (unk) ksmbd: fix UAF issue in ksmbd_tcp_new_connection() CVE-2024-26593: (unk) i2c: i801: Fix block process call transactions CVE-2024-26594: (unk) ksmbd: validate mech token in session setup CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/6.0/6.0_CVEs.txt b/data/6.0/6.0_CVEs.txt index 3f5eecc..8b194b5 100644 --- a/data/6.0/6.0_CVEs.txt +++ b/data/6.0/6.0_CVEs.txt
@@ -151,6 +151,7 @@ CVE-2022-48424: Fixed with 6.0.17 CVE-2022-48425: Fix not seen in stream CVE-2022-48502: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0045: Fixed with 6.0.19 CVE-2023-0160: Fix not seen in stream CVE-2023-0179: Fix not seen in stream @@ -235,6 +236,7 @@ CVE-2023-28327: Fixed with 6.0.13 CVE-2023-28328: Fixed with 6.0.16 CVE-2023-28466: Fix not seen in stream +CVE-2023-28746: Fix not seen in stream CVE-2023-28866: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fix not seen in stream @@ -348,7 +350,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -381,20 +383,142 @@ CVE-2023-52452: Fix not seen in stream CVE-2023-52454: Fix not seen in stream CVE-2023-52456: Fix not seen in stream -CVE-2023-52457: Fix not seen in stream CVE-2023-52458: Fix not seen in stream CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52505: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52512: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52562: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5717: Fix not seen in stream CVE-2023-6039: Fix not seen in stream CVE-2023-6121: Fix not seen in stream CVE-2023-6176: Fix not seen in stream CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -404,7 +528,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0564: Fix unknown @@ -415,17 +539,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -435,7 +560,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -446,8 +571,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream -CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream CVE-2024-26591: Fix not seen in stream @@ -458,3 +581,148 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26620: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26629: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26638: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26667: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26681: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26695: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26742: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26760: Fix not seen in stream +CVE-2024-26761: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/6.0/6.0_security.txt b/data/6.0/6.0_security.txt index 8e9f0b7..e6ed6c7 100644 --- a/data/6.0/6.0_security.txt +++ b/data/6.0/6.0_security.txt
@@ -207,6 +207,7 @@ CVE-2022-4842: (unk) fs/ntfs3: Fix attr_punch_hole() null pointer derenference CVE-2022-48425: (unk) fs/ntfs3: Validate MFT flags before replaying logs CVE-2022-48502: (unk) fs/ntfs3: Check fields while reading + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-0160: (unk) bpf, sockmap: fix deadlocks in the sockhash and sockmap CVE-2023-0179: (unk) netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits CVE-2023-0266: (unk) ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF @@ -272,6 +273,7 @@ CVE-2023-2640: (unk) CVE-2023-26545: (unk) net: mpls: fix stale pointer if allocation fails during device rename CVE-2023-28466: (unk) net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf() + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-28866: (unk) Bluetooth: HCI: Fix global-out-of-bounds CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-2985: (unk) fs: hfsplus: fix UAF issue in hfsplus_put_super @@ -382,7 +384,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -415,20 +417,142 @@ CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots CVE-2023-52454: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-52456: (unk) serial: imx: fix tx statemachine deadlock - CVE-2023-52457: (unk) serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed CVE-2023-52458: (unk) block: add check that partition length needs to be aligned with block size CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52474: (unk) IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: (unk) phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52512: (unk) pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52562: (unk) mm/slab_common: fix slab_caches list corruption after kmem_cache_destroy() + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -438,7 +562,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2023-7192: (unk) netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) @@ -449,17 +573,18 @@ CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well CVE-2024-0775: (unk) ext4: improve error recovery code paths in __ext4_remount() - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -469,7 +594,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -480,8 +605,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format CVE-2024-26591: (unk) bpf: Fix re-attachment branch in bpf_tracing_prog_attach @@ -492,3 +615,148 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26620: (unk) s390/vfio-ap: always filter entire AP matrix + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26629: (unk) nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: (unk) nbd: always initialize struct msghdr completely + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26667: (unk) drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: (unk) netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26695: (unk) crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26742: (unk) scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26760: (unk) scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: (unk) cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/6.1/6.1_CVEs.txt b/data/6.1/6.1_CVEs.txt index 09b7b18..6d871ff 100644 --- a/data/6.1/6.1_CVEs.txt +++ b/data/6.1/6.1_CVEs.txt
@@ -104,6 +104,7 @@ CVE-2022-48424: Fixed with 6.1.3 CVE-2022-48425: Fixed with 6.1.33 CVE-2022-48502: Fixed with 6.1.40 +CVE-2022-48628: Fixed with 6.1.56 CVE-2023-0045: Fixed with 6.1.5 CVE-2023-0160: Fixed with 6.1.28 CVE-2023-0179: Fixed with 6.1.7 @@ -157,7 +158,7 @@ CVE-2023-2162: Fixed with 6.1.11 CVE-2023-2163: Fixed with 6.1.26 CVE-2023-2166: Fixed with 6.1 -CVE-2023-2176: Fix not seen in stream +CVE-2023-2176: Fixed with 6.1.81 CVE-2023-2194: Fixed with 6.1.22 CVE-2023-2235: Fixed with 6.1.21 CVE-2023-2248: Fixed with 6.1.26 @@ -180,6 +181,7 @@ CVE-2023-28327: Fixed with 6.1 CVE-2023-28328: Fixed with 6.1.2 CVE-2023-28466: Fixed with 6.1.20 +CVE-2023-28746: Fixed with 6.1.82 CVE-2023-28866: Fixed with 6.1.22 CVE-2023-2898: Fixed with 6.1.39 CVE-2023-2985: Fixed with 6.1.16 @@ -292,7 +294,7 @@ CVE-2023-46813: Fixed with 6.1.60 CVE-2023-46838: Fixed with 6.1.75 CVE-2023-46862: Fixed with 6.1.61 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fixed with 6.1.84 CVE-2023-4881: Fixed with 6.1.54 CVE-2023-4921: Fixed with 6.1.54 CVE-2023-50431: Fixed with 6.1.75 @@ -330,17 +332,142 @@ CVE-2023-52462: Fixed with 6.1.75 CVE-2023-52463: Fixed with 6.1.75 CVE-2023-52464: Fixed with 6.1.75 +CVE-2023-52467: Fixed with 6.1.75 +CVE-2023-52469: Fixed with 6.1.75 +CVE-2023-52470: Fixed with 6.1.75 +CVE-2023-52474: Fixed with 6.1.28 +CVE-2023-52475: Fixed with 6.1.59 +CVE-2023-52476: Fixed with 6.1.59 +CVE-2023-52477: Fixed with 6.1.59 +CVE-2023-52478: Fixed with 6.1.59 +CVE-2023-52479: Fixed with 6.1.57 +CVE-2023-52480: Fixed with 6.1.57 +CVE-2023-52481: Fixed with 6.1.57 +CVE-2023-52482: Fixed with 6.1.56 +CVE-2023-52483: Fixed with 6.1.59 +CVE-2023-52484: Fixed with 6.1.56 +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fixed with 6.1.76 +CVE-2023-52488: Fixed with 6.1.76 +CVE-2023-52489: Fixed with 6.1.76 +CVE-2023-52491: Fixed with 6.1.76 +CVE-2023-52492: Fixed with 6.1.76 +CVE-2023-52493: Fixed with 6.1.76 +CVE-2023-52494: Fixed with 6.1.76 +CVE-2023-52497: Fixed with 6.1.76 +CVE-2023-52498: Fixed with 6.1.76 +CVE-2023-52499: Fixed with 6.1.59 +CVE-2023-52500: Fixed with 6.1.56 +CVE-2023-52501: Fixed with 6.1.56 +CVE-2023-52502: Fixed with 6.1.59 +CVE-2023-52503: Fixed with 6.1.59 +CVE-2023-52504: Fixed with 6.1.59 +CVE-2023-52505: Fixed with 6.1.59 +CVE-2023-52506: Fixed with 6.1.56 +CVE-2023-52507: Fixed with 6.1.59 +CVE-2023-52508: Fixed with 6.1.56 +CVE-2023-52509: Fixed with 6.1.59 +CVE-2023-52510: Fixed with 6.1.59 +CVE-2023-52511: Fixed with 6.1.56 +CVE-2023-52512: Fixed with 6.1.59 +CVE-2023-52513: Fixed with 6.1.57 +CVE-2023-52515: Fixed with 6.1.57 +CVE-2023-52516: Fixed with 6.1.56 +CVE-2023-52517: Fixed with 6.1.56 +CVE-2023-52518: Fixed with 6.1.57 +CVE-2023-52519: Fixed with 6.1.57 +CVE-2023-52520: Fixed with 6.1.59 +CVE-2023-52522: Fixed with 6.1.57 +CVE-2023-52523: Fixed with 6.1.57 +CVE-2023-52526: Fixed with 6.1.57 +CVE-2023-52527: Fixed with 6.1.57 +CVE-2023-52528: Fixed with 6.1.57 +CVE-2023-52529: Fixed with 6.1.57 +CVE-2023-52530: Fixed with 6.1.57 +CVE-2023-52531: Fixed with 6.1.57 +CVE-2023-52532: Fixed with 6.1.59 +CVE-2023-52559: Fixed with 6.1.57 +CVE-2023-52560: Fixed with 6.1.56 +CVE-2023-52561: Fixed with 6.1.56 +CVE-2023-52562: Fixed with 6.1.56 +CVE-2023-52563: Fixed with 6.1.56 +CVE-2023-52565: Fixed with 6.1.56 +CVE-2023-52566: Fixed with 6.1.56 +CVE-2023-52568: Fixed with 6.1.56 +CVE-2023-52569: Fixed with 6.1.56 +CVE-2023-52570: Fixed with 6.1.56 +CVE-2023-52571: Fixed with 6.1.56 +CVE-2023-52572: Fixed with 6.1.56 +CVE-2023-52573: Fixed with 6.1.56 +CVE-2023-52574: Fixed with 6.1.56 +CVE-2023-52576: Fixed with 6.1.56 +CVE-2023-52578: Fixed with 6.1.56 +CVE-2023-52580: Fixed with 6.1.56 +CVE-2023-52582: Fixed with 6.1.56 +CVE-2023-52583: Fixed with 6.1.77 +CVE-2023-52584: Fixed with 6.1.77 +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fixed with 6.1.77 +CVE-2023-52588: Fixed with 6.1.77 +CVE-2023-52589: Fixed with 6.1.77 +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fixed with 6.1.77 +CVE-2023-52594: Fixed with 6.1.77 +CVE-2023-52595: Fixed with 6.1.77 +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fixed with 6.1.77 +CVE-2023-52598: Fixed with 6.1.77 +CVE-2023-52599: Fixed with 6.1.77 +CVE-2023-52600: Fixed with 6.1.77 +CVE-2023-52601: Fixed with 6.1.77 +CVE-2023-52602: Fixed with 6.1.77 +CVE-2023-52603: Fixed with 6.1.77 +CVE-2023-52604: Fixed with 6.1.77 +CVE-2023-52606: Fixed with 6.1.77 +CVE-2023-52607: Fixed with 6.1.77 +CVE-2023-52608: Fixed with 6.1.76 +CVE-2023-52609: Fixed with 6.1.75 +CVE-2023-52610: Fixed with 6.1.75 +CVE-2023-52612: Fixed with 6.1.75 +CVE-2023-52614: Fixed with 6.1.76 +CVE-2023-52615: Fixed with 6.1.76 +CVE-2023-52616: Fixed with 6.1.79 +CVE-2023-52617: Fixed with 6.1.77 +CVE-2023-52618: Fixed with 6.1.77 +CVE-2023-52619: Fixed with 6.1.77 +CVE-2023-52620: Fixed with 6.1.81 +CVE-2023-52621: Fixed with 6.1.77 +CVE-2023-52622: Fixed with 6.1.77 +CVE-2023-52623: Fixed with 6.1.77 +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fixed with 6.1.76 +CVE-2023-52628: Fixed with 6.1.54 +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fixed with 6.1.78 +CVE-2023-52631: Fixed with 6.1.78 +CVE-2023-52632: Fixed with 6.1.77 +CVE-2023-52633: Fixed with 6.1.77 +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fixed with 6.1.77 +CVE-2023-52637: Fixed with 6.1.79 +CVE-2023-52638: Fixed with 6.1.79 +CVE-2023-52639: Fixed with 6.1.82 +CVE-2023-52640: Fixed with 6.1.80 +CVE-2023-52641: Fixed with 6.1.80 CVE-2023-5345: Fixed with 6.1.56 CVE-2023-5717: Fixed with 6.1.60 CVE-2023-6039: Fix not seen in stream CVE-2023-6121: Fixed with 6.1.65 CVE-2023-6176: Fixed with 6.1.54 CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 6.1.83 +CVE-2023-6356: Fixed with 6.1.75 CVE-2023-6531: Fixed with 6.1.68 CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fixed with 6.1.75 CVE-2023-6546: Fixed with 6.1.47 CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fixed with 6.1.70 @@ -350,7 +477,7 @@ CVE-2023-6915: Fixed with 6.1.74 CVE-2023-6931: Fixed with 6.1.68 CVE-2023-6932: Fixed with 6.1.66 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fixed with 6.1.83 CVE-2023-7192: Fixed with 6.1.18 CVE-2024-0340: Fixed with 6.1.78 CVE-2024-0564: Fix unknown @@ -361,17 +488,18 @@ CVE-2024-0641: Fixed with 6.1.57 CVE-2024-0646: Fixed with 6.1.69 CVE-2024-0775: Fixed with 6.1.29 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fixed with 6.1.79 CVE-2024-1085: Fixed with 6.1.75 CVE-2024-1086: Fixed with 6.1.76 CVE-2024-1151: Fixed with 6.1.79 CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 6.1.83 CVE-2024-22386: Fix unknown CVE-2024-22705: Fixed with 6.1.71 -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fixed with 6.1.47 +CVE-2024-23307: Fixed with 6.1.84 CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 6.1.76 CVE-2024-23850: Fixed with 6.1.79 @@ -381,7 +509,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fixed with 6.1.75 -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fixed with 6.1.84 CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -389,13 +517,12 @@ CVE-2024-25744: Fixed with 6.1.68 CVE-2024-26582: Fixed with 6.1.79 CVE-2024-26583: Fixed with 6.1.79 -CVE-2024-26584: Fix not seen in stream -CVE-2024-26585: Fix not seen in stream +CVE-2024-26584: Fixed with 6.1.84 +CVE-2024-26585: Fixed with 6.1.84 CVE-2024-26586: Fixed with 6.1.79 -CVE-2024-26587: Fix not seen in stream CVE-2024-26588: Fixed with 6.1.75 CVE-2024-26589: Fixed with 6.1.75 -CVE-2024-26590: Fix not seen in stream +CVE-2024-26590: Fixed with 6.1.80 CVE-2024-26591: Fixed with 6.1.75 CVE-2024-26592: Fixed with 6.1.75 CVE-2024-26593: Fixed with 6.1.79 @@ -405,3 +532,150 @@ CVE-2024-26597: Fixed with 6.1.75 CVE-2024-26598: Fixed with 6.1.75 CVE-2024-26599: Fixed with 6.1.75 +CVE-2024-26600: Fixed with 6.1.78 +CVE-2024-26601: Fixed with 6.1.78 +CVE-2024-26602: Fixed with 6.1.79 +CVE-2024-26603: Fixed with 6.1.79 +CVE-2024-26606: Fixed with 6.1.79 +CVE-2024-26607: Fixed with 6.1.76 +CVE-2024-26608: Fixed with 6.1.76 +CVE-2024-26610: Fixed with 6.1.76 +CVE-2024-26612: Fixed with 6.1.76 +CVE-2024-26614: Fixed with 6.1.76 +CVE-2024-26615: Fixed with 6.1.76 +CVE-2024-26620: Fixed with 6.1.76 +CVE-2024-26622: Fixed with 6.1.81 +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fixed with 6.1.77 +CVE-2024-26627: Fixed with 6.1.77 +CVE-2024-26629: Fixed with 6.1.79 +CVE-2024-26631: Fixed with 6.1.75 +CVE-2024-26632: Fixed with 6.1.75 +CVE-2024-26633: Fixed with 6.1.75 +CVE-2024-26635: Fixed with 6.1.76 +CVE-2024-26636: Fixed with 6.1.76 +CVE-2024-26638: Fixed with 6.1.76 +CVE-2024-26640: Fixed with 6.1.77 +CVE-2024-26641: Fixed with 6.1.77 +CVE-2024-26642: Fixed with 6.1.84 +CVE-2024-26644: Fixed with 6.1.76 +CVE-2024-26645: Fixed with 6.1.76 +CVE-2024-26646: Fixed with 6.1.76 +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fixed with 6.1.76 +CVE-2024-26651: Fixed with 6.1.83 +CVE-2024-26654: Fixed with 6.1.84 +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fixed with 6.1.82 +CVE-2024-26660: Fixed with 6.1.78 +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fixed with 6.1.78 +CVE-2024-26664: Fixed with 6.1.78 +CVE-2024-26665: Fixed with 6.1.78 +CVE-2024-26667: Fixed with 6.1.78 +CVE-2024-26668: Fixed with 6.1.76 +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fixed with 6.1.77 +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fixed with 6.1.77 +CVE-2024-26675: Fixed with 6.1.78 +CVE-2024-26676: Fixed with 6.1.78 +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fixed with 6.1.78 +CVE-2024-26680: Fixed with 6.1.78 +CVE-2024-26681: Fixed with 6.1.78 +CVE-2024-26684: Fixed with 6.1.78 +CVE-2024-26685: Fixed with 6.1.79 +CVE-2024-26686: Fixed with 6.1.82 +CVE-2024-26687: Fixed with 6.1.81 +CVE-2024-26688: Fixed with 6.1.79 +CVE-2024-26689: Fixed with 6.1.79 +CVE-2024-26691: Fix not seen in stream +CVE-2024-26695: Fixed with 6.1.79 +CVE-2024-26696: Fixed with 6.1.79 +CVE-2024-26697: Fixed with 6.1.79 +CVE-2024-26698: Fixed with 6.1.79 +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fixed with 6.1.82 +CVE-2024-26702: Fixed with 6.1.79 +CVE-2024-26704: Fixed with 6.1.79 +CVE-2024-26706: Fixed with 6.1.79 +CVE-2024-26707: Fixed with 6.1.79 +CVE-2024-26712: Fixed with 6.1.79 +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fixed with 6.1.79 +CVE-2024-26715: Fixed with 6.1.79 +CVE-2024-26717: Fixed with 6.1.79 +CVE-2024-26718: Fixed with 6.1.79 +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fixed with 6.1.79 +CVE-2024-26723: Fixed with 6.1.79 +CVE-2024-26726: Fixed with 6.1.79 +CVE-2024-26727: Fixed with 6.1.79 +CVE-2024-26733: Fixed with 6.1.80 +CVE-2024-26735: Fixed with 6.1.80 +CVE-2024-26736: Fixed with 6.1.80 +CVE-2024-26737: Fixed with 6.1.80 +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26741: Fixed with 6.1.80 +CVE-2024-26742: Fixed with 6.1.80 +CVE-2024-26743: Fixed with 6.1.80 +CVE-2024-26744: Fixed with 6.1.80 +CVE-2024-26745: Fixed with 6.1.81 +CVE-2024-26747: Fixed with 6.1.80 +CVE-2024-26748: Fixed with 6.1.80 +CVE-2024-26749: Fixed with 6.1.80 +CVE-2024-26751: Fixed with 6.1.80 +CVE-2024-26752: Fixed with 6.1.80 +CVE-2024-26753: Fixed with 6.1.80 +CVE-2024-26754: Fixed with 6.1.80 +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fixed with 6.1.80 +CVE-2024-26760: Fixed with 6.1.80 +CVE-2024-26761: Fixed with 6.1.80 +CVE-2024-26763: Fixed with 6.1.80 +CVE-2024-26764: Fixed with 6.1.80 +CVE-2024-26765: Fixed with 6.1.80 +CVE-2024-26766: Fixed with 6.1.80 +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fixed with 6.1.80 +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fixed with 6.1.80 +CVE-2024-26772: Fixed with 6.1.80 +CVE-2024-26773: Fixed with 6.1.80 +CVE-2024-26774: Fixed with 6.1.80 +CVE-2024-26775: Fixed with 6.1.80 +CVE-2024-26776: Fixed with 6.1.80 +CVE-2024-26777: Fixed with 6.1.80 +CVE-2024-26778: Fixed with 6.1.80 +CVE-2024-26779: Fixed with 6.1.80 +CVE-2024-26782: Fixed with 6.1.81 +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fixed with 6.1.81 +CVE-2024-26788: Fixed with 6.1.81 +CVE-2024-26789: Fixed with 6.1.81 +CVE-2024-26790: Fixed with 6.1.81 +CVE-2024-26791: Fixed with 6.1.81 +CVE-2024-26793: Fixed with 6.1.81 +CVE-2024-26795: Fixed with 6.1.81 +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fixed with 6.1.81 +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fixed with 6.1.81 +CVE-2024-26802: Fixed with 6.1.81 +CVE-2024-26803: Fixed with 6.1.81 +CVE-2024-26804: Fixed with 6.1.81 +CVE-2024-26805: Fixed with 6.1.81 +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fixed with 6.1.76 +CVE-2024-26809: Fixed with 6.1.83
diff --git a/data/6.1/6.1_security.txt b/data/6.1/6.1_security.txt index ba5163e..81bf0b9 100644 --- a/data/6.1/6.1_security.txt +++ b/data/6.1/6.1_security.txt
@@ -153,6 +153,7 @@ CVE-2023-35826: 2cdc8f729d953143b3bbdc56841bb6800752de7f media: cedrus: fix use after free bug in cedrus_remove due to race condition CVE-2023-35828: df2380520926bdbc264cffab0f45da9a21f304c8 usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition CVE-2023-35829: 6a17add9c61030683b9c1fc86878f00a2d318a95 media: rkvdec: fix use after free bug in rkvdec_remove + CVE-2023-52474: dce59b5443700fbd0d2433ec6e4d4cf063448844 IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests CVEs fixed in 6.1.29: CVE-2023-32247: 1fc8a2b14ef5223f8e0b95faba2ee0a6e4d0f99d ksmbd: destroy expired sessions @@ -258,6 +259,7 @@ CVE-2023-4569: 00ea7eb1c69eec91cdf9259f0e427c56e7999fcd netfilter: nf_tables: deactivate catchall elements in next generation CVE-2023-51042: dd0b3b367c3839e439f36af908b39c98929a5e54 drm/amdgpu: Fix potential fence use-after-free v2 CVE-2023-6546: 31311a9a4baae0ad47c85e448af21b2120344ff0 tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux + CVE-2024-23196: cdd412b528dee6e0851c4735d6676ec138da13a4 ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVEs fixed in 6.1.50: CVE-2022-36402: 115f2ccd3a998fe7247f59f8fb5feffc878bcbb7 drm/vmwgfx: Fix shader stage validation @@ -281,26 +283,86 @@ CVE-2023-39189: 7bb8d52b4271be7527b6e3120ae6ce4c6cdf6e34 netfilter: nfnetlink_osf: avoid OOB read CVE-2023-4881: d9ebfc0f21377690837ebbd119e679243e0099cc netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: a18349dc8d916a64d7c93f05da98953e3386d8e9 net: sched: sch_qfq: Fix UAF in qfq_dequeue() + CVE-2023-52628: d9ebfc0f21377690837ebbd119e679243e0099cc netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-6176: 7f4116c6f98412a6e29ace6d6a7b41ebb4e8a392 net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVEs fixed in 6.1.55: CVE-2023-42755: b93aeb6352b0229e3c5ca5ca4ff015b015aff33c net/sched: Retire rsvp classifier CVEs fixed in 6.1.56: + CVE-2022-48628: 89744b64914426cbabceb3d8a149176b5dafdfb5 ceph: drop messages from MDS when unmounting CVE-2023-4244: 41113aa5698ad7a82635bcb747d483e4458d518d netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path CVE-2023-42754: 2712545e535d7a2e4c53b9c9658a9c88c6055862 ipv4: fix null-deref in ipv4_link_failure CVE-2023-4563: 59dab3bf0b8fc08eb802721c0532f13dd89209b8 netfilter: nf_tables: don't skip expired elements during walk CVE-2023-5197: 9af8bb2afea3705b58fe930f97a39322f46e5b8b netfilter: nf_tables: disallow rule removal from chain binding + CVE-2023-52482: 6ce2f297a7168274547d0b5aea6c7c16268b8a96 x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: f90f4c562003ac3d3b135c5a40a5383313f27264 iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52500: 2259e1901b2d8c0e8538fc99e77de443b939e749 scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: b08a4938229dbb530a35c41b83002a1457c6ff49 ring-buffer: Do not attempt to read past "commit" + CVE-2023-52506: f105e893a8edd48bdf4bef9fef845a9ff402f737 LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: be90c9e29dd59b7d19a73297a1590ff3ec1d22ea nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52511: e15bb292b24630ee832bfc7fd616bd72c7682bbb spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52516: be8f49029eca3efbad0d74dbff3cb9129994ffab dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: 36b29974a7ad2ff604c24ad348f940506c7b1209 spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52560: 9a4fe81a8644b717d57d81ce5849e16583b13fe8 mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: dc1ab6577475b0460ba4261cd9caec37bd62ca0b arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52562: a5569bb187521432f509b69dda7d29f78b2d38b0 mm/slab_common: fix slab_caches list corruption after kmem_cache_destroy() + CVE-2023-52563: ee335e0094add7fc2c7034e0534e1920d61d2078 drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: 09635bf4cdd4adf2160198a6041bcc7ca46c0558 media: uvcvideo: Fix OOB read + CVE-2023-52566: 980663f1d189eedafd18d80053d9cf3e2ceb5c8c nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: 811ba2ef0cb6402672e64ba1419d6ef95aa3405d x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: 39c4a9522db0072570d602e9b365119e17fb9f4f btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52570: c01b2e0ee22ef8b4dd7509a93aecc0ac0826bae4 vfio/mdev: Fix a null-ptr-deref bug for mdev_unregister_parent() + CVE-2023-52571: fe6406238d5a24e9fb0286c71edd67b99d8db58d power: supply: rk817: Fix node refcount leak + CVE-2023-52572: 908b3b5e97d25e879de3d1f172a255665491c2c3 cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: 51fa66024a5eabf270164f2dc82a48ffb35a12e9 net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: 2f0acb0736ecc3eb85dc80ad2790d634dcb10b58 team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: eef16bfdb212da60f5144689f2967fb25b051a2b x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: 89f9f20b1cbd36d99d5a248a4bf8d11d4fd049a2 net: bridge: use DEV_STATS_INC() + CVE-2023-52580: 488ea2a3e2666022f79abfdd7d12e8305fc27a40 net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: df9950d37df113db59495fa09d060754366a2b7c netfs: Only call folio_start_fscache() one time for each folio CVE-2023-5345: f555a508087ab8210b4658120ac6413d6fe2b4c7 fs/smb/client: Reset password pointer to NULL CVEs fixed in 6.1.57: CVE-2023-31085: 91aeb418b9175d09fc858f0fdf01988cbf990c5d ubi: Refuse attaching if mtd's erasesize is 0 CVE-2023-34324: a4cc925e2e12c3bbffb0860acdb9f9c1abde47dd xen/events: replace evtchn_rwlock with RCU CVE-2023-5158: 3a72decd6b49ff11a894aabd4d9b3025f046fe61 vringh: don't use vringh_kiov_advance() in vringh_iov_xfer() + CVE-2023-52479: 8226ffc759ea59f10067b9acdf7f94bae1c69930 ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: a2ca5fd3dbcc665e1169044fa0c9e3eba779202b ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: 6e3ae2927b432a3b7c8374f14dbc1bd9ebe4372c arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52513: 5cf38e638e5d01b68f9133968a85e8b3fd1ecf2f RDMA/siw: Fix connection failure handling + CVE-2023-52515: 2b298f9181582270d5e95774e5a6c7a7fb5b1206 RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52518: 626535077ba9dc110787540d1fe24881094c15a1 Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: cdcc04e844a2d22d9d25cef1e8e504a174ea9f8f HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: f82aac8162871e87027692b36af335a2375d4580 net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: b8f97e47b6fb84fcf2f5a22e725eefb6cf5070c2 bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52526: 6a5a8f0a9740f865693d5aa97a42cc4504538e18 erofs: fix memory leak of LZMA global compressed deduplication + CVE-2023-52527: f6a7182179c0ed788e3755ee2ed18c888ddcc33f ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: 9ffc5018020fe646795a8dc1203224b8f776dc09 net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: f237b17611fa3501f43f12d1cb64323e10fdcb4f HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: 2f4e16e39e4f5e78248dd9e51276a83203950b36 wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: 6b3223449c959a8be94a1f042288059e40fcccb0 wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52559: c12ef025add77ca3a0902e8719d552b6d47b4282 iommu/vt-d: Avoid memory allocation in iommu_suspend() CVE-2024-0641: 143e72757a902abcecd5f487553f44dc19a56cfc tipc: fix a potential deadlock on &tx->lock CVEs fixed in 6.1.59: CVE-2023-35827: 6f6fa8061f756aedb93af12a8a5d3cf659127965 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52475: 2efe67c581a2a6122b328d4bb6f21b3f36f40d46 Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: 3863989497652488a50f00e96de4331e5efabc6c perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: fb9895ab9533534335fa83d70344b397ac862c81 usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: fd72ac9556a473fc7daf54efb6ca8a97180d621d HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52483: 1db0724a01b558feb1ecae551782add1951a114a mctp: perform route lookups under a RCU read-side lock + CVE-2023-52499: 8ac2689502f986a46f4221e239d4ff2897f1ccb3 powerpc/47x: Fix 47x syscall return crash + CVE-2023-52502: e4f2611f07c87b3ddb57c4b9e8efcd1e330fc3dc net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: 60c3e7a00db954947c265b55099c21b216f2a05c tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: 5b784489c8158518bf7a466bb3cc045b0fb66b4b x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: 6f901f8448c6b25ed843796b114471d2a3fc5dfb phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52507: 853dda54ba59ea70d5580a298b7ede4707826848 nfc: nci: assert requested protocol is valid + CVE-2023-52509: 6f6fa8061f756aedb93af12a8a5d3cf659127965 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: 217efe32a45249eb07dcd7197e8403de98345e66 ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52512: 6c18c386fd13dbb3ff31a1086dabb526780d9bda pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52520: af21c9119a37cecb7ff27ce0c2f3cf721e9d0ec4 platform/x86: think-lmi: Fix reference leak + CVE-2023-52532: b67d7b1bfc46d05c1a58b172516454698e8d5004 net: mana: Fix TX CQE error handling CVEs fixed in 6.1.60: CVE-2023-46343: d7dbdbe3800a908eecd4975c31be47dd45e2104a nfc: nci: fix possible NULL pointer dereference in send_acknowledge() @@ -372,6 +434,14 @@ CVE-2023-52462: fc3e3c50a0a4cac1463967c110686189e4a59104 bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: d4a9aa7db574a0da64307729cc031fb68597aa8b efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: 9dbac9fdae6e3b411fc4c3fca3bf48f70609c398 EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: 527e8c5f3d00299822612c495d5adf1f8f43c001 mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: 35fa2394d26e919f63600ce631e6aefc95ec2706 drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: c4ff55408187f2595066967047363ca84e76db85 drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52609: 6696f76c32ff67fec26823fc2df46498e70d9bf3 binder: fix race between mmput() and do_exit() + CVE-2023-52610: 0b5b831122fc3789fff75be433ba3e4dd7b779d4 net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: 4df0c942d04a67df174195ad8082f6e30e7f71a5 crypto: scomp - fix req->dst buffer overflow + CVE-2023-6356: 2871aa407007f6f531fae181ad252486e022df42 nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length + CVE-2023-6536: 83ccd15717ee2b6143df72df39685f0c832e3451 nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2024-1085: a372f1d01bc11aa85773a02353cd01aaf16dc18e netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-24860: 96860d9ad462db61f4eeb09934235c38eab655c4 Bluetooth: Fix atomicity violation in {min,max}_key_size_set CVE-2024-26588: 4631c2dd69d928bca396f9f58baeddf85e14ced5 LoongArch: BPF: Prevent out-of-bounds memory access @@ -382,18 +452,104 @@ CVE-2024-26597: ee1dc3bf86f2df777038506b139371a9add02534 net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: dba788e25f05209adf2b0175eb1691dc89fb1ba6 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: 7b85554c7c2aee91171e038e4d5442ffa130b282 pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26631: 380540bb06bb1d1b12bdc947d1b8f56cda6b5663 ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: c6350b5cb78e9024c49eaee6fdb914ad2903a5fe block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: 62a1fedeb14c7ac0947ef33fadbabd35ed2400a2 ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 6.1.76: + CVE-2023-52486: 62f2e79cf9f4f47cc9dea9cebdf58d9f7b5695e0 drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: 416b10d2817c94db86829fb92ad43ce7d002c573 serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: 68ed9e33324021e9d6b798e9db00ca3093d2012a mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: 9fec4db7fff54d9b0306a332bab31eac47eeb5f6 media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: 2ab32986a0b9e329eb7f8f04dd57cc127f797c08 dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: 3c5ec66b4b3f6816f3a6161538672e389e537690 bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: 2df39ac8f813860f79782807c3f7acff40b3c551 bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: 33bf23c9940dbd3a22aad7f0cda4c84ed5701847 erofs: fix lz4 inplace decompression + CVE-2023-52498: e1c9d32c98309ae764893a481552d3f99d46cb34 PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52608: 7f95f6997f4fdd17abec3200cae45420a5489350 firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52614: 8a7729cda2dd276d7a3994638038fb89035b6f2c PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: aa8aa16ed9adf1df05bb339d588cf485a011839e hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52627: 137568aa540a9f587c48ff7d4c51cdba08cfe9a4 iio: adc: ad7091r: Allow users to configure device events CVE-2024-1086: 8e34430e33b8a80bc014f3efe29cac76bc30a4b4 netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-23849: 71024928b3f71ce4529426f8692943205c58d30b net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv + CVE-2024-26607: e0f83c234ea7a3dec1f84e5d02caa1c51664a076 drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: 2c939c74ef0b74e99b92e32edc2a59f9b9ca3d5a ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: aa2cc9363926991ba74411e3aa0a0ea82c1ffe32 wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: 82a9bc343ba019665d3ddc1d9a180bf0e0390cf3 netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: b1e0a68a0cd2a83259c444f638b417a8fffc6855 tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: 6994dba06321e3c48fdad0ba796a063d9d82183a net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26620: d6b8d034b576f406af920a7bee81606c027b24c6 s390/vfio-ap: always filter entire AP matrix + CVE-2024-26635: 660c3053d992b68fee893a0e9ec9159228cffdc6 llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: 6d53b813ff8b177f86f149c2f744442681f720e4 llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: d9c54763e5cdbbd3f81868597fe8aca3c96e6387 nbd: always initialize struct msghdr completely + CVE-2024-26644: 6e6bca99e8d88d989a7cde4c064abea552d5219b btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: f4f7e696db0274ff560482cc52eddbf0551d4b7a tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: 28f010dc50df0f7987c04112114fcfa7e0803566 thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26650: 2841631a03652f32b595c563695d0461072e0de4 platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26668: bc6e242bb74e2ae616bfd2b250682b738e781c9b netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26808: af149a46890e8285d1618bd68b8d159bdb87fdb3 netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + +CVEs fixed in 6.1.77: + CVE-2023-52583: 7f2649c94264d00df6b6ac27161e9f4372a3450e ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: 521f28eedd6b14228c46e3b81e3bf9b90c2818d8 spmi: mediatek: Fix UAF on device remove + CVE-2023-52587: 5108a2dc2db5630fb6cd58b8be80a0c134bc310a IB/ipoib: Fix mcast list locking + CVE-2023-52588: 7c972c89457511007dfc933814c06786905e515c f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: bf808f58681cab64c81cd814551814fd34e540fe media: rkisp1: Fix IRQ disable race issue + CVE-2023-52593: 574dcd3126aa2eed75437137843f254b1190dd03 wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: 25c6f49ef59b7a9b80a3f7ab9e95268a1b01a234 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: 739b3ccd9486dff04af95f9a890846d088a84957 wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52597: 0671f42a9c1084db10d68ac347d08dbf6689ecb3 KVM: s390: fix setting of fpc register + CVE-2023-52598: 7a4d6481fbdd661f9e40e95febb95e3dee82bad3 s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: 3537f92cd22c672db97fae6997481e678ad14641 jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: 32e8f2d95528d45828c613417cb2827d866cbdce jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: 70780914cb57e2ba711e0ac1b677aaaa75103603 jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: cab0c265ba182fd266c2aa3c69d7e40640a7f612 jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: e4cbc857d75d4e22a1f75446e7480b1f305d8d60 UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: 42f433785f108893de0dd5260bafb85d7d51db03 FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: abd26515d4b767ba48241eea77b28ce0872aef3e powerpc/lib: Validate size for vector operations + CVE-2023-52607: d482d61025e303a2bef3733a011b6b740215cfa1 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52617: 1d83c85922647758c1f1e4806a4c5c3cf591a20a PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: af7bbdac89739e2e7380387fda598848d3b7010f block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: 75b0f71b26b3ad833c5c0670109c0af6e021e86a pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52621: d6d6fe4bb105595118f12abeed4a7bdd450853f3 bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: 6d2cbf517dcabc093159cf138ad5712c9c7fa954 ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: e8ca3e73301e23e8c0ac0ce2e6bac4545cd776e0 SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52632: b602f098f716723fa5c6c96a486e0afba83b7b94 drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: 4f7dad73df4cdb2b7042103d3922745d040ad025 um: time-travel: fix time corruption + CVE-2023-52635: 31569995fc65007b73a3fff605ec2b3401b435e9 PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2024-26625: 9c333d9891f34cea8af1b229dc754552304c8eee llc: call sock_orphan() at release time + CVE-2024-26627: db6338f45971b4285ea368432a84033690eaf53c scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26640: b383d4ea272fe5795877506dcce5aad1f6330e5e tcp: add sanity checks to rx zerocopy + CVE-2024-26641: d54e4da98bbfa8c257bdca94c49652d81d18a4d8 ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26671: 1d9c777d3e70bdc57dddf7a14a80059d65919e56 blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26673: 0f501dae16b7099e69ee9b0d5c70b8f40fd30e98 netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations CVEs fixed in 6.1.78: + CVE-2023-52630: e5dc63f01e027721c29f82069f7e97e2149fa131 blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: ec1bedd797588fe38fc11cba26d77bb1d9b194c6 fs/ntfs3: Fix an NULL dereference bug CVE-2024-0340: 4675661672e3730597babf97c4e9593a775c8917 vhost: use kzalloc() instead of kmalloc() followed by memset() + CVE-2024-26600: 0430bfcd46657d9116a26cd377f112cbc40826a4 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: 78327acd4cdc4a1601af718b781eece577b6b7d4 ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26660: efdd665ce1a1634b8c1dad5e7f6baaef3e131d0a drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26663: 3d3a5b31b43515b5752ff282702ca546ec3e48b6 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: 9bce69419271eb8b2b3ab467387cb59c99d80deb hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: e37cde7a5716466ff2a76f7f27f0a29b05b9a732 tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26667: fb8bfc6ea3cd8c5ac3d35711d064e2f6646aec17 drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26675: 4e2c4846b2507f6dfc9bea72b7567c2693a82a16 ppp_async: limit MRU to 64K + CVE-2024-26676: e0e09186d8821ad59806115d347ea32efa43ca4b af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26679: 54538752216bf89ee88d47ad07802063a498c299 inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: 466ceebe48cbba3f4506f165fca7111f9eb8bb12 net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: 0193e0660cc6689c794794b471492923cfd7bfbc netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: e42ff0844fe418c7d03a14f9f90e1b91ba119591 net: stmmac: xgmac: fix handling of DPP safety error for DMA channels CVEs fixed in 6.1.79: CVE-2023-52429: c5d83ac2bf6ca668a39ffb1a576899a66153ba19 dm: limit the number of targets and parameter size area CVE-2023-52434: 1ae3c59355dc9882e09c020afe8ffbd895ad0f29 smb: client: fix potential OOBs in smb2_parse_contexts() CVE-2023-52435: 989b0ff35fe5fc9652ee5bafbe8483db6f27b137 net: prevent mss overflow in skb_segment() + CVE-2023-52616: bb44477d4506e52785693a39f03cdc6a2c5e8598 crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52637: 4dd684d4bb3cd5454e0bf6e2a1bdfbd5c9c872ed can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: aedda066d717a0b4335d7e0a00b2e3a61e40afcf can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2024-0841: 2e2c07104b4904aed1389a59b25799b95a85b5b9 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1151: 65ded4eb220695909eee657758e824fc30f0b561 net: openvswitch: limit the number of recursions from action sets CVE-2024-23850: 66b317a2fc45b2ef66527ee3f8fa08fb5beab88d btrfs: do not ASSERT() if the newly created subvolume already got read CVE-2024-23851: c5d83ac2bf6ca668a39ffb1a576899a66153ba19 dm: limit the number of targets and parameter size area @@ -401,6 +557,111 @@ CVE-2024-26583: 7a3ca06d04d589deec81f56229a9a9d62352ce01 tls: fix race between async notify and socket close CVE-2024-26586: 6fd24675188d354b1cad47462969afa2ab09d819 mlxsw: spectrum_acl_tcam: Fix stack corruption CVE-2024-26593: 491528935c9c48bf341d8b40eabc6c4fc5df6f2c i2c: i801: Fix block process call transactions + CVE-2024-26602: 24ec7504a08a67247fbe798d1de995208a8c128a sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: 627339cccdc9166792ecf96bc3c9f711a60ce996 x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: 90e09c016d72b91e76de25f71c7b93d94cc3c769 binder: signal epoll threads of self-work + CVE-2024-26629: e4cf8941664cae2f89f0189c29fe2ce8c6be0d03 nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26685: 6589f0f72f8edd1fa11adce4eedbd3615f2e78ab nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26688: 2e2c07104b4904aed1389a59b25799b95a85b5b9 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: f3f98d7d84b31828004545e29fd7262b9f444139 ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26695: 8731fe001a60581794ed9cf65da8cd304846a6fb crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: 8494ba2c9ea00a54d5b50e69b22c55a8958bce32 nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: 9c9c68d64fd3284f7097ed6ae057c8441f39fcd3 nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: 48a8ccccffbae10c91d31fc872db5c31aba07518 hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26702: 176256ff8abff29335ecff905a09fb49e8dcf513 iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: 185eab30486ba3e7bf8b9c2e049c79a06ffd2bc1 ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: 23027309b099ffc4efca5477009a11dccbdae592 parisc: Fix random data corruption from exception handler + CVE-2024-26707: 56440799fc4621c279df16176f83a995d056023a net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26712: 0c09912dd8387e228afcc5e34ac5d79b1e3a1058 powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26714: 6616d3c4f8284a7b3ef978c916566bd240cea1c7 interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: 57e2e42ccd3cd6183228269715ed032f44536751 usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: d7d7a0e3b6f5adc45f23667cbb919e99093a5b5c HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: 30884a44e0cedc3dfda8c22432f3ba4078ec2d94 dm-crypt, dm-verity: disable tasklets + CVE-2024-26720: 16b1025eaa8fc223ab4273ece20d1c3a4211a95d mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26723: b9357489c46c7a43999964628db8b47d3a1f8672 lan966x: Fix crash when adding interface under a lag + CVE-2024-26726: 02f2b95b00bf57d20320ee168b30fb7f3db8e555 btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: 66b317a2fc45b2ef66527ee3f8fa08fb5beab88d btrfs: do not ASSERT() if the newly created subvolume already got read + +CVEs fixed in 6.1.80: + CVE-2023-52640: 6ed6cdbe88334ca3430c5aee7754dc4597498dfb fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: 50545eb6cd5f7ff852a01fa29b7372524ef948cc fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() + CVE-2024-26590: 47467e04816cb297905c0f09bc2d11ef865942d9 erofs: fix inconsistent per-file compression format + CVE-2024-26733: f119f2325ba70cbfdec701000dcad4d88805d5b0 arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: 8391b9b651cfdf80ab0f1dc4a489f9d67386e197 ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: e8530b170e464017203e3b8c6c49af6e916aece1 afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: addf5e297e6cbf5341f9c07720693ca9ba0057b5 bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26741: 729bc77af438a6e67914c97f6f3d3af8f72c0131 dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: 3c31b18a8dd8b7bf36af1cd723d455853b8f94fe scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: 7f31a244c753aacf40b71d01f03ca6742f81bbbc RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: aee4dcfe17219fe60f2821923adea98549060af8 RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26747: 0158216805ca7e498d07de38840d2732166ae5fa usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: 9a52b694b066f299d8b9800854a8503457a8b64c usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: 2134e9906e17b1e5284300fab547869ebacfd7d9 usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: 786f089086b505372fb3f4f008d57e7845fff0d8 ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: 13cd1daeea848614e585b2c6ecc11ca9c8ab2500 l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: 62f361bfea60c6afc3df09c1ad4152e6507f6f47 crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: 3963f16cc7643b461271989b712329520374ad2a gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26759: 2dedda77d4493f3e92e414b272bfa60f1f51ed95 mm/swap: fix race when skipping swapcache + CVE-2024-26760: f49b20fd0134da84a6bd8108f9e73c077b7d6231 scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: 031217128990d7f0ab8c46db1afb3cf1e075fd29 cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: e08c2a8d27e989f0f5b0888792643027d7e691e6 dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: 18f614369def2a11a52f569fe0f910b199d13487 fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: a262b78dd085dbe9b3c75dc1d9c4cd102b110b53 LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: 52dc9a7a573dbf778625a0efca0fca55489f084b IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26769: 9e6987f8937a7bd7516aa52f25cb7e12c0c92ee8 nvmet-fc: avoid deadlock on delete association path + CVE-2024-26771: 9d508c897153ae8dd79303f7f035f078139f6b49 dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: d639102f4cbd4cb65d1225dba3b9265596aab586 ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: f97e75fa4e12b0aa0224e83fcbda8853ac2adf36 ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: 8b40eb2e716b503f7a4e1090815a17b1341b2150 ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: 2d623c94fbba3554f4446ba6f3c764994e8b0d26 aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: f19361d570c67e7e014896fa2dacd7d721bf0aa8 spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: f329523f6a65c3bbce913ad35473d83a319d5d99 fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: 070398d32c5f3ab0e890374904ad94551c76aec4 fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: eb39bb548bf974acad7bd6780fe11f9e6652d696 wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 6.1.81: + CVE-2023-2176: 88067197e97af3fcb104dd86030f788ec1b32fdb RDMA/core: Refactor rdma_bind_addr + CVE-2023-52620: b7be6c737a179a76901c872f6b4c1d00552d9a1b netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2024-26622: 3bfe04c1273d30b866f4c7c238331ed3b08e5824 tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26687: 585a344af6bcac222608a158fc2830ff02712af5 xen/events: close evtchn after mapping cleanup + CVE-2024-26745: 7eb95e0af5c9c2e6fad50356eaf32d216d0e7bc3 powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26782: d93fd40c62397326046902a2c5cb75af50882a85 mptcp: fix double-free on socket dismantle + CVE-2024-26787: 70af82bb9c897faa25a44e4181f36c60312b71ef mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: 474d521da890b3e3585335fb80a6044cb2553d99 dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: 034e2d70b5c7f578200ad09955aeb2aa65d1164a crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: 237ecf1afe6c22534fa43abdf2bf0b0f52de0aaa dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: f590040ce2b712177306b03c2a63b16f7d48d3c8 btrfs: dev-replace: properly validate device names + CVE-2024-26793: abd32d7f5c0294c1b2454c5a3b13b18446bac627 gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: 8310080799b40fd9f2a8b808c657269678c149af riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26798: 2f91a96b892fab2f2543b4a55740c5bee36b1a6b fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26801: 45085686b9559bfbe3a4f41d3d695a520668f5e1 Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: 17ccd9798fe0beda3db212cfa3ebe373f605cbd6 stmmac: Clear variable when destroying workqueue + CVE-2024-26803: 7985d73961bbb4e726c1be7b9cd26becc7be8325 net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: ab63de24ebea36fe73ac7121738595d704b66d96 net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: 0b27bf4c494d61e5663baa34c3edd7ccebf0ea44 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + +CVEs fixed in 6.1.82: + CVE-2023-28746: 8b5760939db9c49c03b9e19f6c485a8812f48d83 x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set + CVE-2023-52639: 5df3b81a567eb565029563f26f374ae3803a1dfc KVM: s390: vsie: fix race during shadow creation + CVE-2024-26659: 2e3ec80ea7ba58bbb210e83b5a0afefee7c171d3 xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26686: cf4b8c39b9a0bd81c47afc7ef62914a62dd5ec4d fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26700: 01d992088dce3945f70f49f34b0b911c5213c238 drm/amd/display: Fix MST Null Ptr for RV + +CVEs fixed in 6.1.83: + CVE-2023-6270: 74ca3ef68d2f449bc848c0a814cefc487bf755fa aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: 90f089d77e38db1c48629f111f3c8c336be1bc38 wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 567c0411dc3b424fc7bd1e6109726d7ba32d4f73 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: 9c402819620a842cbfe39359a3ddfaac9adc8384 sr9800: Add check for usbnet_get_endpoints + CVE-2024-26809: 5ad233dc731ab64cdc47b84a5c1f78fff6c024af netfilter: nft_set_pipapo: release elements in clone only from destroy path + +CVEs fixed in 6.1.84: + CVE-2023-47233: 0b812f706fd7090be74812101114a0e165b36744 wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach + CVE-2024-23307: 9477cfeb300823461b44223a7d5fac26a31df4fe md/raid5: fix atomicity violation in raid5_cache_count + CVE-2024-24861: 09c1be4d581d3356159abcc5a8a7a6c5f1bf1e77 media: xc4000: Fix atomicity violation in xc4000_get_frequency + CVE-2024-26584: cd1bbca03f3c1d845ce274c0d0a66de8e5929f72 net: tls: handle backlogging of crypto requests + CVE-2024-26585: 196f198ca6fce04ba6ce262f5a0e4d567d7d219d tls: fix race between tx work scheduling and socket close + CVE-2024-26642: 72c1efe3f247a581667b7d368fff3bd9a03cd57a netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26654: 9d66ae0e7bb78b54e1e0525456c6b54e1d132046 ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs Outstanding CVEs: CVE-2005-3660: (unk) @@ -483,7 +744,6 @@ CVE-2023-20941: (unk) CVE-2023-21264: (unk) KVM: arm64: Prevent unconditional donation of unmapped regions from the host CVE-2023-21400: (unk) - CVE-2023-2176: (unk) RDMA/core: Refactor rdma_bind_addr CVE-2023-23005: (unk) mm/demotion: fix NULL vs IS_ERR checking in memory_tier_init CVE-2023-23039: (unk) CVE-2023-26242: (unk) @@ -501,37 +761,63 @@ CVE-2023-4133: (unk) cxgb4: fix use after free bugs caused by circular dependency problem CVE-2023-4134: (unk) Input: cyttsp4_core - change del_timer_sync() to timer_shutdown_sync() CVE-2023-4622: (unk) unix: Convert unix_stream_sendpage() to use MSG_SPLICE_PAGES - CVE-2023-47233: (unk) CVE-2023-52452: (unk) bpf: Fix accesses to uninit stack slots + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic CVE-2023-6039: (unk) net: usb: lan78xx: reorder cleanup operations to avoid UAF bugs CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) CVE-2023-6535: (unk) - CVE-2023-6536: (unk) CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP - CVE-2023-7042: (unk) CVE-2024-0564: (unk) - CVE-2024-0841: (unk) CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) CVE-2024-23848: (unk) CVE-2024-24855: (unk) scsi: lpfc: Fix a possible data race in lpfc_unregister_fcf_rescan() CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) - CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests - CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs - CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format CVE-2024-26595: (unk) mlxsw: spectrum_acl_tcam: Fix NULL pointer dereference in error path CVE-2024-26596: (unk) net: dsa: fix netdev_priv() dereference before check on non-DSA netdevice events + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks
diff --git a/data/6.2/6.2_CVEs.txt b/data/6.2/6.2_CVEs.txt index 5110c8d..8f26a52 100644 --- a/data/6.2/6.2_CVEs.txt +++ b/data/6.2/6.2_CVEs.txt
@@ -80,6 +80,7 @@ CVE-2022-45887: Fix not seen in stream CVE-2022-45919: Fix not seen in stream CVE-2022-48425: Fix not seen in stream +CVE-2022-48628: Fix not seen in stream CVE-2023-0160: Fixed with 6.2.15 CVE-2023-0459: Fixed with 6.2.1 CVE-2023-1032: Fixed with 6.2.3 @@ -128,6 +129,7 @@ CVE-2023-2640: Fix unknown CVE-2023-26545: Fixed with 6.2 CVE-2023-28466: Fixed with 6.2.7 +CVE-2023-28746: Fix not seen in stream CVE-2023-28866: Fixed with 6.2.9 CVE-2023-2898: Fix not seen in stream CVE-2023-2985: Fixed with 6.2.3 @@ -237,7 +239,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -278,6 +280,131 @@ CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fixed with 6.2.15 +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52505: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52512: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52526: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52562: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52570: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5345: Fix not seen in stream CVE-2023-5633: Fix not seen in stream CVE-2023-5717: Fix not seen in stream @@ -287,11 +414,11 @@ CVE-2023-6176: Fix not seen in stream CVE-2023-6238: Fix unknown CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6531: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -301,7 +428,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2023-7192: Fixed with 6.2.5 CVE-2024-0340: Fix not seen in stream CVE-2024-0443: Fix not seen in stream @@ -313,17 +440,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fixed with 6.2.16 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -333,7 +461,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -344,7 +472,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream @@ -357,3 +484,152 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26620: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26629: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26638: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26667: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26681: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26695: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26708: Fix not seen in stream +CVE-2024-26711: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26723: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26741: Fix not seen in stream +CVE-2024-26742: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26760: Fix not seen in stream +CVE-2024-26761: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fixed with 6.2.3 +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/6.2/6.2_security.txt b/data/6.2/6.2_security.txt index 3b37189..d6665b2 100644 --- a/data/6.2/6.2_security.txt +++ b/data/6.2/6.2_security.txt
@@ -23,6 +23,7 @@ CVE-2023-3355: abadeef9a82f86e6668759259adbcf8be6f44a9b drm/msm/gem: Add check for kmalloc CVE-2023-39191: 720d2504791a93becde81c335abcea2f42d066a7 bpf: Fix state pruning for STACK_DYNPTR stack slots CVE-2023-45863: e6ca1549afb2b495e61a8fb53ae942193ef823e0 kobject: Fix slab-out-of-bounds in fill_kobj_path() + CVE-2024-26766: 0ef9594936d1f078e8599a1cf683b052df2bec00 IB/hfi1: Fix sdma.h tx->num_descs off-by-one error CVEs fixed in 6.2.5: CVE-2023-1829: 372ae77cf11d11fb118cbe2d37def9dd5f826abd net/sched: Retire tcindex classifier @@ -82,6 +83,7 @@ CVE-2023-35826: a858e35c62966761cc2bed2e4123cf68d7df546c media: cedrus: fix use after free bug in cedrus_remove due to race condition CVE-2023-35828: 1029639643c326396ce8e07a9f52ce7165c021c3 usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition CVE-2023-35829: 26f55569eeb045db9fceda0a5523521c2e76d8aa media: rkvdec: fix use after free bug in rkvdec_remove + CVE-2023-52474: c76cb8f4bdf26d04cfa5485a93ce297dba5e6a80 IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests CVEs fixed in 6.2.16: CVE-2023-32247: 750a2d772e9d9ff377fd32e3b6797bf2cd847a7a ksmbd: destroy expired sessions @@ -173,6 +175,7 @@ CVE-2022-45887: (unk) media: ttusb-dec: fix memory leak in ttusb_dec_exit_dvb() CVE-2022-45919: (unk) media: dvb-core: Fix use-after-free due to race condition at dvb_ca_en50221 CVE-2022-48425: (unk) fs/ntfs3: Validate MFT flags before replaying logs + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-1192: (unk) fs/ntfs3: Validate MFT flags before replaying logs CVE-2023-1193: (unk) ksmbd: delete asynchronous work from list CVE-2023-1194: (unk) ksmbd: fix out-of-bound read in parse_lease_state() @@ -191,6 +194,7 @@ CVE-2023-25775: (unk) RDMA/irdma: Prevent zero-length STAG registration CVE-2023-26242: (unk) CVE-2023-2640: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-3090: (unk) ipvlan:Fix out-of-bounds caused by unclear skb->cb CVE-2023-31081: (unk) @@ -267,7 +271,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -308,6 +312,130 @@ CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: (unk) phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52512: (unk) pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52526: (unk) erofs: fix memory leak of LZMA global compressed deduplication + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52562: (unk) mm/slab_common: fix slab_caches list corruption after kmem_cache_destroy() + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52570: (unk) vfio/mdev: Fix a null-ptr-deref bug for mdev_unregister_parent() + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5345: (unk) fs/smb/client: Reset password pointer to NULL CVE-2023-5633: (unk) drm/vmwgfx: Keep a gem reference to user bos in surfaces CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads @@ -317,11 +445,11 @@ CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6238: (unk) CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6531: (unk) io_uring/af_unix: disable sending io_uring over sockets CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -331,7 +459,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0443: (unk) blk-cgroup: Flush stats before releasing blkcg_gq CVE-2024-0564: (unk) @@ -341,17 +469,18 @@ CVE-2024-0639: (unk) sctp: fix potential deadlock on &net->sctp.addr_wq_lock CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -361,7 +490,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -372,7 +501,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format @@ -385,3 +513,151 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26620: (unk) s390/vfio-ap: always filter entire AP matrix + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26629: (unk) nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: (unk) nbd: always initialize struct msghdr completely + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26667: (unk) drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: (unk) netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26695: (unk) crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26708: (unk) mptcp: really cope with fastopen race + CVE-2024-26711: (unk) iio: adc: ad4130: zero-initialize clock init data + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26723: (unk) lan966x: Fix crash when adding interface under a lag + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26741: (unk) dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: (unk) scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26760: (unk) scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: (unk) cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/6.3/6.3_CVEs.txt b/data/6.3/6.3_CVEs.txt index 3734844..2caa127 100644 --- a/data/6.3/6.3_CVEs.txt +++ b/data/6.3/6.3_CVEs.txt
@@ -78,6 +78,7 @@ CVE-2022-45887: Fixed with 6.3.7 CVE-2022-45919: Fixed with 6.3.7 CVE-2022-48425: Fixed with 6.3.4 +CVE-2022-48628: Fix not seen in stream CVE-2023-0160: Fixed with 6.3.2 CVE-2023-1192: Fixed with 6.3.4 CVE-2023-1194: Fixed with 6.3.8 @@ -102,6 +103,7 @@ CVE-2023-2598: Fixed with 6.3.2 CVE-2023-26242: Fix unknown CVE-2023-2640: Fix unknown +CVE-2023-28746: Fix not seen in stream CVE-2023-2898: Fix not seen in stream CVE-2023-3090: Fixed with 6.3.4 CVE-2023-31081: Fix unknown @@ -200,7 +202,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -241,6 +243,133 @@ CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52474: Fixed with 6.3.2 +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52490: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52495: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52505: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52512: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52526: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52562: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52570: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5345: Fix not seen in stream CVE-2023-5633: Fix not seen in stream CVE-2023-5717: Fix not seen in stream @@ -250,11 +379,11 @@ CVE-2023-6176: Fix not seen in stream CVE-2023-6238: Fix unknown CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6531: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -264,7 +393,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2024-0340: Fix not seen in stream CVE-2024-0443: Fixed with 6.3.9 CVE-2024-0564: Fix unknown @@ -275,17 +404,18 @@ CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream CVE-2024-0775: Fixed with 6.3.3 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fix not seen in stream +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -295,7 +425,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -306,7 +436,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream @@ -319,3 +448,155 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26620: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26629: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26638: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26649: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26667: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26681: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26692: Fix not seen in stream +CVE-2024-26695: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26708: Fix not seen in stream +CVE-2024-26711: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26723: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26734: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26741: Fix not seen in stream +CVE-2024-26742: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26760: Fix not seen in stream +CVE-2024-26761: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/6.3/6.3_security.txt b/data/6.3/6.3_security.txt index 39883a2..cc573cd 100644 --- a/data/6.3/6.3_security.txt +++ b/data/6.3/6.3_security.txt
@@ -33,6 +33,7 @@ CVE-2023-35826: 565c863bd982584aa4393f7bdb345dbccb3ad488 media: cedrus: fix use after free bug in cedrus_remove due to race condition CVE-2023-35828: 231598b40a070a6bf780c0df1ff5ae3e57102900 usb: gadget: udc: renesas_usb3: Fix use after free bug in renesas_usb3_remove due to race condition CVE-2023-35829: 2115e94838adc9d1e7b75043c9f26abcc910f6fb media: rkvdec: fix use after free bug in rkvdec_remove + CVE-2023-52474: 7e6010f79b58f45b204cf18aa58f4b73c3f30adc IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests CVEs fixed in 6.3.3: CVE-2023-34256: be7b6374a2ee8a59c1ff5addcbe25ebc1b4efd9f ext4: avoid a potential slab-out-of-bounds in ext4_group_desc_csum @@ -164,6 +165,7 @@ CVE-2022-4543: (unk) CVE-2022-45884: (unk) CVE-2022-45885: (unk) + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-1206: (unk) tcp: Reduce chance of collisions in inet6_hashfn(). CVE-2023-1476: (unk) CVE-2023-20569: (unk) x86/bugs: Increase the x86 bugs vector size to two u32s @@ -175,6 +177,7 @@ CVE-2023-25775: (unk) RDMA/irdma: Prevent zero-length STAG registration CVE-2023-26242: (unk) CVE-2023-2640: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-2898: (unk) f2fs: fix to avoid NULL pointer dereference f2fs_write_end_io() CVE-2023-31081: (unk) CVE-2023-31082: (unk) @@ -230,7 +233,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -271,6 +274,132 @@ CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52490: (unk) mm: migrate: fix getting incorrect page mapping during page migration + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52495: (unk) soc: qcom: pmic_glink_altmode: fix port sanity check + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: (unk) phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52512: (unk) pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52526: (unk) erofs: fix memory leak of LZMA global compressed deduplication + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52562: (unk) mm/slab_common: fix slab_caches list corruption after kmem_cache_destroy() + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52570: (unk) vfio/mdev: Fix a null-ptr-deref bug for mdev_unregister_parent() + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52620: (unk) netfilter: nf_tables: disallow timeout for anonymous sets + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5345: (unk) fs/smb/client: Reset password pointer to NULL CVE-2023-5633: (unk) drm/vmwgfx: Keep a gem reference to user bos in surfaces CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads @@ -280,11 +409,11 @@ CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6238: (unk) CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6531: (unk) io_uring/af_unix: disable sending io_uring over sockets CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6546: (unk) tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() @@ -294,7 +423,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2024-0340: (unk) vhost: use kzalloc() instead of kmalloc() followed by memset() CVE-2024-0564: (unk) CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() @@ -303,17 +432,18 @@ CVE-2024-0639: (unk) sctp: fix potential deadlock on &net->sctp.addr_wq_lock CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-1312: (unk) mm: lock_vma_under_rcu() must check vma->anon_vma under vma lock CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23196: (unk) ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -323,7 +453,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -334,7 +464,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format @@ -347,3 +476,155 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26620: (unk) s390/vfio-ap: always filter entire AP matrix + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26629: (unk) nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: (unk) nbd: always initialize struct msghdr completely + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26649: (unk) drm/amdgpu: Fix the null pointer when load rlc firmware + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26667: (unk) drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: (unk) netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26692: (unk) smb: Fix regression in writes when non-standard maximum write size negotiated + CVE-2024-26695: (unk) crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26708: (unk) mptcp: really cope with fastopen race + CVE-2024-26711: (unk) iio: adc: ad4130: zero-initialize clock init data + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26723: (unk) lan966x: Fix crash when adding interface under a lag + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26734: (unk) devlink: fix possible use-after-free and memory leaks in devlink_init() + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26741: (unk) dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: (unk) scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26760: (unk) scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: (unk) cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/6.4/6.4_CVEs.txt b/data/6.4/6.4_CVEs.txt index c90e691..526b8a2 100644 --- a/data/6.4/6.4_CVEs.txt +++ b/data/6.4/6.4_CVEs.txt
@@ -71,6 +71,7 @@ CVE-2022-4543: Fix unknown CVE-2022-45884: Fix unknown CVE-2022-45885: Fix unknown +CVE-2022-48628: Fix not seen in stream CVE-2023-1206: Fixed with 6.4.8 CVE-2023-1476: Fix unknown CVE-2023-20569: Fixed with 6.4.9 @@ -82,6 +83,7 @@ CVE-2023-25775: Fixed with 6.4.16 CVE-2023-26242: Fix unknown CVE-2023-2640: Fix unknown +CVE-2023-28746: Fix not seen in stream CVE-2023-2898: Fixed with 6.4.4 CVE-2023-31081: Fix unknown CVE-2023-31082: Fix unknown @@ -148,7 +150,7 @@ CVE-2023-46813: Fix not seen in stream CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fix not seen in stream -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fix not seen in stream CVE-2023-4921: Fix not seen in stream CVE-2023-50431: Fix not seen in stream @@ -189,6 +191,136 @@ CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52468: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52473: Fix not seen in stream +CVE-2023-52475: Fix not seen in stream +CVE-2023-52476: Fix not seen in stream +CVE-2023-52477: Fix not seen in stream +CVE-2023-52478: Fix not seen in stream +CVE-2023-52479: Fix not seen in stream +CVE-2023-52480: Fix not seen in stream +CVE-2023-52481: Fix not seen in stream +CVE-2023-52482: Fix not seen in stream +CVE-2023-52483: Fix not seen in stream +CVE-2023-52484: Fix not seen in stream +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52490: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52495: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fix not seen in stream +CVE-2023-52500: Fix not seen in stream +CVE-2023-52501: Fix not seen in stream +CVE-2023-52502: Fix not seen in stream +CVE-2023-52503: Fix not seen in stream +CVE-2023-52504: Fix not seen in stream +CVE-2023-52505: Fix not seen in stream +CVE-2023-52506: Fix not seen in stream +CVE-2023-52507: Fix not seen in stream +CVE-2023-52508: Fix not seen in stream +CVE-2023-52509: Fix not seen in stream +CVE-2023-52510: Fix not seen in stream +CVE-2023-52511: Fix not seen in stream +CVE-2023-52512: Fix not seen in stream +CVE-2023-52513: Fix not seen in stream +CVE-2023-52515: Fix not seen in stream +CVE-2023-52516: Fix not seen in stream +CVE-2023-52517: Fix not seen in stream +CVE-2023-52518: Fix not seen in stream +CVE-2023-52519: Fix not seen in stream +CVE-2023-52520: Fix not seen in stream +CVE-2023-52522: Fix not seen in stream +CVE-2023-52523: Fix not seen in stream +CVE-2023-52526: Fix not seen in stream +CVE-2023-52527: Fix not seen in stream +CVE-2023-52528: Fix not seen in stream +CVE-2023-52529: Fix not seen in stream +CVE-2023-52530: Fix not seen in stream +CVE-2023-52531: Fix not seen in stream +CVE-2023-52532: Fix not seen in stream +CVE-2023-52559: Fix not seen in stream +CVE-2023-52560: Fix not seen in stream +CVE-2023-52561: Fix not seen in stream +CVE-2023-52562: Fix not seen in stream +CVE-2023-52563: Fix not seen in stream +CVE-2023-52565: Fix not seen in stream +CVE-2023-52566: Fix not seen in stream +CVE-2023-52567: Fix not seen in stream +CVE-2023-52568: Fix not seen in stream +CVE-2023-52569: Fix not seen in stream +CVE-2023-52570: Fix not seen in stream +CVE-2023-52571: Fix not seen in stream +CVE-2023-52572: Fix not seen in stream +CVE-2023-52573: Fix not seen in stream +CVE-2023-52574: Fix not seen in stream +CVE-2023-52576: Fix not seen in stream +CVE-2023-52578: Fix not seen in stream +CVE-2023-52580: Fix not seen in stream +CVE-2023-52582: Fix not seen in stream +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52611: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52620: Fixed with 6.4 +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fix not seen in stream +CVE-2023-52629: Fix not seen in stream +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5345: Fix not seen in stream CVE-2023-5633: Fix not seen in stream CVE-2023-5717: Fix not seen in stream @@ -198,11 +330,11 @@ CVE-2023-6176: Fix not seen in stream CVE-2023-6238: Fix unknown CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6531: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6546: Fixed with 6.4.12 CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream @@ -212,7 +344,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2024-0564: Fix unknown CVE-2024-0565: Fix not seen in stream CVE-2024-0582: Fix not seen in stream @@ -221,17 +353,18 @@ CVE-2024-0639: Fixed with 6.4.4 CVE-2024-0641: Fix not seen in stream CVE-2024-0646: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-1312: Fixed with 6.4.10 CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23196: Fixed with 6.4.12 +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -241,7 +374,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -252,7 +385,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream @@ -265,3 +397,163 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26616: Fix not seen in stream +CVE-2024-26620: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26629: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26638: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26649: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26652: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26667: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26674: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26681: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26692: Fix not seen in stream +CVE-2024-26693: Fix not seen in stream +CVE-2024-26694: Fix not seen in stream +CVE-2024-26695: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26708: Fix not seen in stream +CVE-2024-26711: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26723: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26731: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26734: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26741: Fix not seen in stream +CVE-2024-26742: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26746: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26760: Fix not seen in stream +CVE-2024-26761: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26807: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/6.4/6.4_security.txt b/data/6.4/6.4_security.txt index 8b3d9a4..a646b51 100644 --- a/data/6.4/6.4_security.txt +++ b/data/6.4/6.4_security.txt
@@ -5,6 +5,7 @@ CVE-2023-3865: 5fe7f7b78290638806211046a99f031ff26164e1 ksmbd: fix out-of-bound read in smb2_write CVE-2023-3866: 5005bcb4219156f1bf7587b185080ec1da08518e ksmbd: validate session id and tree id in the compound request CVE-2023-4610: 71c3ad65fabec9620d3f548b2da948c79c7ad9d5 Revert "mm: vmscan: make global slab shrink lockless" + CVE-2023-52620: e26d3009efda338f19016df4175f354a9bd0a4ab netfilter: nf_tables: disallow timeout for anonymous sets CVEs fixed in 6.4.1: CVE-2023-3269: b11fa3d22ac0fbc0bfaa740b3b3669d43ec48503 mm: introduce new 'lock_mm_and_find_vma()' page fault helper @@ -71,6 +72,7 @@ CVE-2023-4569: 83ff16e449a675e215125d97a2c4a7f097d291d0 netfilter: nf_tables: deactivate catchall elements in next generation CVE-2023-51042: f5db29ce2502c4fc8a33ed7989950ba43875e322 drm/amdgpu: Fix potential fence use-after-free v2 CVE-2023-6546: f40e70d7f40bd44ecf6f35b946a899e59744fbe1 tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux + CVE-2024-23196: b32e40379e5b2814de0c4bc199edc2d82317dc07 ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() CVEs fixed in 6.4.13: CVE-2022-36402: 5574b0cbb493f3b3cbb2c381e8e1dac52a70213f drm/vmwgfx: Fix shader stage validation @@ -162,12 +164,14 @@ CVE-2022-4543: (unk) CVE-2022-45884: (unk) CVE-2022-45885: (unk) + CVE-2022-48628: (unk) ceph: drop messages from MDS when unmounting CVE-2023-1476: (unk) CVE-2023-20941: (unk) CVE-2023-21400: (unk) CVE-2023-23039: (unk) CVE-2023-26242: (unk) CVE-2023-2640: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-31081: (unk) CVE-2023-31082: (unk) CVE-2023-31083: (unk) Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO @@ -187,7 +191,7 @@ CVE-2023-46813: (unk) x86/sev: Check for user-space IOIO pointing to kernel space CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags CVE-2023-46862: (unk) io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-4881: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: (unk) net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() @@ -223,6 +227,135 @@ CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52468: (unk) class: fix use-after-free in class_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52473: (unk) thermal: core: Fix NULL pointer dereference in zone registration error path + CVE-2023-52475: (unk) Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: (unk) perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: (unk) usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: (unk) HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52479: (unk) ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: (unk) ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: (unk) arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52482: (unk) x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52483: (unk) mctp: perform route lookups under a RCU read-side lock + CVE-2023-52484: (unk) iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52490: (unk) mm: migrate: fix getting incorrect page mapping during page migration + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52495: (unk) soc: qcom: pmic_glink_altmode: fix port sanity check + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52499: (unk) powerpc/47x: Fix 47x syscall return crash + CVE-2023-52500: (unk) scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: (unk) ring-buffer: Do not attempt to read past "commit" + CVE-2023-52502: (unk) net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: (unk) tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: (unk) x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: (unk) phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52506: (unk) LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52507: (unk) nfc: nci: assert requested protocol is valid + CVE-2023-52508: (unk) nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52509: (unk) ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: (unk) ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52511: (unk) spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52512: (unk) pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52513: (unk) RDMA/siw: Fix connection failure handling + CVE-2023-52515: (unk) RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52516: (unk) dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: (unk) spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52518: (unk) Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: (unk) HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52520: (unk) platform/x86: think-lmi: Fix reference leak + CVE-2023-52522: (unk) net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: (unk) bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52526: (unk) erofs: fix memory leak of LZMA global compressed deduplication + CVE-2023-52527: (unk) ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: (unk) net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: (unk) HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: (unk) wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: (unk) wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: (unk) net: mana: Fix TX CQE error handling + CVE-2023-52559: (unk) iommu/vt-d: Avoid memory allocation in iommu_suspend() + CVE-2023-52560: (unk) mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: (unk) arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52562: (unk) mm/slab_common: fix slab_caches list corruption after kmem_cache_destroy() + CVE-2023-52563: (unk) drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52565: (unk) media: uvcvideo: Fix OOB read + CVE-2023-52566: (unk) nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52567: (unk) serial: 8250_port: Check IRQ data before use + CVE-2023-52568: (unk) x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: (unk) btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52570: (unk) vfio/mdev: Fix a null-ptr-deref bug for mdev_unregister_parent() + CVE-2023-52571: (unk) power: supply: rk817: Fix node refcount leak + CVE-2023-52572: (unk) cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: (unk) net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: (unk) team: fix null-ptr-deref when team device type is changed + CVE-2023-52576: (unk) x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: (unk) net: bridge: use DEV_STATS_INC() + CVE-2023-52580: (unk) net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52582: (unk) netfs: Only call folio_start_fscache() one time for each folio + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52611: (unk) wifi: rtw88: sdio: Honor the host max_req_size in the RX path + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52628: (unk) netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: (unk) sh: push-switch: Reorder cleanup operations to avoid use-after-free bug + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-5345: (unk) fs/smb/client: Reset password pointer to NULL CVE-2023-5633: (unk) drm/vmwgfx: Keep a gem reference to user bos in surfaces CVE-2023-5717: (unk) perf: Disallow mis-matched inherited group reads @@ -231,11 +364,11 @@ CVE-2023-6176: (unk) net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVE-2023-6238: (unk) CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6531: (unk) io_uring/af_unix: disable sending io_uring over sockets CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() @@ -244,7 +377,7 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2024-0564: (unk) CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() CVE-2024-0582: (unk) io_uring/kbuf: defer release of mapped buffer rings @@ -252,16 +385,16 @@ CVE-2024-0607: (unk) netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval() CVE-2024-0641: (unk) tipc: fix a potential deadlock on &tx->lock CVE-2024-0646: (unk) net: tls, update curr on splice as well - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -271,7 +404,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -282,7 +415,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format @@ -295,3 +427,163 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26616: (unk) btrfs: scrub: avoid use-after-free when chunk length is not 64K aligned + CVE-2024-26620: (unk) s390/vfio-ap: always filter entire AP matrix + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26629: (unk) nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: (unk) nbd: always initialize struct msghdr completely + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26649: (unk) drm/amdgpu: Fix the null pointer when load rlc firmware + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26652: (unk) net: pds_core: Fix possible double free in error handling path + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26667: (unk) drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26674: (unk) x86/lib: Revert to _ASM_EXTABLE_UA() for {get,put}_user() fixups + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: (unk) netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26692: (unk) smb: Fix regression in writes when non-standard maximum write size negotiated + CVE-2024-26693: (unk) wifi: iwlwifi: mvm: fix a crash when we run out of stations + CVE-2024-26694: (unk) wifi: iwlwifi: fix double-free bug + CVE-2024-26695: (unk) crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26708: (unk) mptcp: really cope with fastopen race + CVE-2024-26711: (unk) iio: adc: ad4130: zero-initialize clock init data + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26723: (unk) lan966x: Fix crash when adding interface under a lag + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26731: (unk) bpf, sockmap: Fix NULL pointer dereference in sk_psock_verdict_data_ready() + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26734: (unk) devlink: fix possible use-after-free and memory leaks in devlink_init() + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26741: (unk) dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: (unk) scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26746: (unk) dmaengine: idxd: Ensure safe user copy of completion record + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26760: (unk) scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: (unk) cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26807: (unk) spi: cadence-qspi: fix pointer reference in runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/6.5/6.5_CVEs.txt b/data/6.5/6.5_CVEs.txt index 85f0ec8..6063973 100644 --- a/data/6.5/6.5_CVEs.txt +++ b/data/6.5/6.5_CVEs.txt
@@ -70,6 +70,7 @@ CVE-2022-4543: Fix unknown CVE-2022-45884: Fix unknown CVE-2022-45885: Fix unknown +CVE-2022-48628: Fixed with 6.5.6 CVE-2023-1476: Fix unknown CVE-2023-20941: Fix unknown CVE-2023-21400: Fix unknown @@ -77,6 +78,7 @@ CVE-2023-25775: Fixed with 6.5.3 CVE-2023-26242: Fix unknown CVE-2023-2640: Fix unknown +CVE-2023-28746: Fix not seen in stream CVE-2023-31081: Fix unknown CVE-2023-31082: Fix unknown CVE-2023-31083: Fix not seen in stream @@ -103,7 +105,7 @@ CVE-2023-46813: Fixed with 6.5.9 CVE-2023-46838: Fix not seen in stream CVE-2023-46862: Fixed with 6.5.10 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fix not seen in stream CVE-2023-4881: Fixed with 6.5.4 CVE-2023-4921: Fixed with 6.5.4 CVE-2023-50431: Fix not seen in stream @@ -141,6 +143,142 @@ CVE-2023-52462: Fix not seen in stream CVE-2023-52463: Fix not seen in stream CVE-2023-52464: Fix not seen in stream +CVE-2023-52465: Fix not seen in stream +CVE-2023-52467: Fix not seen in stream +CVE-2023-52468: Fix not seen in stream +CVE-2023-52469: Fix not seen in stream +CVE-2023-52470: Fix not seen in stream +CVE-2023-52472: Fix not seen in stream +CVE-2023-52473: Fix not seen in stream +CVE-2023-52475: Fixed with 6.5.8 +CVE-2023-52476: Fixed with 6.5.8 +CVE-2023-52477: Fixed with 6.5.8 +CVE-2023-52478: Fixed with 6.5.8 +CVE-2023-52479: Fixed with 6.5.7 +CVE-2023-52480: Fixed with 6.5.7 +CVE-2023-52481: Fixed with 6.5.7 +CVE-2023-52482: Fixed with 6.5.6 +CVE-2023-52483: Fixed with 6.5.8 +CVE-2023-52484: Fixed with 6.5.6 +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fix not seen in stream +CVE-2023-52487: Fix not seen in stream +CVE-2023-52488: Fix not seen in stream +CVE-2023-52489: Fix not seen in stream +CVE-2023-52490: Fix not seen in stream +CVE-2023-52491: Fix not seen in stream +CVE-2023-52492: Fix not seen in stream +CVE-2023-52493: Fix not seen in stream +CVE-2023-52494: Fix not seen in stream +CVE-2023-52495: Fix not seen in stream +CVE-2023-52497: Fix not seen in stream +CVE-2023-52498: Fix not seen in stream +CVE-2023-52499: Fixed with 6.5.8 +CVE-2023-52500: Fixed with 6.5.6 +CVE-2023-52501: Fixed with 6.5.6 +CVE-2023-52502: Fixed with 6.5.8 +CVE-2023-52503: Fixed with 6.5.8 +CVE-2023-52504: Fixed with 6.5.8 +CVE-2023-52505: Fixed with 6.5.8 +CVE-2023-52506: Fixed with 6.5.6 +CVE-2023-52507: Fixed with 6.5.8 +CVE-2023-52508: Fixed with 6.5.6 +CVE-2023-52509: Fixed with 6.5.8 +CVE-2023-52510: Fixed with 6.5.8 +CVE-2023-52511: Fixed with 6.5.6 +CVE-2023-52512: Fixed with 6.5.8 +CVE-2023-52513: Fixed with 6.5.7 +CVE-2023-52515: Fixed with 6.5.7 +CVE-2023-52516: Fixed with 6.5.6 +CVE-2023-52517: Fixed with 6.5.6 +CVE-2023-52518: Fixed with 6.5.7 +CVE-2023-52519: Fixed with 6.5.7 +CVE-2023-52520: Fixed with 6.5.8 +CVE-2023-52522: Fixed with 6.5.7 +CVE-2023-52523: Fixed with 6.5.7 +CVE-2023-52524: Fixed with 6.5.7 +CVE-2023-52526: Fixed with 6.5.7 +CVE-2023-52527: Fixed with 6.5.7 +CVE-2023-52528: Fixed with 6.5.7 +CVE-2023-52529: Fixed with 6.5.7 +CVE-2023-52530: Fixed with 6.5.7 +CVE-2023-52531: Fixed with 6.5.7 +CVE-2023-52532: Fixed with 6.5.7 +CVE-2023-52559: Fixed with 6.5.7 +CVE-2023-52560: Fixed with 6.5.6 +CVE-2023-52561: Fixed with 6.5.6 +CVE-2023-52562: Fixed with 6.5.6 +CVE-2023-52563: Fixed with 6.5.6 +CVE-2023-52564: Fixed with 6.5.6 +CVE-2023-52565: Fixed with 6.5.6 +CVE-2023-52566: Fixed with 6.5.6 +CVE-2023-52567: Fixed with 6.5.6 +CVE-2023-52568: Fixed with 6.5.6 +CVE-2023-52569: Fixed with 6.5.6 +CVE-2023-52570: Fixed with 6.5.6 +CVE-2023-52571: Fixed with 6.5.6 +CVE-2023-52572: Fixed with 6.5.6 +CVE-2023-52573: Fixed with 6.5.6 +CVE-2023-52574: Fixed with 6.5.6 +CVE-2023-52575: Fixed with 6.5.6 +CVE-2023-52576: Fixed with 6.5.6 +CVE-2023-52578: Fixed with 6.5.6 +CVE-2023-52580: Fixed with 6.5.6 +CVE-2023-52581: Fixed with 6.5.6 +CVE-2023-52582: Fixed with 6.5.6 +CVE-2023-52583: Fix not seen in stream +CVE-2023-52584: Fix not seen in stream +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fix not seen in stream +CVE-2023-52588: Fix not seen in stream +CVE-2023-52589: Fix not seen in stream +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fix not seen in stream +CVE-2023-52593: Fix not seen in stream +CVE-2023-52594: Fix not seen in stream +CVE-2023-52595: Fix not seen in stream +CVE-2023-52596: Fix not seen in stream +CVE-2023-52597: Fix not seen in stream +CVE-2023-52598: Fix not seen in stream +CVE-2023-52599: Fix not seen in stream +CVE-2023-52600: Fix not seen in stream +CVE-2023-52601: Fix not seen in stream +CVE-2023-52602: Fix not seen in stream +CVE-2023-52603: Fix not seen in stream +CVE-2023-52604: Fix not seen in stream +CVE-2023-52606: Fix not seen in stream +CVE-2023-52607: Fix not seen in stream +CVE-2023-52608: Fix not seen in stream +CVE-2023-52609: Fix not seen in stream +CVE-2023-52610: Fix not seen in stream +CVE-2023-52611: Fix not seen in stream +CVE-2023-52612: Fix not seen in stream +CVE-2023-52614: Fix not seen in stream +CVE-2023-52615: Fix not seen in stream +CVE-2023-52616: Fix not seen in stream +CVE-2023-52617: Fix not seen in stream +CVE-2023-52618: Fix not seen in stream +CVE-2023-52619: Fix not seen in stream +CVE-2023-52621: Fix not seen in stream +CVE-2023-52622: Fix not seen in stream +CVE-2023-52623: Fix not seen in stream +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fix not seen in stream +CVE-2023-52628: Fixed with 6.5.4 +CVE-2023-52629: Fixed with 6.5.4 +CVE-2023-52630: Fix not seen in stream +CVE-2023-52631: Fix not seen in stream +CVE-2023-52632: Fix not seen in stream +CVE-2023-52633: Fix not seen in stream +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fix not seen in stream +CVE-2023-52637: Fix not seen in stream +CVE-2023-52638: Fix not seen in stream +CVE-2023-52639: Fix not seen in stream +CVE-2023-52640: Fix not seen in stream +CVE-2023-52641: Fix not seen in stream CVE-2023-5345: Fixed with 6.5.6 CVE-2023-5633: Fixed with 6.5.8 CVE-2023-5717: Fixed with 6.5.9 @@ -149,11 +287,11 @@ CVE-2023-6176: Fixed with 6.5.4 CVE-2023-6238: Fix unknown CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fix not seen in stream +CVE-2023-6356: Fix not seen in stream CVE-2023-6531: Fix not seen in stream CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fix not seen in stream CVE-2023-6560: Fix not seen in stream CVE-2023-6606: Fix not seen in stream CVE-2023-6610: Fix not seen in stream @@ -162,7 +300,7 @@ CVE-2023-6915: Fix not seen in stream CVE-2023-6931: Fix not seen in stream CVE-2023-6932: Fix not seen in stream -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fix not seen in stream CVE-2024-0193: Fix not seen in stream CVE-2024-0564: Fix unknown CVE-2024-0565: Fix not seen in stream @@ -171,16 +309,16 @@ CVE-2024-0607: Fixed with 6.5.13 CVE-2024-0641: Fixed with 6.5.7 CVE-2024-0646: Fix not seen in stream -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fix not seen in stream CVE-2024-1085: Fix not seen in stream CVE-2024-1086: Fix not seen in stream CVE-2024-1151: Fix not seen in stream CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fix not seen in stream CVE-2024-22386: Fix unknown CVE-2024-22705: Fix not seen in stream -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23307: Fix not seen in stream CVE-2024-23848: Fix unknown CVE-2024-23849: Fix not seen in stream CVE-2024-23850: Fix not seen in stream @@ -189,7 +327,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fix not seen in stream -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fix not seen in stream CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -201,7 +339,6 @@ CVE-2024-26584: Fix not seen in stream CVE-2024-26585: Fix not seen in stream CVE-2024-26586: Fix not seen in stream -CVE-2024-26587: Fix not seen in stream CVE-2024-26588: Fix not seen in stream CVE-2024-26589: Fix not seen in stream CVE-2024-26590: Fix not seen in stream @@ -214,3 +351,169 @@ CVE-2024-26597: Fix not seen in stream CVE-2024-26598: Fix not seen in stream CVE-2024-26599: Fix not seen in stream +CVE-2024-26600: Fix not seen in stream +CVE-2024-26601: Fix not seen in stream +CVE-2024-26602: Fix not seen in stream +CVE-2024-26603: Fix not seen in stream +CVE-2024-26606: Fix not seen in stream +CVE-2024-26607: Fix not seen in stream +CVE-2024-26608: Fix not seen in stream +CVE-2024-26610: Fix not seen in stream +CVE-2024-26612: Fix not seen in stream +CVE-2024-26614: Fix not seen in stream +CVE-2024-26615: Fix not seen in stream +CVE-2024-26616: Fix not seen in stream +CVE-2024-26618: Fix not seen in stream +CVE-2024-26620: Fix not seen in stream +CVE-2024-26622: Fix not seen in stream +CVE-2024-26623: Fix not seen in stream +CVE-2024-26625: Fix not seen in stream +CVE-2024-26627: Fix not seen in stream +CVE-2024-26629: Fix not seen in stream +CVE-2024-26630: Fix not seen in stream +CVE-2024-26631: Fix not seen in stream +CVE-2024-26632: Fix not seen in stream +CVE-2024-26633: Fix not seen in stream +CVE-2024-26635: Fix not seen in stream +CVE-2024-26636: Fix not seen in stream +CVE-2024-26638: Fix not seen in stream +CVE-2024-26640: Fix not seen in stream +CVE-2024-26641: Fix not seen in stream +CVE-2024-26642: Fix not seen in stream +CVE-2024-26643: Fix not seen in stream +CVE-2024-26644: Fix not seen in stream +CVE-2024-26645: Fix not seen in stream +CVE-2024-26646: Fix not seen in stream +CVE-2024-26647: Fix not seen in stream +CVE-2024-26648: Fix not seen in stream +CVE-2024-26649: Fix not seen in stream +CVE-2024-26650: Fix not seen in stream +CVE-2024-26651: Fix not seen in stream +CVE-2024-26652: Fix not seen in stream +CVE-2024-26654: Fix not seen in stream +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fix not seen in stream +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fix not seen in stream +CVE-2024-26660: Fix not seen in stream +CVE-2024-26661: Fix not seen in stream +CVE-2024-26662: Fix not seen in stream +CVE-2024-26663: Fix not seen in stream +CVE-2024-26664: Fix not seen in stream +CVE-2024-26665: Fix not seen in stream +CVE-2024-26666: Fix not seen in stream +CVE-2024-26667: Fix not seen in stream +CVE-2024-26668: Fix not seen in stream +CVE-2024-26669: Fix not seen in stream +CVE-2024-26671: Fix not seen in stream +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fix not seen in stream +CVE-2024-26674: Fix not seen in stream +CVE-2024-26675: Fix not seen in stream +CVE-2024-26676: Fix not seen in stream +CVE-2024-26677: Fix not seen in stream +CVE-2024-26679: Fix not seen in stream +CVE-2024-26680: Fix not seen in stream +CVE-2024-26681: Fix not seen in stream +CVE-2024-26684: Fix not seen in stream +CVE-2024-26685: Fix not seen in stream +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fix not seen in stream +CVE-2024-26688: Fix not seen in stream +CVE-2024-26689: Fix not seen in stream +CVE-2024-26691: Fix not seen in stream +CVE-2024-26692: Fix not seen in stream +CVE-2024-26693: Fix not seen in stream +CVE-2024-26694: Fix not seen in stream +CVE-2024-26695: Fix not seen in stream +CVE-2024-26696: Fix not seen in stream +CVE-2024-26697: Fix not seen in stream +CVE-2024-26698: Fix not seen in stream +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fix not seen in stream +CVE-2024-26702: Fix not seen in stream +CVE-2024-26703: Fix not seen in stream +CVE-2024-26704: Fix not seen in stream +CVE-2024-26706: Fix not seen in stream +CVE-2024-26707: Fix not seen in stream +CVE-2024-26708: Fix not seen in stream +CVE-2024-26711: Fix not seen in stream +CVE-2024-26712: Fix not seen in stream +CVE-2024-26713: Fix not seen in stream +CVE-2024-26714: Fix not seen in stream +CVE-2024-26715: Fix not seen in stream +CVE-2024-26716: Fix not seen in stream +CVE-2024-26717: Fix not seen in stream +CVE-2024-26718: Fix not seen in stream +CVE-2024-26719: Fix not seen in stream +CVE-2024-26720: Fix not seen in stream +CVE-2024-26723: Fix not seen in stream +CVE-2024-26726: Fix not seen in stream +CVE-2024-26727: Fix not seen in stream +CVE-2024-26731: Fix not seen in stream +CVE-2024-26733: Fix not seen in stream +CVE-2024-26734: Fix not seen in stream +CVE-2024-26735: Fix not seen in stream +CVE-2024-26736: Fix not seen in stream +CVE-2024-26737: Fix not seen in stream +CVE-2024-26738: Fix not seen in stream +CVE-2024-26739: Fix not seen in stream +CVE-2024-26740: Fix not seen in stream +CVE-2024-26741: Fix not seen in stream +CVE-2024-26742: Fix not seen in stream +CVE-2024-26743: Fix not seen in stream +CVE-2024-26744: Fix not seen in stream +CVE-2024-26745: Fix not seen in stream +CVE-2024-26746: Fix not seen in stream +CVE-2024-26747: Fix not seen in stream +CVE-2024-26748: Fix not seen in stream +CVE-2024-26749: Fix not seen in stream +CVE-2024-26751: Fix not seen in stream +CVE-2024-26752: Fix not seen in stream +CVE-2024-26753: Fix not seen in stream +CVE-2024-26754: Fix not seen in stream +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fix not seen in stream +CVE-2024-26760: Fix not seen in stream +CVE-2024-26761: Fix not seen in stream +CVE-2024-26763: Fix not seen in stream +CVE-2024-26764: Fix not seen in stream +CVE-2024-26765: Fix not seen in stream +CVE-2024-26766: Fix not seen in stream +CVE-2024-26767: Fix not seen in stream +CVE-2024-26768: Fix not seen in stream +CVE-2024-26769: Fix not seen in stream +CVE-2024-26770: Fix not seen in stream +CVE-2024-26771: Fix not seen in stream +CVE-2024-26772: Fix not seen in stream +CVE-2024-26773: Fix not seen in stream +CVE-2024-26774: Fix not seen in stream +CVE-2024-26775: Fix not seen in stream +CVE-2024-26776: Fix not seen in stream +CVE-2024-26777: Fix not seen in stream +CVE-2024-26778: Fix not seen in stream +CVE-2024-26779: Fix not seen in stream +CVE-2024-26782: Fix not seen in stream +CVE-2024-26783: Fix not seen in stream +CVE-2024-26784: Fix not seen in stream +CVE-2024-26787: Fix not seen in stream +CVE-2024-26788: Fix not seen in stream +CVE-2024-26789: Fix not seen in stream +CVE-2024-26790: Fix not seen in stream +CVE-2024-26791: Fix not seen in stream +CVE-2024-26793: Fix not seen in stream +CVE-2024-26795: Fix not seen in stream +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fix not seen in stream +CVE-2024-26799: Fix not seen in stream +CVE-2024-26801: Fix not seen in stream +CVE-2024-26802: Fix not seen in stream +CVE-2024-26803: Fix not seen in stream +CVE-2024-26804: Fix not seen in stream +CVE-2024-26805: Fix not seen in stream +CVE-2024-26806: Fix not seen in stream +CVE-2024-26807: Fix not seen in stream +CVE-2024-26808: Fix not seen in stream +CVE-2024-26809: Fix not seen in stream
diff --git a/data/6.5/6.5_security.txt b/data/6.5/6.5_security.txt index c6c33cc..78cdec0 100644 --- a/data/6.5/6.5_security.txt +++ b/data/6.5/6.5_security.txt
@@ -21,22 +21,88 @@ CVE-2023-4881: c8f292322ff16b9a2272a67de396c09a50e09dce netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-4921: e5471b82c36396e809817cb988dfc4bce0a688cb net: sched: sch_qfq: Fix UAF in qfq_dequeue() CVE-2023-52433: e3213ff99a355cda811b41e8dbb3472d13167a3a netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction + CVE-2023-52628: c8f292322ff16b9a2272a67de396c09a50e09dce netfilter: nftables: exthdr: fix 4-byte stack OOB write + CVE-2023-52629: 610dbd8ac271aa36080aac50b928d700ee3fe4de sh: push-switch: Reorder cleanup operations to avoid use-after-free bug CVE-2023-6176: 74aecad5da19004ccf6321fd397d14b10756622a net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() CVEs fixed in 6.5.6: + CVE-2022-48628: 47f82395f04a976d4fa97de7f2acffa1c1096571 ceph: drop messages from MDS when unmounting CVE-2023-42754: cda20fcddf53f0f959641c8ef4d50ab87ffa5124 ipv4: fix null-deref in ipv4_link_failure CVE-2023-42756: 20a93d402b6fe6757e14b0eeb400dfac8b8aa3ad netfilter: ipset: Fix race between IPSET_CMD_CREATE and IPSET_CMD_SWAP CVE-2023-5197: 13f385f99147b4445a1ff151fabd44c12d366ab0 netfilter: nf_tables: disallow rule removal from chain binding + CVE-2023-52482: cf43b304b6952b549d58feabc342807b334f03d4 x86/srso: Add SRSO mitigation for Hygon processors + CVE-2023-52484: 3283a1bce9bbc978059f790b84f3c10c32492429 iommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range + CVE-2023-52500: 22e6d783a33015bcdf0979015e4eac603912bea7 scsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command + CVE-2023-52501: 75fc9e99b3a71006720ad1e029db11a4b5c32d4a ring-buffer: Do not attempt to read past "commit" + CVE-2023-52506: 19878758accf6b2788091a771d9f9fee7bab11ab LoongArch: Set all reserved memblocks on Node#0 at initialization + CVE-2023-52508: dd46b3ac7322baf3772b33b29726e94f98289db7 nvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid() + CVE-2023-52511: b3c21c9c7289692f4019f163c3b06d8bdf78b355 spi: sun6i: reduce DMA RX transfer width to single byte + CVE-2023-52516: fe2b811a02c3244ebf6059039e4a9e715e26a9e3 dma-debug: don't call __dma_entry_alloc_check_leak() under free_entries_lock + CVE-2023-52517: 4e149d524678431638ff378ef6025e4e89b71097 spi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain + CVE-2023-52560: 6b522001693aa113d97a985abc5f6932972e8e86 mm/damon/vaddr-test: fix memory leak in damon_do_test_apply_three_regions() + CVE-2023-52561: 82dacd0ca0d9640723824026d6fdf773c02de1d2 arm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved + CVE-2023-52562: 51988be187b041e5355245957b0b9751fa382e0d mm/slab_common: fix slab_caches list corruption after kmem_cache_destroy() + CVE-2023-52563: 43b63e088887a8b82750e16762f77100ffa76cba drm/meson: fix memory leak on ->hpd_notify callback + CVE-2023-52564: 2bff660e0ff349dee84dc4f6f6d10da4497f5b28 Revert "tty: n_gsm: fix UAF in gsm_cleanup_mux" + CVE-2023-52565: 8bcf70d787f7d53a3b85ad394f926cfef3eed023 media: uvcvideo: Fix OOB read + CVE-2023-52566: 28df4646ad8b433340772edc90ca709cdefc53e2 nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() + CVE-2023-52567: 3345cc5f02f1fb4c4dcb114706f2210d879ab933 serial: 8250_port: Check IRQ data before use + CVE-2023-52568: 1348f7f15d7c7798456856bee74a4235c2da994e x86/sgx: Resolves SECS reclaim vs. page fault for EAUG race + CVE-2023-52569: d10fd53393cc5de4b9cf1a4b8f9984f0a037aa51 btrfs: remove BUG() after failure to insert delayed dir index item + CVE-2023-52570: 52093779b1830ac184a23848d971f06404cf513e vfio/mdev: Fix a null-ptr-deref bug for mdev_unregister_parent() + CVE-2023-52571: 70326b46b6a043f7e7404b2ff678b033c06d6577 power: supply: rk817: Fix node refcount leak + CVE-2023-52572: 76569e3819e0bb59fc19b1b8688b017e627c268a cifs: Fix UAF in cifs_demultiplex_thread() + CVE-2023-52573: 069ac51c37a6f07a51f7134d8c34289075786a35 net: rds: Fix possible NULL-pointer dereference + CVE-2023-52574: cac50d9f5d876be32cb9aa21c74018468900284d team: fix null-ptr-deref when team device type is changed + CVE-2023-52575: e3cb8b2c391b1f287eb76df4ba37880f4ea56d8a x86/srso: Fix SBPB enablement for spec_rstack_overflow=off + CVE-2023-52576: d2dfbc0e3b7a04c2d941421a958dc31c897fb204 x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() + CVE-2023-52578: f2ef4cb4d418fa64fe73eb84d10cc5c0e52e00fa net: bridge: use DEV_STATS_INC() + CVE-2023-52580: 48e105a2a1a10adc21c0ae717969f5e8e990ba48 net/core: Fix ETH_P_1588 flow dissector + CVE-2023-52581: 4aea243b6853d06c1d160a9955b759189aa02b14 netfilter: nf_tables: fix memleak when more than 255 elements expired + CVE-2023-52582: d9f5537479d4ec97ea92ff24e81a517d5772581a netfs: Only call folio_start_fscache() one time for each folio CVE-2023-5345: 0c116005af551e9cf437a9ec8c80204c2d4b1b53 fs/smb/client: Reset password pointer to NULL CVEs fixed in 6.5.7: CVE-2023-31085: 87b9858e404069817cd4b31830e0a1b9b3d183c4 ubi: Refuse attaching if mtd's erasesize is 0 CVE-2023-34324: 76b33722e2d2336a6e2a7d9eacbbb8988478cf98 xen/events: replace evtchn_rwlock with RCU CVE-2023-5158: 0bf2b9c2f3545ffce5720de61c33fc171c0e480a vringh: don't use vringh_kiov_advance() in vringh_iov_xfer() + CVE-2023-52479: d5b0e9d3563e7e314a850e81f42b2ef6f39882f9 ksmbd: fix uaf in smb20_oplock_break_ack + CVE-2023-52480: 18ced78b0ebccc2d16f426143dc56ab3aad666be ksmbd: fix race condition between session lookup and expire + CVE-2023-52481: 32b0a4ffcaea44a00a61e40c0d1bcc50362aee25 arm64: errata: Add Cortex-A520 speculative unprivileged load workaround + CVE-2023-52513: eeafc50a77f6a783c2c44e7ec3674a7b693e06f8 RDMA/siw: Fix connection failure handling + CVE-2023-52515: 05a10b316adaac1f322007ca9a0383b410d759cc RDMA/srp: Do not call scsi_done() from srp_abort() + CVE-2023-52518: eea5a8f0c3b7c884d2351e75fbdd0a3d7def5ae1 Bluetooth: hci_codec: Fix leaking content of local_codecs + CVE-2023-52519: 60fb3f054c99608ddb1f2466c07108da6292951e HID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit + CVE-2023-52522: a75152d233370362eebedb2643592e7c883cc9fc net: fix possible store tearing in neigh_periodic_work() + CVE-2023-52523: ded6e448028f0f91b6af35985afca01fa02a9089 bpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets + CVE-2023-52524: 29c16c2bf5866326d5fbc4a537b3997fcac23391 net: nfc: llcp: Add lock when modifying device list + CVE-2023-52526: c955751cbf864cf2055117dd3fe7f780d2a57b56 erofs: fix memory leak of LZMA global compressed deduplication + CVE-2023-52527: fe80658c08e3001c80c5533cd41abfbb0e0e28fd ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_append_data() + CVE-2023-52528: 4931e80da9463b03bfe42be54a9a19f213b0f76d net: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg + CVE-2023-52529: f566efa7de1e35e6523f4acbaf85068a540be07d HID: sony: Fix a potential memory leak in sony_probe() + CVE-2023-52530: 65c72a7201704574dace708cbc96a8f367b1491d wifi: mac80211: fix potential key use-after-free + CVE-2023-52531: f06cdd8d4ba5252986f51f80cc30263636397128 wifi: iwlwifi: mvm: Fix a memory corruption issue + CVE-2023-52532: a910e0f6304726da30a212feecec65cb97ff7a80 net: mana: Fix TX CQE error handling + CVE-2023-52559: 496c591f0b389eb782f36d9d4c2564b9a865eed0 iommu/vt-d: Avoid memory allocation in iommu_suspend() CVE-2024-0641: aa1a21681b94f59c67ca56601e05dc1573ecb6cb tipc: fix a potential deadlock on &tx->lock CVEs fixed in 6.5.8: CVE-2023-35827: 105abd68ad8f781985113aee2e92e0702b133705 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52475: e528b1b9d60743e0b26224e3fe7aa74c24b8b2f8 Input: powermate - fix use-after-free in powermate_config_complete + CVE-2023-52476: f71edacbd4f99c0e12fe4a4007ab4d687d0688db perf/x86/lbr: Filter vsyscall addresses + CVE-2023-52477: 136f69a04e71ba3458d137aec3bb2ce1232c0289 usb: hub: Guard against accesses to uninitialized BOS descriptors + CVE-2023-52478: f7b2c7d9831af99369fe8ad9b2a68d78942f414e HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect + CVE-2023-52483: 2405f64a95a7a094eb24cba9bcfaffd1ea264de4 mctp: perform route lookups under a RCU read-side lock + CVE-2023-52499: 70f6756ad96dd70177dddcfac2fe4bd4bb320746 powerpc/47x: Fix 47x syscall return crash + CVE-2023-52502: d1af8a39cf839d93c8967fdd858f6bbdc3e4a15c net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() + CVE-2023-52503: 1c95574350cd63bc3c5c2fa06658010768f2a0ce tee: amdtee: fix use-after-free vulnerability in amdtee_close_session + CVE-2023-52504: cd287cc208dfe6bd6da98e7f88e723209242c9b4 x86/alternatives: Disable KASAN in apply_alternatives() + CVE-2023-52505: c2d7c79898b427d263c64a4841987eec131f2d4e phy: lynx-28g: serialize concurrent phy_set_mode_ext() calls to shared registers + CVE-2023-52507: 6584eba7688dcf999542778b07f63828c21521da nfc: nci: assert requested protocol is valid + CVE-2023-52509: 105abd68ad8f781985113aee2e92e0702b133705 ravb: Fix use-after-free issue in ravb_tx_timeout_work() + CVE-2023-52510: becf5c147198f4345243c5df0c4f035415491640 ieee802154: ca8210: Fix a potential UAF in ca8210_probe + CVE-2023-52512: c9d7cac0fd27c74dd368e80dc4b5d0f9f2e13cf8 pinctrl: nuvoton: wpcm450: fix out of bounds write + CVE-2023-52520: c6e3023579de8d33256771ac0745239029e81106 platform/x86: think-lmi: Fix reference leak CVE-2023-5633: 1474b39f961703d0bb33833a6d6b112826839781 drm/vmwgfx: Keep a gem reference to user bos in surfaces CVEs fixed in 6.5.9: @@ -130,6 +196,7 @@ CVE-2023-23039: (unk) CVE-2023-26242: (unk) CVE-2023-2640: (unk) + CVE-2023-28746: (unk) x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set CVE-2023-31081: (unk) CVE-2023-31082: (unk) CVE-2023-31083: (unk) Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO @@ -139,7 +206,7 @@ CVE-2023-37454: (unk) CVE-2023-4010: (unk) CVE-2023-46838: (unk) xen-netback: don't produce zero-size SKB frags - CVE-2023-47233: (unk) + CVE-2023-47233: (unk) wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach CVE-2023-50431: (unk) accel/habanalabs: fix information leak in sec_attest_info() CVE-2023-51779: (unk) Bluetooth: af_bluetooth: Fix Use-After-Free in bt_sock_recvmsg CVE-2023-51780: (unk) atm: Fix Use-After-Free in do_vcc_ioctl @@ -170,14 +237,85 @@ CVE-2023-52462: (unk) bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: (unk) efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: (unk) EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52465: (unk) power: supply: Fix null pointer dereference in smb2_probe + CVE-2023-52467: (unk) mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52468: (unk) class: fix use-after-free in class_register() + CVE-2023-52469: (unk) drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: (unk) drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52472: (unk) crypto: rsa - add a check for allocation failure + CVE-2023-52473: (unk) thermal: core: Fix NULL pointer dereference in zone registration error path + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: (unk) drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52487: (unk) net/mlx5e: Fix peer flow lists handling + CVE-2023-52488: (unk) serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: (unk) mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52490: (unk) mm: migrate: fix getting incorrect page mapping during page migration + CVE-2023-52491: (unk) media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: (unk) dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: (unk) bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: (unk) bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52495: (unk) soc: qcom: pmic_glink_altmode: fix port sanity check + CVE-2023-52497: (unk) erofs: fix lz4 inplace decompression + CVE-2023-52498: (unk) PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52583: (unk) ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: (unk) spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: (unk) IB/ipoib: Fix mcast list locking + CVE-2023-52588: (unk) f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: (unk) media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: (unk) reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: (unk) wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: (unk) wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: (unk) wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: (unk) sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: (unk) KVM: s390: fix setting of fpc register + CVE-2023-52598: (unk) s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: (unk) jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: (unk) jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: (unk) jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: (unk) jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: (unk) UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: (unk) FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: (unk) powerpc/lib: Validate size for vector operations + CVE-2023-52607: (unk) powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52608: (unk) firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52609: (unk) binder: fix race between mmput() and do_exit() + CVE-2023-52610: (unk) net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52611: (unk) wifi: rtw88: sdio: Honor the host max_req_size in the RX path + CVE-2023-52612: (unk) crypto: scomp - fix req->dst buffer overflow + CVE-2023-52614: (unk) PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: (unk) hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: (unk) crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52617: (unk) PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: (unk) block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: (unk) pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52621: (unk) bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: (unk) ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: (unk) SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52627: (unk) iio: adc: ad7091r: Allow users to configure device events + CVE-2023-52630: (unk) blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: (unk) fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52632: (unk) drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: (unk) um: time-travel: fix time corruption + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: (unk) PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2023-52637: (unk) can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: (unk) can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: (unk) KVM: s390: vsie: fix race during shadow creation + CVE-2023-52640: (unk) fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: (unk) fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() CVE-2023-6121: (unk) nvmet: nul-terminate the NQNs passed in the connect command CVE-2023-6238: (unk) CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) + CVE-2023-6270: (unk) aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-6356: (unk) nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length CVE-2023-6531: (unk) io_uring/af_unix: disable sending io_uring over sockets CVE-2023-6535: (unk) - CVE-2023-6536: (unk) + CVE-2023-6536: (unk) nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2023-6560: (unk) io_uring: don't allow discontig pages for IORING_SETUP_NO_MMAP CVE-2023-6606: (unk) smb: client: fix OOB in smbCalcSize() CVE-2023-6610: (unk) smb: client: fix potential OOB in smb2_dump_detail() @@ -186,23 +324,23 @@ CVE-2023-6915: (unk) ida: Fix crash in ida_free when the bitmap is empty CVE-2023-6931: (unk) perf: Fix perf_event_validate_size() CVE-2023-6932: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet - CVE-2023-7042: (unk) + CVE-2023-7042: (unk) wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() CVE-2024-0193: (unk) netfilter: nf_tables: skip set commit for deleted/destroyed sets CVE-2024-0564: (unk) CVE-2024-0565: (unk) smb: client: fix OOB in receive_encrypted_standard() CVE-2024-0582: (unk) io_uring/kbuf: defer release of mapped buffer rings CVE-2024-0584: (unk) ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet CVE-2024-0646: (unk) net: tls, update curr on splice as well - CVE-2024-0841: (unk) + CVE-2024-0841: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1085: (unk) netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-1086: (unk) netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-1151: (unk) net: openvswitch: limit the number of recursions from action sets CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) + CVE-2024-22099: (unk) Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security CVE-2024-22386: (unk) CVE-2024-22705: (unk) ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) + CVE-2024-23307: (unk) md/raid5: fix atomicity violation in raid5_cache_count CVE-2024-23848: (unk) CVE-2024-23849: (unk) net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv CVE-2024-23850: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read @@ -211,7 +349,7 @@ CVE-2024-24858: (unk) CVE-2024-24859: (unk) CVE-2024-24860: (unk) Bluetooth: Fix atomicity violation in {min,max}_key_size_set - CVE-2024-24861: (unk) + CVE-2024-24861: (unk) media: xc4000: Fix atomicity violation in xc4000_get_frequency CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) @@ -223,7 +361,6 @@ CVE-2024-26584: (unk) net: tls: handle backlogging of crypto requests CVE-2024-26585: (unk) tls: fix race between tx work scheduling and socket close CVE-2024-26586: (unk) mlxsw: spectrum_acl_tcam: Fix stack corruption - CVE-2024-26587: (unk) net: netdevsim: don't try to destroy PHC on VFs CVE-2024-26588: (unk) LoongArch: BPF: Prevent out-of-bounds memory access CVE-2024-26589: (unk) bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS CVE-2024-26590: (unk) erofs: fix inconsistent per-file compression format @@ -236,3 +373,169 @@ CVE-2024-26597: (unk) net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: (unk) KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: (unk) pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26600: (unk) phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: (unk) ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26602: (unk) sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: (unk) x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26606: (unk) binder: signal epoll threads of self-work + CVE-2024-26607: (unk) drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: (unk) ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: (unk) wifi: iwlwifi: fix a memory corruption + CVE-2024-26612: (unk) netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: (unk) tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: (unk) net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26616: (unk) btrfs: scrub: avoid use-after-free when chunk length is not 64K aligned + CVE-2024-26618: (unk) arm64/sme: Always exit sme_alloc() early with existing storage + CVE-2024-26620: (unk) s390/vfio-ap: always filter entire AP matrix + CVE-2024-26622: (unk) tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26623: (unk) pds_core: Prevent race issues involving the adminq + CVE-2024-26625: (unk) llc: call sock_orphan() at release time + CVE-2024-26627: (unk) scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26629: (unk) nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26630: (unk) mm: cachestat: fix folio read-after-free in cache walk + CVE-2024-26631: (unk) ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: (unk) block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: (unk) ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() + CVE-2024-26635: (unk) llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: (unk) llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: (unk) nbd: always initialize struct msghdr completely + CVE-2024-26640: (unk) tcp: add sanity checks to rx zerocopy + CVE-2024-26641: (unk) ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26642: (unk) netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26643: (unk) netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout + CVE-2024-26644: (unk) btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: (unk) tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: (unk) thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: (unk) drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: (unk) drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26649: (unk) drm/amdgpu: Fix the null pointer when load rlc firmware + CVE-2024-26650: (unk) platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26651: (unk) sr9800: Add check for usbnet_get_endpoints + CVE-2024-26652: (unk) net: pds_core: Fix possible double free in error handling path + CVE-2024-26654: (unk) ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26656: (unk) drm/amdgpu: fix use-after-free bug + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: (unk) xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: (unk) drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: (unk) drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: (unk) drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: (unk) tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: (unk) hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: (unk) tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26666: (unk) wifi: mac80211: fix RCU use in TDLS fast-xmit + CVE-2024-26667: (unk) drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26668: (unk) netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: (unk) net/sched: flower: Fix chain template offload + CVE-2024-26671: (unk) blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: (unk) netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations + CVE-2024-26674: (unk) x86/lib: Revert to _ASM_EXTABLE_UA() for {get,put}_user() fixups + CVE-2024-26675: (unk) ppp_async: limit MRU to 64K + CVE-2024-26676: (unk) af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: (unk) rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: (unk) inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: (unk) net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: (unk) netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: (unk) net: stmmac: xgmac: fix handling of DPP safety error for DMA channels + CVE-2024-26685: (unk) nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: (unk) xen/events: close evtchn after mapping cleanup + CVE-2024-26688: (unk) fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: (unk) ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26691: (unk) KVM: arm64: Fix circular locking dependency + CVE-2024-26692: (unk) smb: Fix regression in writes when non-standard maximum write size negotiated + CVE-2024-26693: (unk) wifi: iwlwifi: mvm: fix a crash when we run out of stations + CVE-2024-26694: (unk) wifi: iwlwifi: fix double-free bug + CVE-2024-26695: (unk) crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: (unk) nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: (unk) nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: (unk) hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: (unk) drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: (unk) iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26703: (unk) tracing/timerlat: Move hrtimer_init to timerlat_fd open() + CVE-2024-26704: (unk) ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26706: (unk) parisc: Fix random data corruption from exception handler + CVE-2024-26707: (unk) net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26708: (unk) mptcp: really cope with fastopen race + CVE-2024-26711: (unk) iio: adc: ad4130: zero-initialize clock init data + CVE-2024-26712: (unk) powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: (unk) powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: (unk) interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: (unk) usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26716: (unk) usb: core: Prevent null pointer dereference in update_port_device_state + CVE-2024-26717: (unk) HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: (unk) dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: (unk) nouveau: offload fence uevents work to workqueue + CVE-2024-26720: (unk) mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26723: (unk) lan966x: Fix crash when adding interface under a lag + CVE-2024-26726: (unk) btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: (unk) btrfs: do not ASSERT() if the newly created subvolume already got read + CVE-2024-26731: (unk) bpf, sockmap: Fix NULL pointer dereference in sk_psock_verdict_data_ready() + CVE-2024-26733: (unk) arp: Prevent overflow in arp_req_get(). + CVE-2024-26734: (unk) devlink: fix possible use-after-free and memory leaks in devlink_init() + CVE-2024-26735: (unk) ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: (unk) afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: (unk) bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: (unk) powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: (unk) net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: (unk) net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26741: (unk) dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: (unk) scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: (unk) RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: (unk) RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26745: (unk) powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26746: (unk) dmaengine: idxd: Ensure safe user copy of completion record + CVE-2024-26747: (unk) usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: (unk) usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: (unk) usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: (unk) ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: (unk) l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: (unk) crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: (unk) mm/swap: fix race when skipping swapcache + CVE-2024-26760: (unk) scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: (unk) cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: (unk) dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: (unk) fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: (unk) LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: (unk) IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: (unk) drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: (unk) LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: (unk) nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: (unk) HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: (unk) dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: (unk) ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: (unk) ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: (unk) aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: (unk) spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: (unk) fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: (unk) fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: (unk) wifi: mac80211: fix race condition on enabling fast-xmit + CVE-2024-26782: (unk) mptcp: fix double-free on socket dismantle + CVE-2024-26783: (unk) mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26787: (unk) mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: (unk) dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: (unk) crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: (unk) dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: (unk) btrfs: dev-replace: properly validate device names + CVE-2024-26793: (unk) gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: (unk) riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: (unk) fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: (unk) ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: (unk) Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: (unk) stmmac: Clear variable when destroying workqueue + CVE-2024-26803: (unk) net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: (unk) net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: (unk) netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26807: (unk) spi: cadence-qspi: fix pointer reference in runtime PM hooks + CVE-2024-26808: (unk) netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + CVE-2024-26809: (unk) netfilter: nft_set_pipapo: release elements in clone only from destroy path
diff --git a/data/6.6/6.6_CVEs.txt b/data/6.6/6.6_CVEs.txt index 8589243..9a80893 100644 --- a/data/6.6/6.6_CVEs.txt +++ b/data/6.6/6.6_CVEs.txt
@@ -75,6 +75,7 @@ CVE-2023-23039: Fix unknown CVE-2023-26242: Fix unknown CVE-2023-2640: Fix unknown +CVE-2023-28746: Fixed with 6.6.22 CVE-2023-31081: Fix unknown CVE-2023-31082: Fix unknown CVE-2023-32629: Fix unknown @@ -84,7 +85,7 @@ CVE-2023-4010: Fix unknown CVE-2023-46838: Fixed with 6.6.14 CVE-2023-46862: Fixed with 6.6 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fixed with 6.6.24 CVE-2023-50431: Fixed with 6.6.14 CVE-2023-51779: Fixed with 6.6.9 CVE-2023-51780: Fixed with 6.6.8 @@ -116,16 +117,89 @@ CVE-2023-52462: Fixed with 6.6.14 CVE-2023-52463: Fixed with 6.6.14 CVE-2023-52464: Fixed with 6.6.14 +CVE-2023-52465: Fixed with 6.6.14 +CVE-2023-52467: Fixed with 6.6.14 +CVE-2023-52468: Fixed with 6.6.14 +CVE-2023-52469: Fixed with 6.6.14 +CVE-2023-52470: Fixed with 6.6.14 +CVE-2023-52472: Fixed with 6.6.14 +CVE-2023-52473: Fixed with 6.6.14 +CVE-2023-52485: Fix not seen in stream +CVE-2023-52486: Fixed with 6.6.15 +CVE-2023-52487: Fixed with 6.6.15 +CVE-2023-52488: Fixed with 6.6.15 +CVE-2023-52489: Fixed with 6.6.15 +CVE-2023-52490: Fixed with 6.6.15 +CVE-2023-52491: Fixed with 6.6.15 +CVE-2023-52492: Fixed with 6.6.15 +CVE-2023-52493: Fixed with 6.6.15 +CVE-2023-52494: Fixed with 6.6.15 +CVE-2023-52495: Fixed with 6.6.15 +CVE-2023-52497: Fixed with 6.6.15 +CVE-2023-52498: Fixed with 6.6.15 +CVE-2023-52583: Fixed with 6.6.16 +CVE-2023-52584: Fixed with 6.6.16 +CVE-2023-52585: Fix not seen in stream +CVE-2023-52586: Fix not seen in stream +CVE-2023-52587: Fixed with 6.6.16 +CVE-2023-52588: Fixed with 6.6.16 +CVE-2023-52589: Fixed with 6.6.16 +CVE-2023-52590: Fix not seen in stream +CVE-2023-52591: Fixed with 6.6.16 +CVE-2023-52593: Fixed with 6.6.16 +CVE-2023-52594: Fixed with 6.6.16 +CVE-2023-52595: Fixed with 6.6.16 +CVE-2023-52596: Fixed with 6.6.16 +CVE-2023-52597: Fixed with 6.6.16 +CVE-2023-52598: Fixed with 6.6.16 +CVE-2023-52599: Fixed with 6.6.16 +CVE-2023-52600: Fixed with 6.6.16 +CVE-2023-52601: Fixed with 6.6.16 +CVE-2023-52602: Fixed with 6.6.16 +CVE-2023-52603: Fixed with 6.6.16 +CVE-2023-52604: Fixed with 6.6.16 +CVE-2023-52606: Fixed with 6.6.16 +CVE-2023-52607: Fixed with 6.6.16 +CVE-2023-52608: Fixed with 6.6.15 +CVE-2023-52609: Fixed with 6.6.14 +CVE-2023-52610: Fixed with 6.6.14 +CVE-2023-52611: Fixed with 6.6.14 +CVE-2023-52612: Fixed with 6.6.14 +CVE-2023-52613: Fixed with 6.6.14 +CVE-2023-52614: Fixed with 6.6.15 +CVE-2023-52615: Fixed with 6.6.15 +CVE-2023-52616: Fixed with 6.6.15 +CVE-2023-52617: Fixed with 6.6.16 +CVE-2023-52618: Fixed with 6.6.16 +CVE-2023-52619: Fixed with 6.6.16 +CVE-2023-52621: Fixed with 6.6.16 +CVE-2023-52622: Fixed with 6.6.16 +CVE-2023-52623: Fixed with 6.6.16 +CVE-2023-52624: Fix not seen in stream +CVE-2023-52625: Fix not seen in stream +CVE-2023-52627: Fixed with 6.6.15 +CVE-2023-52630: Fixed with 6.6.17 +CVE-2023-52631: Fixed with 6.6.17 +CVE-2023-52632: Fixed with 6.6.16 +CVE-2023-52633: Fixed with 6.6.16 +CVE-2023-52634: Fix not seen in stream +CVE-2023-52635: Fixed with 6.6.16 +CVE-2023-52636: Fixed with 6.6.17 +CVE-2023-52637: Fixed with 6.6.18 +CVE-2023-52638: Fixed with 6.6.18 +CVE-2023-52639: Fixed with 6.6.22 +CVE-2023-52640: Fixed with 6.6.19 +CVE-2023-52641: Fixed with 6.6.19 CVE-2023-6111: Fixed with 6.6.3 CVE-2023-6121: Fixed with 6.6.4 CVE-2023-6200: Fixed with 6.6.9 CVE-2023-6238: Fix unknown CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 6.6.23 +CVE-2023-6356: Fixed with 6.6.14 CVE-2023-6531: Fixed with 6.6.7 CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown +CVE-2023-6536: Fixed with 6.6.14 CVE-2023-6560: Fixed with 6.6.5 CVE-2023-6606: Fixed with 6.6.9 CVE-2023-6610: Fixed with 6.6.13 @@ -134,7 +208,7 @@ CVE-2023-6915: Fixed with 6.6.13 CVE-2023-6931: Fixed with 6.6.7 CVE-2023-6932: Fixed with 6.6.5 -CVE-2023-7042: Fix unknown +CVE-2023-7042: Fixed with 6.6.23 CVE-2024-0193: Fixed with 6.6.10 CVE-2024-0564: Fix unknown CVE-2024-0565: Fixed with 6.6.8 @@ -142,16 +216,16 @@ CVE-2024-0584: Fixed with 6.6.5 CVE-2024-0607: Fixed with 6.6.3 CVE-2024-0646: Fixed with 6.6.7 -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fixed with 6.6.18 CVE-2024-1085: Fixed with 6.6.14 CVE-2024-1086: Fixed with 6.6.15 CVE-2024-1151: Fixed with 6.6.18 CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 6.6.23 CVE-2024-22386: Fix unknown CVE-2024-22705: Fixed with 6.6.10 -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23307: Fixed with 6.6.24 CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 6.6.15 CVE-2024-23850: Fixed with 6.6.18 @@ -160,7 +234,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fixed with 6.6.14 -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fixed with 6.6.24 CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -185,3 +259,179 @@ CVE-2024-26597: Fixed with 6.6.14 CVE-2024-26598: Fixed with 6.6.14 CVE-2024-26599: Fixed with 6.6.14 +CVE-2024-26600: Fixed with 6.6.17 +CVE-2024-26601: Fixed with 6.6.17 +CVE-2024-26602: Fixed with 6.6.18 +CVE-2024-26603: Fixed with 6.6.18 +CVE-2024-26604: Fixed with 6.6.18 +CVE-2024-26606: Fixed with 6.6.18 +CVE-2024-26607: Fixed with 6.6.15 +CVE-2024-26608: Fixed with 6.6.15 +CVE-2024-26610: Fixed with 6.6.15 +CVE-2024-26611: Fixed with 6.6.15 +CVE-2024-26612: Fixed with 6.6.15 +CVE-2024-26614: Fixed with 6.6.15 +CVE-2024-26615: Fixed with 6.6.15 +CVE-2024-26616: Fixed with 6.6.15 +CVE-2024-26618: Fixed with 6.6.15 +CVE-2024-26620: Fixed with 6.6.15 +CVE-2024-26622: Fixed with 6.6.21 +CVE-2024-26623: Fixed with 6.6.16 +CVE-2024-26625: Fixed with 6.6.16 +CVE-2024-26627: Fixed with 6.6.16 +CVE-2024-26629: Fixed with 6.6.15 +CVE-2024-26630: Fixed with 6.6.21 +CVE-2024-26631: Fixed with 6.6.14 +CVE-2024-26632: Fixed with 6.6.14 +CVE-2024-26633: Fixed with 6.6.14 +CVE-2024-26634: Fixed with 6.6.15 +CVE-2024-26635: Fixed with 6.6.15 +CVE-2024-26636: Fixed with 6.6.15 +CVE-2024-26638: Fixed with 6.6.15 +CVE-2024-26640: Fixed with 6.6.16 +CVE-2024-26641: Fixed with 6.6.16 +CVE-2024-26642: Fixed with 6.6.24 +CVE-2024-26643: Fixed with 6.6.24 +CVE-2024-26644: Fixed with 6.6.15 +CVE-2024-26645: Fixed with 6.6.15 +CVE-2024-26646: Fixed with 6.6.15 +CVE-2024-26647: Fixed with 6.6.15 +CVE-2024-26648: Fixed with 6.6.15 +CVE-2024-26649: Fixed with 6.6.15 +CVE-2024-26650: Fixed with 6.6.15 +CVE-2024-26651: Fixed with 6.6.23 +CVE-2024-26652: Fixed with 6.6.22 +CVE-2024-26654: Fixed with 6.6.24 +CVE-2024-26655: Fix not seen in stream +CVE-2024-26656: Fixed with 6.6.24 +CVE-2024-26658: Fix not seen in stream +CVE-2024-26659: Fixed with 6.6.17 +CVE-2024-26660: Fixed with 6.6.17 +CVE-2024-26661: Fixed with 6.6.17 +CVE-2024-26662: Fixed with 6.6.17 +CVE-2024-26663: Fixed with 6.6.17 +CVE-2024-26664: Fixed with 6.6.17 +CVE-2024-26665: Fixed with 6.6.17 +CVE-2024-26666: Fixed with 6.6.17 +CVE-2024-26667: Fixed with 6.6.17 +CVE-2024-26668: Fixed with 6.6.15 +CVE-2024-26669: Fixed with 6.6.15 +CVE-2024-26670: Fixed with 6.6.15 +CVE-2024-26671: Fixed with 6.6.16 +CVE-2024-26672: Fix not seen in stream +CVE-2024-26673: Fixed with 6.6.16 +CVE-2024-26674: Fixed with 6.6.17 +CVE-2024-26675: Fixed with 6.6.17 +CVE-2024-26676: Fixed with 6.6.17 +CVE-2024-26677: Fixed with 6.6.17 +CVE-2024-26679: Fixed with 6.6.17 +CVE-2024-26680: Fixed with 6.6.17 +CVE-2024-26681: Fixed with 6.6.17 +CVE-2024-26684: Fixed with 6.6.17 +CVE-2024-26685: Fixed with 6.6.18 +CVE-2024-26686: Fix not seen in stream +CVE-2024-26687: Fixed with 6.6.19 +CVE-2024-26688: Fixed with 6.6.18 +CVE-2024-26689: Fixed with 6.6.18 +CVE-2024-26690: Fixed with 6.6.18 +CVE-2024-26691: Fixed with 6.6.18 +CVE-2024-26692: Fixed with 6.6.18 +CVE-2024-26693: Fixed with 6.6.18 +CVE-2024-26694: Fixed with 6.6.18 +CVE-2024-26695: Fixed with 6.6.18 +CVE-2024-26696: Fixed with 6.6.18 +CVE-2024-26697: Fixed with 6.6.18 +CVE-2024-26698: Fixed with 6.6.18 +CVE-2024-26699: Fix not seen in stream +CVE-2024-26700: Fixed with 6.6.18 +CVE-2024-26702: Fixed with 6.6.18 +CVE-2024-26703: Fixed with 6.6.18 +CVE-2024-26704: Fixed with 6.6.18 +CVE-2024-26705: Fixed with 6.6.18 +CVE-2024-26706: Fixed with 6.6.18 +CVE-2024-26707: Fixed with 6.6.18 +CVE-2024-26708: Fixed with 6.6.18 +CVE-2024-26711: Fixed with 6.6.18 +CVE-2024-26712: Fixed with 6.6.18 +CVE-2024-26713: Fixed with 6.6.18 +CVE-2024-26714: Fixed with 6.6.18 +CVE-2024-26715: Fixed with 6.6.18 +CVE-2024-26716: Fixed with 6.6.18 +CVE-2024-26717: Fixed with 6.6.18 +CVE-2024-26718: Fixed with 6.6.18 +CVE-2024-26719: Fixed with 6.6.18 +CVE-2024-26720: Fixed with 6.6.18 +CVE-2024-26723: Fixed with 6.6.18 +CVE-2024-26726: Fixed with 6.6.18 +CVE-2024-26727: Fixed with 6.6.18 +CVE-2024-26730: Fixed with 6.6.19 +CVE-2024-26731: Fixed with 6.6.19 +CVE-2024-26733: Fixed with 6.6.19 +CVE-2024-26734: Fixed with 6.6.19 +CVE-2024-26735: Fixed with 6.6.19 +CVE-2024-26736: Fixed with 6.6.19 +CVE-2024-26737: Fixed with 6.6.19 +CVE-2024-26738: Fixed with 6.6.19 +CVE-2024-26739: Fixed with 6.6.19 +CVE-2024-26740: Fixed with 6.6.19 +CVE-2024-26741: Fixed with 6.6.19 +CVE-2024-26742: Fixed with 6.6.19 +CVE-2024-26743: Fixed with 6.6.19 +CVE-2024-26744: Fixed with 6.6.19 +CVE-2024-26745: Fixed with 6.6.21 +CVE-2024-26746: Fixed with 6.6.21 +CVE-2024-26747: Fixed with 6.6.19 +CVE-2024-26748: Fixed with 6.6.19 +CVE-2024-26749: Fixed with 6.6.19 +CVE-2024-26751: Fixed with 6.6.19 +CVE-2024-26752: Fixed with 6.6.19 +CVE-2024-26753: Fixed with 6.6.19 +CVE-2024-26754: Fixed with 6.6.19 +CVE-2024-26756: Fix not seen in stream +CVE-2024-26757: Fix not seen in stream +CVE-2024-26758: Fix not seen in stream +CVE-2024-26759: Fixed with 6.6.19 +CVE-2024-26760: Fixed with 6.6.19 +CVE-2024-26761: Fixed with 6.6.19 +CVE-2024-26763: Fixed with 6.6.19 +CVE-2024-26764: Fixed with 6.6.19 +CVE-2024-26765: Fixed with 6.6.19 +CVE-2024-26766: Fixed with 6.6.19 +CVE-2024-26767: Fixed with 6.6.19 +CVE-2024-26768: Fixed with 6.6.19 +CVE-2024-26769: Fixed with 6.6.19 +CVE-2024-26770: Fixed with 6.6.19 +CVE-2024-26771: Fixed with 6.6.19 +CVE-2024-26772: Fixed with 6.6.19 +CVE-2024-26773: Fixed with 6.6.19 +CVE-2024-26774: Fixed with 6.6.19 +CVE-2024-26775: Fixed with 6.6.19 +CVE-2024-26776: Fixed with 6.6.19 +CVE-2024-26777: Fixed with 6.6.19 +CVE-2024-26778: Fixed with 6.6.19 +CVE-2024-26779: Fixed with 6.6.19 +CVE-2024-26782: Fixed with 6.6.21 +CVE-2024-26783: Fixed with 6.6.22 +CVE-2024-26784: Fix not seen in stream +CVE-2024-26785: Fix not seen in stream +CVE-2024-26786: Fixed with 6.6.21 +CVE-2024-26787: Fixed with 6.6.21 +CVE-2024-26788: Fixed with 6.6.21 +CVE-2024-26789: Fixed with 6.6.21 +CVE-2024-26790: Fixed with 6.6.21 +CVE-2024-26791: Fixed with 6.6.21 +CVE-2024-26793: Fixed with 6.6.21 +CVE-2024-26795: Fixed with 6.6.21 +CVE-2024-26796: Fixed with 6.6.21 +CVE-2024-26797: Fix not seen in stream +CVE-2024-26798: Fixed with 6.6.21 +CVE-2024-26799: Fixed with 6.6.21 +CVE-2024-26801: Fixed with 6.6.21 +CVE-2024-26802: Fixed with 6.6.21 +CVE-2024-26803: Fixed with 6.6.21 +CVE-2024-26804: Fixed with 6.6.21 +CVE-2024-26805: Fixed with 6.6.21 +CVE-2024-26806: Fix not seen in stream +CVE-2024-26807: Fixed with 6.6.21 +CVE-2024-26808: Fixed with 6.6.15 +CVE-2024-26809: Fixed with 6.6.23
diff --git a/data/6.6/6.6_security.txt b/data/6.6/6.6_security.txt index bc84ab7..049da04 100644 --- a/data/6.6/6.6_security.txt +++ b/data/6.6/6.6_security.txt
@@ -72,6 +72,20 @@ CVE-2023-52462: 8dc15b0670594543c356567a1a45b0182ec63174 bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: 0049fe7e4a85849bdd778cdb72e51a791ff3d737 efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: e1c86511241588efffaa49556196f09a498d5057 EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52465: e2717302fbc20f148bcda362facee0444b949a3a power: supply: Fix null pointer dereference in smb2_probe + CVE-2023-52467: 3ef1130deee98997275904d9bfc37af75e1e906c mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52468: b57196a5ec5e4c0ffecde8348b085b778c7dce04 class: fix use-after-free in class_register() + CVE-2023-52469: 95084632a65d5c0d682a83b55935560bdcd2a1e3 drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: 0b813a6a0087451cb702b6eb841f10856f49d088 drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52472: 2831f4d3bfa68e64c5f83e96688be779c87b3511 crypto: rsa - add a check for allocation failure + CVE-2023-52473: 335176dd8ebaca6493807dceea33c478305667fa thermal: core: Fix NULL pointer dereference in zone registration error path + CVE-2023-52609: 67f16bf2cc1698fd50e01ee8a2becc5a8e6d3a3e binder: fix race between mmput() and do_exit() + CVE-2023-52610: 73f7da5fd124f2cda9161e2e46114915e6e82e97 net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52611: 5b5ddf21b978ec315cab9d9e7e6ac7374791a8c7 wifi: rtw88: sdio: Honor the host max_req_size in the RX path + CVE-2023-52612: 7d9e5bed036a7f9e2062a137e97e3c1e77fb8759 crypto: scomp - fix req->dst buffer overflow + CVE-2023-52613: 70481755ed77400e783200e2d022e5fea16060ce drivers/thermal/loongson2_thermal: Fix incorrect PTR_ERR() judgment + CVE-2023-6356: 24e05760186dc070d3db190ca61efdbce23afc88 nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length + CVE-2023-6536: 2f00fd8d50a7d5eedc85e62efdc1a29213168998 nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2024-1085: 7baa33837ee2473eb0afd9755e29a25cd3771eac netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-24860: f56e715ef1c19c42c6aa6cb9280947dea13aab2e Bluetooth: Fix atomicity violation in {min,max}_key_size_set CVE-2024-26586: 2f5e1565740490706332c06f36211d4ce0f88e62 mlxsw: spectrum_acl_tcam: Fix stack corruption @@ -86,16 +100,125 @@ CVE-2024-26597: c4734535034672f59f2652e1e0058c490da62a5c net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: 65b201bf3e9af1b0254243a5881390eda56f72d1 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: e5f2b4b62977fb6c2efcbc5779e0c9dce18215f7 pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26631: 3cc283fd16fba72e2cefe3a6f48d7a36b0438900 ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: a6bd8182137a12d22d3f2cee463271bdcb491659 block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: 687c5d52fe53e602e76826dbd4d7af412747e183 ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 6.6.15: + CVE-2023-52486: d7afdf360f4ac142832b098b4de974e867cc063c drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52487: 74cec142f89bf85c6c99c5db957da9f663f9f16f net/mlx5e: Fix peer flow lists handling + CVE-2023-52488: 084c24e788d9cf29c55564de368bf5284f2bb5db serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: 70064241f2229f7ba7b9599a98f68d9142e81a97 mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52490: 9128bfbc5c80d8f4874dd0a0424d1f5fb010df1b mm: migrate: fix getting incorrect page mapping during page migration + CVE-2023-52491: 8254d54d00eb6cdb8367399c7f912eb8d354ecd7 media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: 7f0ccfad2031eddcc510caf4e57f2d4aa2d8a50b dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: eaefb9464031215d63c0a8a7e2bfaa00736aa17e bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: a9ebfc405fe1be145f414eafadcbf09506082010 bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52495: 532a5557da6892a6b2d5793052e1bce1f4c9e177 soc: qcom: pmic_glink_altmode: fix port sanity check + CVE-2023-52497: f36d200a80a3ca025532ed60dd1ac21b620e14ae erofs: fix lz4 inplace decompression + CVE-2023-52498: e681e29d1f59a04ef773296e4bebb17b1b79f8fe PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52608: 9b5e1b93c83ee5fc9f5d7bd2d45b421bd87774a2 firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52614: a979f56aa4b93579cf0e4265ae04d7e9300fd3e8 PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: ecabe8cd456d3bf81e92c53b074732f3140f170d hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: 7ebf812b7019fd2d4d5a7ca45ef4bf3a6f4bda0a crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52627: 89c4e63324e208a23098f7fb15c00487cecbfed2 iio: adc: ad7091r: Allow users to configure device events CVE-2024-1086: 6653118b176a00915125521c6572ae8e507621db netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-23849: 7a73190ea557e7f26914b0fe04c1f57a96cb771f net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv + CVE-2024-26607: 56f96cf6eb11a1c2d594367c3becbfb06a855ec1 drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: 9863a53100f47652755545c2bd43e14a1855104d ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: 870171899d75d43e3d14360f3a4850e90a9c289b wifi: iwlwifi: fix a memory corruption + CVE-2024-26611: 82ee4781b8200e44669a354140d5c6bd966b8768 xsk: fix usage of multi-buffer BPF helpers for ZC XDP + CVE-2024-26612: 1c45256e599061021e2c848952e50f406457e448 netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: 168e7e599860654876c2a1102a82610285c02f02 tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: a164c2922675d7051805cdaf2b07daffe44f20d9 net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26616: 642b9c520ef2f104277ad1f902f8526edbe087fb btrfs: scrub: avoid use-after-free when chunk length is not 64K aligned + CVE-2024-26618: 569156e4fa347237f8fa2a7e935d860109c55ac4 arm64/sme: Always exit sme_alloc() early with existing storage + CVE-2024-26620: c69d821197611678533fb3eb784fc823b921349a s390/vfio-ap: always filter entire AP matrix + CVE-2024-26629: b7d2eee1f53899b53f069bba3a59a419fc3d331b nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26634: e855dded4b70d1975ee7b9fed0c700391e3c8ea6 net: fix removing a namespace with conflicting altnames + CVE-2024-26635: f1f34a515fb1e25e85dee94f781e7869ae351fb8 llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: cafd3ad3fe03ef4d6632747be9ee15dc0029db4b llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26638: 1960f2b534da1e6c65fb96f9e98bda773495f406 nbd: always initialize struct msghdr completely + CVE-2024-26644: ec794a7528199e1be6d47bec03f4755aa75df256 btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: a1eebe76e187dbe11ca299f8dbb6e45d5b1889e7 tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: 019ccc66d56a696a4dfee3bfa2f04d0a7c3d89ee thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: 6aa5ede6665122f4c8abce3c6eba06b49e54d25c drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: 22ae604aea14756954e1c00ae653e34d2afd2935 drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26649: 8b5bacce2d13dbe648f0bfd3f738ecce8db4978c drm/amdgpu: Fix the null pointer when load rlc firmware + CVE-2024-26650: 847e1eb30e269a094da046c08273abe3f3361cf2 platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26668: 9882495d02ecc490604f747437a40626dc9160d0 netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: 9ed46144cff3598a5cf79955630e795ff9af5b97 net/sched: flower: Fix chain template offload + CVE-2024-26670: 58eb5c07f41704464b9acc09ab0707b6769db6c0 arm64: entry: fix ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD + CVE-2024-26808: e5888acbf1a3d8d021990ce6c6061fd5b2bb21b4 netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + +CVEs fixed in 6.6.16: + CVE-2023-52583: 196b87e5c00ce021e164a5de0f0d04f4116a9160 ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: f8dcafcb54632536684336161da8bdd52120f95e spmi: mediatek: Fix UAF on device remove + CVE-2023-52587: 342258fb46d66c1b4c7e2c3717ac01e10c03cf18 IB/ipoib: Fix mcast list locking + CVE-2023-52588: 417b8a91f4e8831cadaf85c3f15c6991c1f54dde f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: fab483438342984f2a315fe13c882a80f0f7e545 media: rkisp1: Fix IRQ disable race issue + CVE-2023-52591: 17e1361cb91dc1325834da95d2ab532959d2debc reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: 9ab224744a47363f74ea29c6894c405e3bcf5132 wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: e4f4bac7d3b64eb75f70cd3345712de6f68a215d wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: 04cfe4a5da57ab9358cdfadea22bcb37324aaf83 wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: 15893975e9e382f8294ea8d926f08dc2d8d39ede sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: c87d7d910775a025e230fd6359b60627e392460f KVM: s390: fix setting of fpc register + CVE-2023-52598: 02c6bbfb08bad78dd014e24c7b893723c15ec7a1 s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: 6996d43b14486f4a6655b10edc541ada1b580b4b jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: 1696d6d7d4a1b373e96428d0fe1166bd7c3c795e jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: 2e16a1389b5a7983b45cb2aa20b0e3f0ee364d6c jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: 7110650b85dd2f1cee819acd1345a9013a1a62f7 jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: edff092a59260bf0b0a2eba219cb3da6372c2f9f UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: 6a44065dd604972ec1fbcccbdc4a70d266a89cdd FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: 28b8ba8eebf26f66d9f2df4ba550b6b3b136082c powerpc/lib: Validate size for vector operations + CVE-2023-52607: 145febd85c3bcc5c74d87ef9a598fc7d9122d532 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52617: 0233b836312e39a3c763fb53512b3fa455b473b3 PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: 5b9ea86e662035a886ccb5c76d56793cba618827 block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: 0593cfd321df9001142a9d2c58d4144917dff7ee pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52621: 483cb92334cd7f1d5387dccc0ab5d595d27a669d bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: 8b1413dbfe49646eda2c00c0f1144ee9d3368e0c ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: 69c7eeb4f622c2a28da965f970f982db171f3dc6 SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52632: 752312f6a79440086ac0f9b08d7776870037323c drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: de3e9d8e8d1ae0a4d301109d1ec140796901306c um: time-travel: fix time corruption + CVE-2023-52635: 0aedb319ef3ed39e9e5a7b7726c8264ca627bbd9 PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2024-26623: 22cd6046eb2148b18990257505834dd45c672a1b pds_core: Prevent race issues involving the adminq + CVE-2024-26625: 3151051b787f7cd7e3329ea0016eb9113c248812 llc: call sock_orphan() at release time + CVE-2024-26627: 65ead8468c21c2676d4d06f50b46beffdea69df1 scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26640: d15cc0f66884ef2bed28c7ccbb11c102aa3a0760 tcp: add sanity checks to rx zerocopy + CVE-2024-26641: 350a6640fac4b53564ec20aa3f4a0922cb0ba5e6 ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26671: 6d8b01624a2540336a32be91f25187a433af53a0 blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26673: cfe3550ea5df292c9e2d608e8c4560032391847e netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations CVEs fixed in 6.6.17: + CVE-2023-52630: 27b216130e64651e76ed583742a1b4e4d08a67c3 blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: fb7bcd1722bc9bc55160378f5f99c01198fd14a7 fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52636: da9c33a70f095d5d55c36d0bfeba969e31de08ae libceph: just wait for more data to be available on the socket CVE-2024-26581: b734f7a47aeb32a5ba298e4ccc16bb0c52b6dbf7 netfilter: nft_set_rbtree: skip end interval element from gc + CVE-2024-26600: 14ef61594a5a286ae0d493b8acbf9eac46fd04c4 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: ea42d6cffb0dd27a417f410b9d0011e9859328cb ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26659: f5e7ffa9269a448a720e21f1ed1384d118298c97 xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: cd9bd10c59e3c1446680514fd3097c5b00d3712d drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: 3f3c237a706580326d3b7a1b97697e5031ca4667 drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: 2e150ccea13129eb048679114808eb9770443e4d drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: 888e3524be87f3df9fa3c083484e4b62b3e3bb59 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: 853a6503c586a71abf27e60a7f8c4fb28092976d hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: 510c869ffa4068c5f19ff4df51d1e2f3a30aaac1 tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26666: fc3432ae8232ff4025e7c55012dd88db0e3d18eb wifi: mac80211: fix RCU use in TDLS fast-xmit + CVE-2024-26667: 79592a6e7bdc1d05460c95f891f5e5263a107af8 drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26674: 2aed1b6c33afd8599d01c6532bbecb829480a674 x86/lib: Revert to _ASM_EXTABLE_UA() for {get,put}_user() fixups + CVE-2024-26675: 7e5ef49670766c9742ffcd9cead7cdb018268719 ppp_async: limit MRU to 64K + CVE-2024-26676: b74aa9ce13d02b7fd37c5325b99854f91b9b4276 af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: 200cb50b9e154434470c8969d32474d38475acc2 rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26679: 4a5e31bdd3c1702b520506d9cf8c41085f75c7f2 inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: 004fe5b7f59286a926a45e0cafc7870e9cdddd56 net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: 6eecddd9c3c8d6e3a097531cdc6d500335b35e46 netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26684: 7e0ff50131e9d1aa507be8e670d38e9300a5f5bf net: stmmac: xgmac: fix handling of DPP safety error for DMA channels CVEs fixed in 6.6.18: CVE-2023-52429: 438d19492b7f002334573bae43276297eb234c80 dm: limit the number of targets and parameter size area + CVE-2023-52637: f84e7534457dcd7835be743517c35378bb4e7c50 can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: 26dfe112ec2e95fe0099681f6aec33da13c2dd8e can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2024-0841: 13c5a9fb07105557a1fa9efdb4f23d7ef30b7274 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1151: 5eeb2a9eaa5bc6e0aa655ac72a931b78f8f9b365 net: openvswitch: limit the number of recursions from action sets CVE-2024-23850: 833775656d447c545133a744a0ed1e189ce61430 btrfs: do not ASSERT() if the newly created subvolume already got read CVE-2024-23851: 438d19492b7f002334573bae43276297eb234c80 dm: limit the number of targets and parameter size area @@ -104,6 +227,135 @@ CVE-2024-26584: 13eca403876bbea3716e82cdfe6f1e6febb38754 net: tls: handle backlogging of crypto requests CVE-2024-26585: 6db22d6c7a6dc914b12c0469b94eb639b6a8a146 tls: fix race between tx work scheduling and socket close CVE-2024-26593: 6be99c51829b24c914cef5bff6164877178e84d9 i2c: i801: Fix block process call transactions + CVE-2024-26602: b6a2a9cbb67545c825ec95f06adb7ff300a2ad71 sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: b2479ab426cef7ab79a13005650eff956223ced2 x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26604: 7f414d306320f837cc3df96cf52161cb8290fb1b Revert "kobject: Remove redundant checks for whether ktype is NULL" + CVE-2024-26606: a7ae586f6f6024f490b8546c8c84670f96bb9b68 binder: signal epoll threads of self-work + CVE-2024-26685: 2c3bdba00283a6c7a5b19481a59a730f46063803 nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26688: 13c5a9fb07105557a1fa9efdb4f23d7ef30b7274 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: ae20db45e482303a20e56f2db667a9d9c54ac7e7 ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26690: 9680b2ab54ba8d72581100e8c45471306101836e net: stmmac: protect updates of 64-bit statistics counters + CVE-2024-26691: 3d16cebf01127f459dcfeb79ed77bd68b124c228 KVM: arm64: Fix circular locking dependency + CVE-2024-26692: 4145ccff546ea868428b3e0fe6818c6261b574a9 smb: Fix regression in writes when non-standard maximum write size negotiated + CVE-2024-26693: 00f4eb31b8193f6070ce24df636883f9c104ca95 wifi: iwlwifi: mvm: fix a crash when we run out of stations + CVE-2024-26694: ab9d4bb9a1892439b3123fc52b19e32b9cdf80ad wifi: iwlwifi: fix double-free bug + CVE-2024-26695: 88aa493f393d2ee38ac140e1f6ac1881346e85d4 crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: ea5ddbc11613b55e5128c85f57b08f907abd9b28 nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: 2e1480538ef60bfee5473dfe02b1ecbaf1a4aa0d nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: 22a77c0f5b8233237731df3288d067af51a2fd7b hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26700: 7407c61f43b66e90ad127d0cdd13cbc9d87141a5 drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: 1d8c67e94e9e977603473a543d4f322cf2c4aa01 iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26703: 5f703935fdb559642d85b2088442ee55a557ae6d tracing/timerlat: Move hrtimer_init to timerlat_fd open() + CVE-2024-26704: 2883940b19c38d5884c8626483811acf4d7e148f ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26705: 54944f45470af5965fb9c28cf962ec30f38a8f5b parisc: BTLB: Fix crash when setting up BTLB at CPU bringup + CVE-2024-26706: fa69a8063f8b27f3c7434a0d4f464a76a62f24d2 parisc: Fix random data corruption from exception handler + CVE-2024-26707: 923dea2a7ea9e1ef5ac4031fba461c1cc92e32b8 net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26708: 4bfe217e075d04e63c092df9d40c608e598c2ef2 mptcp: really cope with fastopen race + CVE-2024-26711: 0e0dab37750926d4fb0144edb1c1ea0612fea273 iio: adc: ad4130: zero-initialize clock init data + CVE-2024-26712: 0516c06b19dc64807c10e01bb99b552bdf2d7dbe powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: 0040386b0b7187bd9c9665ac8b6dad93420bce79 powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: d8e36ff40cf9dadb135f3a97341c02c9a7afcc43 interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: c7ebd8149ee519d27232e6e4940e9c02071b568b usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26716: ed85777c640cf9e6920bb1b60ed8cd48e1f4d873 usb: core: Prevent null pointer dereference in update_port_device_state + CVE-2024-26717: 4cad91344a62536a2949873bad6365fbb6232776 HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: 5735a2671ffb70ea29ca83969fe01316ee2ed6fc dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: cc0037fa592d56e4abb9c7d1c52c4d2dc25cd906 nouveau: offload fence uevents work to workqueue + CVE-2024-26720: ec18ec230301583395576915d274b407743d8f6c mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26723: 48fae67d837488c87379f0c9f27df7391718477c lan966x: Fix crash when adding interface under a lag + CVE-2024-26726: 7bddf18f474f166c19f91b2baf67bf7c5eda03f7 btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: 833775656d447c545133a744a0ed1e189ce61430 btrfs: do not ASSERT() if the newly created subvolume already got read + +CVEs fixed in 6.6.19: + CVE-2023-52640: 52fff5799e3d1b5803ecd2f5f19c13c65f4f7b23 fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: 947c3f3d31ea185ddc8e7f198873f17d36deb24c fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() + CVE-2024-26687: 20980195ec8d2e41653800c45c8c367fa1b1f2b4 xen/events: close evtchn after mapping cleanup + CVE-2024-26730: f006c45a3ea424f8f6c8e4b9283bc245ce2a4d0f hwmon: (nct6775) Fix access to temperature configuration registers + CVE-2024-26731: 9b099ed46dcaf1403c531ff02c3d7400fa37fa26 bpf, sockmap: Fix NULL pointer dereference in sk_psock_verdict_data_ready() + CVE-2024-26733: a3f2c083cb575d80a7627baf3339e78fedccbb91 arp: Prevent overflow in arp_req_get(). + CVE-2024-26734: 919092bd5482b7070ae66d1daef73b600738f3a2 devlink: fix possible use-after-free and memory leaks in devlink_init() + CVE-2024-26735: 9e02973dbc6a91e40aa4f5d87b8c47446fbfce44 ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: 6e6065dd25b661420fac19c34282b6c626fcd35e afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: 8327ed12e8ebc5436bfaa1786c49988894f9c8a6 bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: b8315b2e25b4e68e42fcb74630f824b9a5067765 powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: 28cdbbd38a4413b8eff53399b3f872fd4e80db9d net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: 7c787888d164689da8b1b115f3ef562c1e843af4 net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26741: 334a8348b2df26526f3298848ad6864285592caf dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: 4f5b15c15e6016efb3e14582d02cc4ddf57227df scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: 95175dda017cd4982cd47960536fa1de003d3298 RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: fe2a73d57319feab4b3b175945671ce43492172f RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26747: 4b45829440b1b208948b39cc71f77a37a2536734 usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: 70e8038813f9d3e72df966748ebbc40efe466019 usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: 29e42e1578a10c611b3f1a38f3229b2d664b5d16 usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: 97ba7c1f9c0a2401e644760d857b2386aa895997 ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: 804bd8650a3a2bf3432375f8c97d5049d845ce56 l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: b0365460e945e1117b47cf7329d86de752daff63 crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: ba6b8b02a3314e62571a540efa96560888c5f03e gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26759: 305152314df82b22cf9b181f3dc5fc411002079a mm/swap: fix race when skipping swapcache + CVE-2024-26760: 4ebc079f0c7dcda1270843ab0f38ab4edb8f7921 scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: 2cc1a530ab31c65b52daf3cb5d0883c8b614ea69 cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26763: 64ba01a365980755732972523600a961c4266b75 dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: e7e23fc5d5fe422827c9a43ecb579448f73876c7 fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: dffdf7c783ef291eef38a5a0037584fd1a7fa464 LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: a2fef1d81becf4ff60e1a249477464eae3c3bc2a IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: 71783d1ff65204d69207fd156d4b2eb1d3882375 drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: 88e189bd16e5889e44a41b3309558ebab78b9280 LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: eaf0971fdabf2a93c1429dc6bedf3bbe85dffa30 nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: 83527a13740f57b45f162e3af4c7db4b88521100 HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: 7b24760f3a3c7ae1a176d343136b6c25174b7b27 dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: d3bbe77a76bc52e9d4d0a120f1509be36e25c916 ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: 0184747b552d6b5a14db3b7fcc3b792ce64dedd1 ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: f32d2a745b02123258026e105a008f474f896d6a ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: 673629018ba04906899dcb631beec34d871f709c aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: d637b5118274701e8448f35953877daf04df18b4 spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: 99f1abc34a6dde248d2219d64aa493c76bbdd9eb fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: bc3c2e58d73b28b9a8789fca84778ee165a72d13 fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: 54b79d8786964e2f840e8a2ec4a9f9a50f3d4954 wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 6.6.21: + CVE-2024-26622: 2caa605079488da9601099fbda460cfc1702839f tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26630: ba60fdf75e89ea762bb617be578dc47f27655117 mm: cachestat: fix folio read-after-free in cache walk + CVE-2024-26745: d4d1e4b1513d975961de7bb4f75e450a92d65ebf powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26746: 5e3022ea42e490a36ec6f2cfa6fc603deb0bace4 dmaengine: idxd: Ensure safe user copy of completion record + CVE-2024-26782: ce0809ada38dca8d6d41bb57ab40494855c30582 mptcp: fix double-free on socket dismantle + CVE-2024-26786: f1fb745ee0a6fe43f1d84ec369c7e6af2310fda9 iommufd: Fix iopt_access_list_id overwrite bug + CVE-2024-26787: 176e66269f0de327375fc0ea51c12c2f5a97e4c4 mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: a69c8bbb946936ac4eb6a6ae1e849435aa8d947d dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: 1291d278b5574819a7266568ce4c28bce9438705 crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: 5b696e9c388251f1c7373be92293769a489fd367 dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: b1690ced4d2d8b28868811fb81cd33eee5aefee1 btrfs: dev-replace: properly validate device names + CVE-2024-26793: 93dd420bc41531c9a31498b9538ca83ba6ec191e gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: a278d5c60f21aa15d540abb2f2da6e6d795c3e6e riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26796: e0d17ee872cf8d0f51cc561329b8e1a0aa792bbb drivers: perf: ctr_get_width function for legacy is not defined + CVE-2024-26798: 73a6bd68a1342f3a44cac9dffad81ad6a003e520 fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: 99adc8b4d2f38bf0d06483ec845bc48f60c3f8cf ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: 2ab9a19d896f5a0dd386e1f001c5309bc35f433b Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: 699b103e48ce32d03fc86c35b37ee8ae4288c7e3 stmmac: Clear variable when destroying workqueue + CVE-2024-26803: 16edf51f33f52dff70ed455bc40a6cc443c04664 net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: a0a1db40b23e8ff86dea2786c5ea1470bb23ecb9 net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: d3ada42e534a83b618bbc1e490d23bf0fdae4736 netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26807: 03f1573c9587029730ca68503f5062105b122f61 spi: cadence-qspi: fix pointer reference in runtime PM hooks + +CVEs fixed in 6.6.22: + CVE-2023-28746: c35ca0968de41952af2ad7d22881e4a7c6e1b145 x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set + CVE-2023-52639: f5572c0323cf8b4f1f0618178648a25b8fb8a380 KVM: s390: vsie: fix race during shadow creation + CVE-2024-26652: 995f802abff209514ac2ee03b96224237646cec3 net: pds_core: Fix possible double free in error handling path + CVE-2024-26783: d6159bd4c00594249e305bfe02304c67c506264e mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + +CVEs fixed in 6.6.23: + CVE-2023-6270: eb48680b0255a9e8a9bdc93d6a55b11c31262e62 aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: 10a342fa2fe4c4dd22f2c8fe917d3b1929582076 wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 3ead59bafad05f2967ae2438c0528d53244cfde5 Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: e39a3a14eafcf17f03c037290b78c8f483529028 sr9800: Add check for usbnet_get_endpoints + CVE-2024-26809: ff90050771412b91e928093ccd8736ae680063c2 netfilter: nft_set_pipapo: release elements in clone only from destroy path + +CVEs fixed in 6.6.24: + CVE-2023-47233: 190794848e2b9d15de92d502b6ac652806904f5a wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach + CVE-2024-23307: 8ec4a68a25a231e2303716a0aba8ff1413d47c87 md/raid5: fix atomicity violation in raid5_cache_count + CVE-2024-24861: dc5e4f240473b64f7b2f24424e96c92435ebd8d7 media: xc4000: Fix atomicity violation in xc4000_get_frequency + CVE-2024-26642: c0c2176d1814b92ea4c8e7eb7c9cd94cd99c1b12 netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26643: b2d6f9a5b1cf968f1eaa71085ceeb09c2cb276b1 netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout + CVE-2024-26654: 61d4787692c1fccdc268ffa7a891f9c149f50901 ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26656: e87e08c94c9541b4e18c4c13f2f605935f512605 drm/amdgpu: fix use-after-free bug Outstanding CVEs: CVE-2005-3660: (unk) @@ -190,28 +442,38 @@ CVE-2023-3640: (unk) CVE-2023-37454: (unk) CVE-2023-4010: (unk) - CVE-2023-47233: (unk) + CVE-2023-52485: (unk) drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52585: (unk) drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: (unk) drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52590: (unk) ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52624: (unk) drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: (unk) drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52634: (unk) drm/amd/display: Fix disable_otg_wa logic CVE-2023-6238: (unk) CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) CVE-2023-6535: (unk) - CVE-2023-6536: (unk) - CVE-2023-7042: (unk) CVE-2024-0564: (unk) - CVE-2024-0841: (unk) CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) CVE-2024-23848: (unk) CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk) CVE-2024-25741: (unk) CVE-2024-26596: (unk) net: dsa: fix netdev_priv() dereference before check on non-DSA netdevice events + CVE-2024-26655: (unk) Fix memory leak in posix_clock_open() + CVE-2024-26658: (unk) bcachefs: grab s_umount only if snapshotting + CVE-2024-26672: (unk) drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26686: (unk) fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26699: (unk) drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26756: (unk) md: Don't register sync_thread for reshape directly + CVE-2024-26757: (unk) md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: (unk) md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26784: (unk) pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26785: (unk) iommufd: Fix protection fault in iommufd_test_syz_conv_iova + CVE-2024-26797: (unk) drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26806: (unk) spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks
diff --git a/data/6.7/6.7_CVEs.txt b/data/6.7/6.7_CVEs.txt index 5686674..e077d76 100644 --- a/data/6.7/6.7_CVEs.txt +++ b/data/6.7/6.7_CVEs.txt
@@ -75,6 +75,7 @@ CVE-2023-23039: Fix unknown CVE-2023-26242: Fix unknown CVE-2023-2640: Fix unknown +CVE-2023-28746: Fixed with 6.7.10 CVE-2023-31081: Fix unknown CVE-2023-31082: Fix unknown CVE-2023-32629: Fix unknown @@ -83,7 +84,7 @@ CVE-2023-37454: Fix unknown CVE-2023-4010: Fix unknown CVE-2023-46838: Fixed with 6.7.2 -CVE-2023-47233: Fix unknown +CVE-2023-47233: Fixed with 6.7.12 CVE-2023-50431: Fixed with 6.7.2 CVE-2023-52429: Fixed with 6.7.6 CVE-2023-52436: Fixed with 6.7.1 @@ -111,24 +112,99 @@ CVE-2023-52462: Fixed with 6.7.2 CVE-2023-52463: Fixed with 6.7.2 CVE-2023-52464: Fixed with 6.7.2 +CVE-2023-52465: Fixed with 6.7.2 +CVE-2023-52467: Fixed with 6.7.2 +CVE-2023-52468: Fixed with 6.7.2 +CVE-2023-52469: Fixed with 6.7.2 +CVE-2023-52470: Fixed with 6.7.2 +CVE-2023-52471: Fixed with 6.7.2 +CVE-2023-52472: Fixed with 6.7.2 +CVE-2023-52473: Fixed with 6.7.2 +CVE-2023-52485: Fixed with 6.7.3 +CVE-2023-52486: Fixed with 6.7.3 +CVE-2023-52487: Fixed with 6.7.3 +CVE-2023-52488: Fixed with 6.7.3 +CVE-2023-52489: Fixed with 6.7.3 +CVE-2023-52490: Fixed with 6.7.3 +CVE-2023-52491: Fixed with 6.7.3 +CVE-2023-52492: Fixed with 6.7.3 +CVE-2023-52493: Fixed with 6.7.3 +CVE-2023-52494: Fixed with 6.7.3 +CVE-2023-52495: Fixed with 6.7.3 +CVE-2023-52497: Fixed with 6.7.3 +CVE-2023-52498: Fixed with 6.7.3 +CVE-2023-52583: Fixed with 6.7.4 +CVE-2023-52584: Fixed with 6.7.4 +CVE-2023-52585: Fixed with 6.7.4 +CVE-2023-52586: Fixed with 6.7.4 +CVE-2023-52587: Fixed with 6.7.4 +CVE-2023-52588: Fixed with 6.7.4 +CVE-2023-52589: Fixed with 6.7.4 +CVE-2023-52590: Fixed with 6.7.4 +CVE-2023-52591: Fixed with 6.7.4 +CVE-2023-52593: Fixed with 6.7.4 +CVE-2023-52594: Fixed with 6.7.4 +CVE-2023-52595: Fixed with 6.7.4 +CVE-2023-52596: Fixed with 6.7.4 +CVE-2023-52597: Fixed with 6.7.4 +CVE-2023-52598: Fixed with 6.7.4 +CVE-2023-52599: Fixed with 6.7.4 +CVE-2023-52600: Fixed with 6.7.4 +CVE-2023-52601: Fixed with 6.7.4 +CVE-2023-52602: Fixed with 6.7.4 +CVE-2023-52603: Fixed with 6.7.4 +CVE-2023-52604: Fixed with 6.7.4 +CVE-2023-52606: Fixed with 6.7.4 +CVE-2023-52607: Fixed with 6.7.4 +CVE-2023-52608: Fixed with 6.7.3 +CVE-2023-52609: Fixed with 6.7.2 +CVE-2023-52610: Fixed with 6.7.2 +CVE-2023-52611: Fixed with 6.7.2 +CVE-2023-52612: Fixed with 6.7.2 +CVE-2023-52613: Fixed with 6.7.2 +CVE-2023-52614: Fixed with 6.7.3 +CVE-2023-52615: Fixed with 6.7.3 +CVE-2023-52616: Fixed with 6.7.3 +CVE-2023-52617: Fixed with 6.7.4 +CVE-2023-52618: Fixed with 6.7.4 +CVE-2023-52619: Fixed with 6.7.4 +CVE-2023-52621: Fixed with 6.7.4 +CVE-2023-52622: Fixed with 6.7.4 +CVE-2023-52623: Fixed with 6.7.4 +CVE-2023-52624: Fixed with 6.7.3 +CVE-2023-52625: Fixed with 6.7.3 +CVE-2023-52626: Fixed with 6.7.3 +CVE-2023-52627: Fixed with 6.7.3 +CVE-2023-52630: Fixed with 6.7.5 +CVE-2023-52631: Fixed with 6.7.5 +CVE-2023-52632: Fixed with 6.7.4 +CVE-2023-52633: Fixed with 6.7.4 +CVE-2023-52634: Fixed with 6.7.4 +CVE-2023-52635: Fixed with 6.7.4 +CVE-2023-52636: Fixed with 6.7.5 +CVE-2023-52637: Fixed with 6.7.6 +CVE-2023-52638: Fixed with 6.7.6 +CVE-2023-52639: Fixed with 6.7.6 +CVE-2023-52640: Fixed with 6.7.7 +CVE-2023-52641: Fixed with 6.7.7 CVE-2023-6238: Fix unknown CVE-2023-6240: Fix unknown -CVE-2023-6270: Fix unknown -CVE-2023-6356: Fix unknown +CVE-2023-6270: Fixed with 6.7.11 +CVE-2023-6356: Fixed with 6.7.2 CVE-2023-6535: Fix unknown -CVE-2023-6536: Fix unknown -CVE-2023-7042: Fix unknown +CVE-2023-6536: Fixed with 6.7.2 +CVE-2023-7042: Fixed with 6.7.11 CVE-2024-0193: Fixed with 6.7 CVE-2024-0564: Fix unknown -CVE-2024-0841: Fix unknown +CVE-2024-0841: Fixed with 6.7.6 CVE-2024-1085: Fixed with 6.7.2 CVE-2024-1086: Fixed with 6.7.3 CVE-2024-1151: Fixed with 6.7.6 CVE-2024-21803: Fix unknown -CVE-2024-22099: Fix unknown +CVE-2024-2193: Fix unknown +CVE-2024-22099: Fixed with 6.7.11 CVE-2024-22386: Fix unknown -CVE-2024-23196: Fix unknown -CVE-2024-23307: Fix unknown +CVE-2024-23307: Fixed with 6.7.12 CVE-2024-23848: Fix unknown CVE-2024-23849: Fixed with 6.7.3 CVE-2024-23850: Fixed with 6.7.6 @@ -137,7 +213,7 @@ CVE-2024-24858: Fix unknown CVE-2024-24859: Fix unknown CVE-2024-24860: Fixed with 6.7.2 -CVE-2024-24861: Fix unknown +CVE-2024-24861: Fixed with 6.7.12 CVE-2024-24864: Fix unknown CVE-2024-25739: Fix unknown CVE-2024-25740: Fix unknown @@ -161,3 +237,199 @@ CVE-2024-26597: Fixed with 6.7.2 CVE-2024-26598: Fixed with 6.7.2 CVE-2024-26599: Fixed with 6.7.2 +CVE-2024-26600: Fixed with 6.7.5 +CVE-2024-26601: Fixed with 6.7.5 +CVE-2024-26602: Fixed with 6.7.6 +CVE-2024-26603: Fixed with 6.7.6 +CVE-2024-26604: Fixed with 6.7.6 +CVE-2024-26605: Fixed with 6.7.5 +CVE-2024-26606: Fixed with 6.7.6 +CVE-2024-26607: Fixed with 6.7.3 +CVE-2024-26608: Fixed with 6.7.3 +CVE-2024-26610: Fixed with 6.7.3 +CVE-2024-26611: Fixed with 6.7.3 +CVE-2024-26612: Fixed with 6.7.3 +CVE-2024-26614: Fixed with 6.7.3 +CVE-2024-26615: Fixed with 6.7.3 +CVE-2024-26616: Fixed with 6.7.3 +CVE-2024-26617: Fixed with 6.7.3 +CVE-2024-26618: Fixed with 6.7.3 +CVE-2024-26619: Fixed with 6.7.3 +CVE-2024-26620: Fixed with 6.7.3 +CVE-2024-26621: Fixed with 6.7.6 +CVE-2024-26622: Fixed with 6.7.9 +CVE-2024-26623: Fixed with 6.7.4 +CVE-2024-26625: Fixed with 6.7.4 +CVE-2024-26627: Fixed with 6.7.4 +CVE-2024-26629: Fixed with 6.7.3 +CVE-2024-26630: Fixed with 6.7.9 +CVE-2024-26631: Fixed with 6.7.2 +CVE-2024-26632: Fixed with 6.7.2 +CVE-2024-26633: Fixed with 6.7.2 +CVE-2024-26634: Fixed with 6.7.3 +CVE-2024-26635: Fixed with 6.7.3 +CVE-2024-26636: Fixed with 6.7.3 +CVE-2024-26637: Fixed with 6.7.3 +CVE-2024-26638: Fixed with 6.7.3 +CVE-2024-26640: Fixed with 6.7.4 +CVE-2024-26641: Fixed with 6.7.4 +CVE-2024-26642: Fixed with 6.7.12 +CVE-2024-26643: Fixed with 6.7.12 +CVE-2024-26644: Fixed with 6.7.3 +CVE-2024-26645: Fixed with 6.7.3 +CVE-2024-26646: Fixed with 6.7.3 +CVE-2024-26647: Fixed with 6.7.3 +CVE-2024-26648: Fixed with 6.7.3 +CVE-2024-26649: Fixed with 6.7.3 +CVE-2024-26650: Fixed with 6.7.3 +CVE-2024-26651: Fixed with 6.7.11 +CVE-2024-26652: Fixed with 6.7.10 +CVE-2024-26653: Fixed with 6.7.12 +CVE-2024-26654: Fixed with 6.7.12 +CVE-2024-26655: Fixed with 6.7.12 +CVE-2024-26656: Fixed with 6.7.12 +CVE-2024-26657: Fixed with 6.7.12 +CVE-2024-26658: Fixed with 6.7.5 +CVE-2024-26659: Fixed with 6.7.5 +CVE-2024-26660: Fixed with 6.7.5 +CVE-2024-26661: Fixed with 6.7.5 +CVE-2024-26662: Fixed with 6.7.5 +CVE-2024-26663: Fixed with 6.7.5 +CVE-2024-26664: Fixed with 6.7.5 +CVE-2024-26665: Fixed with 6.7.5 +CVE-2024-26666: Fixed with 6.7.5 +CVE-2024-26667: Fixed with 6.7.5 +CVE-2024-26668: Fixed with 6.7.3 +CVE-2024-26669: Fixed with 6.7.3 +CVE-2024-26670: Fixed with 6.7.3 +CVE-2024-26671: Fixed with 6.7.4 +CVE-2024-26672: Fixed with 6.7.4 +CVE-2024-26673: Fixed with 6.7.4 +CVE-2024-26674: Fixed with 6.7.5 +CVE-2024-26675: Fixed with 6.7.5 +CVE-2024-26676: Fixed with 6.7.5 +CVE-2024-26677: Fixed with 6.7.5 +CVE-2024-26678: Fixed with 6.7.5 +CVE-2024-26679: Fixed with 6.7.5 +CVE-2024-26680: Fixed with 6.7.5 +CVE-2024-26681: Fixed with 6.7.5 +CVE-2024-26682: Fixed with 6.7.5 +CVE-2024-26683: Fixed with 6.7.5 +CVE-2024-26684: Fixed with 6.7.5 +CVE-2024-26685: Fixed with 6.7.6 +CVE-2024-26686: Fixed with 6.7.6 +CVE-2024-26687: Fixed with 6.7.6 +CVE-2024-26688: Fixed with 6.7.6 +CVE-2024-26689: Fixed with 6.7.6 +CVE-2024-26690: Fixed with 6.7.6 +CVE-2024-26691: Fixed with 6.7.6 +CVE-2024-26692: Fixed with 6.7.6 +CVE-2024-26693: Fixed with 6.7.6 +CVE-2024-26694: Fixed with 6.7.6 +CVE-2024-26695: Fixed with 6.7.6 +CVE-2024-26696: Fixed with 6.7.6 +CVE-2024-26697: Fixed with 6.7.6 +CVE-2024-26698: Fixed with 6.7.6 +CVE-2024-26699: Fixed with 6.7.6 +CVE-2024-26700: Fixed with 6.7.6 +CVE-2024-26702: Fixed with 6.7.6 +CVE-2024-26703: Fixed with 6.7.6 +CVE-2024-26704: Fixed with 6.7.6 +CVE-2024-26705: Fixed with 6.7.6 +CVE-2024-26706: Fixed with 6.7.6 +CVE-2024-26707: Fixed with 6.7.6 +CVE-2024-26708: Fixed with 6.7.6 +CVE-2024-26709: Fixed with 6.7.6 +CVE-2024-26711: Fixed with 6.7.6 +CVE-2024-26712: Fixed with 6.7.6 +CVE-2024-26713: Fixed with 6.7.6 +CVE-2024-26714: Fixed with 6.7.6 +CVE-2024-26715: Fixed with 6.7.6 +CVE-2024-26716: Fixed with 6.7.6 +CVE-2024-26717: Fixed with 6.7.6 +CVE-2024-26718: Fixed with 6.7.6 +CVE-2024-26719: Fixed with 6.7.6 +CVE-2024-26720: Fixed with 6.7.6 +CVE-2024-26721: Fixed with 6.7.6 +CVE-2024-26722: Fixed with 6.7.6 +CVE-2024-26723: Fixed with 6.7.6 +CVE-2024-26724: Fixed with 6.7.6 +CVE-2024-26725: Fixed with 6.7.6 +CVE-2024-26726: Fixed with 6.7.6 +CVE-2024-26727: Fixed with 6.7.6 +CVE-2024-26728: Fixed with 6.7.7 +CVE-2024-26729: Fixed with 6.7.7 +CVE-2024-26730: Fixed with 6.7.7 +CVE-2024-26731: Fixed with 6.7.7 +CVE-2024-26732: Fixed with 6.7.7 +CVE-2024-26733: Fixed with 6.7.7 +CVE-2024-26734: Fixed with 6.7.7 +CVE-2024-26735: Fixed with 6.7.7 +CVE-2024-26736: Fixed with 6.7.7 +CVE-2024-26737: Fixed with 6.7.7 +CVE-2024-26738: Fixed with 6.7.7 +CVE-2024-26739: Fixed with 6.7.7 +CVE-2024-26740: Fixed with 6.7.7 +CVE-2024-26741: Fixed with 6.7.7 +CVE-2024-26742: Fixed with 6.7.7 +CVE-2024-26743: Fixed with 6.7.7 +CVE-2024-26744: Fixed with 6.7.7 +CVE-2024-26745: Fixed with 6.7.9 +CVE-2024-26746: Fixed with 6.7.9 +CVE-2024-26747: Fixed with 6.7.7 +CVE-2024-26748: Fixed with 6.7.7 +CVE-2024-26749: Fixed with 6.7.7 +CVE-2024-26751: Fixed with 6.7.7 +CVE-2024-26752: Fixed with 6.7.7 +CVE-2024-26753: Fixed with 6.7.7 +CVE-2024-26754: Fixed with 6.7.7 +CVE-2024-26755: Fixed with 6.7.7 +CVE-2024-26756: Fixed with 6.7.7 +CVE-2024-26757: Fixed with 6.7.7 +CVE-2024-26758: Fixed with 6.7.7 +CVE-2024-26759: Fixed with 6.7.7 +CVE-2024-26760: Fixed with 6.7.7 +CVE-2024-26761: Fixed with 6.7.7 +CVE-2024-26762: Fixed with 6.7.7 +CVE-2024-26763: Fixed with 6.7.7 +CVE-2024-26764: Fixed with 6.7.7 +CVE-2024-26765: Fixed with 6.7.7 +CVE-2024-26766: Fixed with 6.7.7 +CVE-2024-26767: Fixed with 6.7.7 +CVE-2024-26768: Fixed with 6.7.7 +CVE-2024-26769: Fixed with 6.7.7 +CVE-2024-26770: Fixed with 6.7.7 +CVE-2024-26771: Fixed with 6.7.7 +CVE-2024-26772: Fixed with 6.7.7 +CVE-2024-26773: Fixed with 6.7.7 +CVE-2024-26774: Fixed with 6.7.7 +CVE-2024-26775: Fixed with 6.7.7 +CVE-2024-26776: Fixed with 6.7.7 +CVE-2024-26777: Fixed with 6.7.7 +CVE-2024-26778: Fixed with 6.7.7 +CVE-2024-26779: Fixed with 6.7.7 +CVE-2024-26782: Fixed with 6.7.9 +CVE-2024-26783: Fixed with 6.7.9 +CVE-2024-26784: Fixed with 6.7.9 +CVE-2024-26785: Fixed with 6.7.9 +CVE-2024-26786: Fixed with 6.7.9 +CVE-2024-26787: Fixed with 6.7.9 +CVE-2024-26788: Fixed with 6.7.9 +CVE-2024-26789: Fixed with 6.7.9 +CVE-2024-26790: Fixed with 6.7.9 +CVE-2024-26791: Fixed with 6.7.9 +CVE-2024-26793: Fixed with 6.7.9 +CVE-2024-26795: Fixed with 6.7.9 +CVE-2024-26796: Fixed with 6.7.9 +CVE-2024-26797: Fixed with 6.7.9 +CVE-2024-26798: Fixed with 6.7.9 +CVE-2024-26799: Fixed with 6.7.9 +CVE-2024-26801: Fixed with 6.7.9 +CVE-2024-26802: Fixed with 6.7.9 +CVE-2024-26803: Fixed with 6.7.9 +CVE-2024-26804: Fixed with 6.7.9 +CVE-2024-26805: Fixed with 6.7.9 +CVE-2024-26806: Fixed with 6.7.9 +CVE-2024-26807: Fixed with 6.7.9 +CVE-2024-26808: Fixed with 6.7.3 +CVE-2024-26809: Fixed with 6.7.11
diff --git a/data/6.7/6.7_security.txt b/data/6.7/6.7_security.txt index 4abdc0c..ee2c092 100644 --- a/data/6.7/6.7_security.txt +++ b/data/6.7/6.7_security.txt
@@ -32,6 +32,21 @@ CVE-2023-52462: 40617d45ea05535105e202a8a819e388a2b1f036 bpf: fix check for attempt to corrupt spilled pointer CVE-2023-52463: d4a714873db0866cc471521114eeac4a5072d548 efivarfs: force RO when remounting if SetVariable is not supported CVE-2023-52464: 426fae93c01dffa379225eb2bd4d3cdc42c6eec5 EDAC/thunderx: Fix possible out-of-bounds string access + CVE-2023-52465: bd3d2ec447ede9da822addf3960a5f4275e3ae76 power: supply: Fix null pointer dereference in smb2_probe + CVE-2023-52467: 7f2c410ac470959b88e03dadd94b7a0b71df7973 mfd: syscon: Fix null pointer dereference in of_syscon_register() + CVE-2023-52468: 0f1486dafca3398c4c46b9f6e6452fa27e73b559 class: fix use-after-free in class_register() + CVE-2023-52469: 3426f059eacc33ecc676b0d66539297e1cfafd02 drivers/amd/pm: fix a use-after-free in kv_parse_power_table + CVE-2023-52470: fb2d8bc9b5e55848b8a7c3c028e2ee8d49f28f97 drm/radeon: check the alloc_workqueue return value in radeon_crtc_init() + CVE-2023-52471: 3cd9b9bee33f39f6c6d52360fe381b89a7b12695 ice: Fix some null pointer dereference issues in ice_ptp.c + CVE-2023-52472: 95ad8b6879e2e49d02e3bfc0e1fb46421633fe2a crypto: rsa - add a check for allocation failure + CVE-2023-52473: 02871710b93058eb1249d5847c0b2d1c2c3c98ae thermal: core: Fix NULL pointer dereference in zone registration error path + CVE-2023-52609: 77d210e8db4d61d43b2d16df66b1ec46fad2ee01 binder: fix race between mmput() and do_exit() + CVE-2023-52610: f5346df0591d10bc948761ca854b1fae6d2ef441 net/sched: act_ct: fix skb leak and crash on ooo frags + CVE-2023-52611: 0e9ffff72a0674cd6656314dbd99cdd2123a3030 wifi: rtw88: sdio: Honor the host max_req_size in the RX path + CVE-2023-52612: 71c6670f9f032ec67d8f4e3f8db4646bf5a62883 crypto: scomp - fix req->dst buffer overflow + CVE-2023-52613: 6010a9fc14eb1feab5cafd84422001134fe8ec58 drivers/thermal/loongson2_thermal: Fix incorrect PTR_ERR() judgment + CVE-2023-6356: 70154e8d015c9b4fb56c1a2ef1fc8b83d45c7f68 nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length + CVE-2023-6536: c32d355f507fa81cf23aaa4dd4150e696cb8ebaf nvmet-tcp: fix a crash in nvmet_req_complete() CVE-2024-1085: 7e0f5f8ae3e5f17e367f7040ade7a467f1f0e3b9 netfilter: nf_tables: check if catch-all set element is active in next generation CVE-2024-24860: d1c6a77d6d48215ba723f910eaabdb6e60d21a37 Bluetooth: Fix atomicity violation in {min,max}_key_size_set CVE-2024-26586: a361c2c1da5dbb13ca67601cf961ab3ad68af383 mlxsw: spectrum_acl_tcam: Fix stack corruption @@ -47,16 +62,143 @@ CVE-2024-26597: 17d06a5c44d8fd2e8e61bac295b09153496f87e1 net: qualcomm: rmnet: fix global oob in rmnet_policy CVE-2024-26598: dd3956a1b3dd11f46488c928cb890d6937d1ca80 KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache CVE-2024-26599: bae45b7ebb31984b63b13c3519fd724b3ce92123 pwm: Fix out-of-bounds access in of_pwm_single_xlate() + CVE-2024-26631: 3bb5849675ae1d592929798a2b37ea450879c855 ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc_work + CVE-2024-26632: ca3ede3f5893e2d26d4dbdef1eec28a8487fafde block: Fix iterating over an empty bio with bio_for_each_folio_all + CVE-2024-26633: ba8d904c274268b18ef3dc11d3ca7b24a96cb087 ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() CVEs fixed in 6.7.3: + CVE-2023-52485: 303197775a97416b62d4da69280d0c120a20e009 drm/amd/display: Wake DMCUB before sending a command + CVE-2023-52486: bfd0feb1b109cb63b87fdcd00122603787c75a1a drm: Don't unref the same fb many times by mistake due to deadlock handling + CVE-2023-52487: e24d6f5a7f2d95a98a46257a5a5a5381d572894f net/mlx5e: Fix peer flow lists handling + CVE-2023-52488: aa7cb4787698add9367b19f7afc667662c9bdb23 serial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO + CVE-2023-52489: 3a01daace71b521563c38bbbf874e14c3e58adb7 mm/sparsemem: fix race in accessing memory_section->usage + CVE-2023-52490: 3889a418b6eb9a1113fb989aaadecf2f64964767 mm: migrate: fix getting incorrect page mapping during page migration + CVE-2023-52491: 6e2f37022f0fc0893da4d85a0500c9d547fffd4c media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_dec_device_run + CVE-2023-52492: 9263fd2a63487c6d04cbb7b74a48fb12e1e352d0 dmaengine: fix NULL pointer in channel unregistration function + CVE-2023-52493: b8eff20d87092e14cac976d057cb0aea2f1d0830 bus: mhi: host: Drop chan lock before queuing buffers + CVE-2023-52494: ecf8320111822a1ae5d5fc512953eab46d543d0b bus: mhi: host: Add alignment check for event ring read pointer + CVE-2023-52495: d26edf4ee3672cc9828f2a3ffae34086a712574d soc: qcom: pmic_glink_altmode: fix port sanity check + CVE-2023-52497: bffc4cc334c5bb31ded54bc3cfd651735a3cb79e erofs: fix lz4 inplace decompression + CVE-2023-52498: 9bd3dce27b01c51295b60e1433e1dadfb16649f7 PM: sleep: Fix possible deadlocks in core system-wide PM code + CVE-2023-52608: 12dc4217f16551d6dee9cbefc23fdb5659558cda firmware: arm_scmi: Check mailbox/SMT channel for consistency + CVE-2023-52614: eaef4650fa2050147ca25fd7ee43bc0082e03c87 PM / devfreq: Fix buffer overflow in trans_stat_show + CVE-2023-52615: 6822a14271786150e178869f1495cc03e74c5029 hwrng: core - Fix page fault dead lock on mmap-ed hwrng + CVE-2023-52616: 7abdfd45a650c714d5ebab564bb1b988f14d9b49 crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init + CVE-2023-52624: 2ef98c6d753a744e333b7e34b9cf687040fba57d drm/amd/display: Wake DMCUB before executing GPINT commands + CVE-2023-52625: 820c3870c491946a78950cdf961bf40e28c1025f drm/amd/display: Refactor DMCUB enter/exit idle interface + CVE-2023-52626: 33cdeae8c6fb58cc445f859b67c014dc9f60b4e0 net/mlx5e: Fix operation precedence bug in port timestamping napi_poll context + CVE-2023-52627: 55aca2ce91a63740278502066beaddbd841af9c6 iio: adc: ad7091r: Allow users to configure device events CVE-2024-1086: f05a497e7bc8851eeeb3a58da180ba469efebb05 netfilter: nf_tables: reject QUEUE/DROP verdict parameters CVE-2024-23849: 0b787c2dea15e7a2828fa3a74a5447df4ed57711 net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv + CVE-2024-26607: 2a4c6af7934a7b4c304542c38fee35e09cc1770c drm/bridge: sii902x: Fix probing race issue + CVE-2024-26608: 6993328a4cd62a24df254b587c0796a4a1eecc95 ksmbd: fix global oob in ksmbd_nl_policy + CVE-2024-26610: f32a81999d0b8e5ce60afb5f6a3dd7241c17dd67 wifi: iwlwifi: fix a memory corruption + CVE-2024-26611: 5cd781f7216f980207af09c5e0e1bb1eda284540 xsk: fix usage of multi-buffer BPF helpers for ZC XDP + CVE-2024-26612: 4200ad3e46ce50f410fdda302745489441bc70f0 netfs, fscache: Prevent Oops in fscache_put_cache() + CVE-2024-26614: 3982fe726a63fb3de6005e534e2ac8ca7e0aca2a tcp: make sure init the accept_queue's spinlocks once + CVE-2024-26615: 8f3f9186e5bb96a9c9654c41653210e3ea7e48a6 net/smc: fix illegal rmb_desc access in SMC-D connection dump + CVE-2024-26616: 34de0f04684ec00c093a0455648be055f0e8e24f btrfs: scrub: avoid use-after-free when chunk length is not 64K aligned + CVE-2024-26617: 05509adf297924f51e1493aa86f9fcde1433ed80 fs/proc/task_mmu: move mmu notification mechanism inside mm lock + CVE-2024-26618: 814af6b4e6000e574e74d92197190edf07cc3680 arm64/sme: Always exit sme_alloc() early with existing storage + CVE-2024-26619: 2fa79badf4bfeffda6b5032cf62b828486ec9a99 riscv: Fix module loading free order + CVE-2024-26620: cdd134d56138302976685e6c7bc4755450b3880e s390/vfio-ap: always filter entire AP matrix + CVE-2024-26629: 8f5b860de87039b007e84a28a5eefc888154e098 nfsd: fix RELEASE_LOCKOWNER + CVE-2024-26634: 8072699aa9e67d1727692cfb3c347263bb627fb9 net: fix removing a namespace with conflicting altnames + CVE-2024-26635: df57fc2f2abf548aa889a36ab0bdcc94a75399dc llc: Drop support for ETH_P_TR_802_2. + CVE-2024-26636: c451c008f563d56d5e676c9dcafae565fcad84bb llc: make llc_ui_sendmsg() more robust against bonding changes + CVE-2024-26637: aa74ce30a8a40d19a4256de4ae5322e71344a274 wifi: ath11k: rely on mac80211 debugfs handling for vif + CVE-2024-26638: b0028f333420a65a53a63978522db680b37379dd nbd: always initialize struct msghdr completely + CVE-2024-26644: d8680b722f0ff6d7a01ddacc1844e0d52354d6ff btrfs: don't abort filesystem when attempting to snapshot deleted subvolume + CVE-2024-26645: bf4aeff7da85c3becd39fb73bac94122331c30fb tracing: Ensure visibility when inserting an element into tracing_map + CVE-2024-26646: c9d6d63b6c03afaa6f185df249af693a7939577c thermal: intel: hfi: Add syscore callbacks for system-wide PM + CVE-2024-26647: cf656fc7276e5b3709a81bc9d9639459be2b2647 drm/amd/display: Fix late derefrence 'dsc' check in 'link_set_dsc_pps_packet()' + CVE-2024-26648: c02d257c654191ecda1dc1af6875d527e85310e7 drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() + CVE-2024-26649: d3887448486caeef9687fb5dfebd4ff91e0f25aa drm/amdgpu: Fix the null pointer when load rlc firmware + CVE-2024-26650: d281ac9a987c553d93211b90fd4fe97d8eca32cd platform/x86: p2sb: Allow p2sb_bar() calls during PCI device probe + CVE-2024-26668: 00c2c29aa36d1d1827c51a3720e9f893a22c7c6a netfilter: nft_limit: reject configurations that cause integer overflow + CVE-2024-26669: c04709b2cc99ae31c346f79f0211752d7b74df01 net/sched: flower: Fix chain template offload + CVE-2024-26670: baa0aaac16432019651e0d60c41cd34a0c3c3477 arm64: entry: fix ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD + CVE-2024-26808: 36a0a80f32209238469deb481967d777a3d539ee netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain + +CVEs fixed in 6.7.4: + CVE-2023-52583: 76cb2aa3421fee4fde706dec41b1344bc0a9ad67 ceph: fix deadlock or deadcode of misusing dget() + CVE-2023-52584: 9a3881b1f07db1bb55cb0108e6f05cfd027eaf2e spmi: mediatek: Fix UAF on device remove + CVE-2023-52585: 195a6289282e039024ad30ba66e6f94a4d0fbe49 drm/amdgpu: Fix possible NULL dereference in amdgpu_ras_query_error_status_helper() + CVE-2023-52586: 14f109bf74dd67e1d0469fed859c8e506b0df53f drm/msm/dpu: Add mutex lock in control vblank irq + CVE-2023-52587: 7c7bd4d561e9dc6f5b7df9e184974915f6701a89 IB/ipoib: Fix mcast list locking + CVE-2023-52588: b8094c0f1aae329b1c60a275a780d6c2c9ff7aa3 f2fs: fix to tag gcing flag on page during block migration + CVE-2023-52589: 7bb1a2822aa2c2de4e09bf7c56dd93bd532f1fa7 media: rkisp1: Fix IRQ disable race issue + CVE-2023-52590: de940cede3c41624e2de27f805b490999f419df9 ocfs2: Avoid touching renamed directory if parent does not change + CVE-2023-52591: c04c162f82ac403917780eb6d1654694455d4e7c reiserfs: Avoid touching renamed directory if parent does not change + CVE-2023-52593: 3739121443f5114c6bcf6d841a5124deb006b878 wifi: wfx: fix possible NULL pointer dereference in wfx_set_mfp_ap() + CVE-2023-52594: be609c7002dd4504b15b069cb7582f4c778548d1 wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() + CVE-2023-52595: fdb580ed05df8973aa5149cafa598c64bebcd0cb wifi: rt2x00: restart beacon queue when hardware reset + CVE-2023-52596: 2ae7081bc10123b187e36a4f3a8e53768de31489 sysctl: Fix out of bounds access for empty sysctl registers + CVE-2023-52597: 2823db0010c400e4b2b12d02aa5d0d3ecb15d7c7 KVM: s390: fix setting of fpc register + CVE-2023-52598: bdce67df7f12fb0409fbc604ce7c4254703f56d4 s390/ptrace: handle setting of fpc register correctly + CVE-2023-52599: 5a6660139195f5e2fbbda459eeecb8788f3885fe jfs: fix array-index-out-of-bounds in diNewExt + CVE-2023-52600: bacdaa04251382d7efd4f09f9a0686bfcc297e2e jfs: fix uaf in jfs_evict_inode + CVE-2023-52601: fc67a2e18f4c4e3f07e9f9ae463da24530470e73 jfs: fix array-index-out-of-bounds in dbAdjTree + CVE-2023-52602: bff9d4078a232c01e42e9377d005fb2f4d31a472 jfs: fix slab-out-of-bounds Read in dtSearch + CVE-2023-52603: 6e2902ecc77e9760a9fc447f56d598383e2372d2 UBSAN: array-index-out-of-bounds in dtSplitRoot + CVE-2023-52604: 59342822276f753e49d27ef5eebffbba990572b9 FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree + CVE-2023-52606: 848e1d7fd710900397e1d0e7584680c1c04e3afd powerpc/lib: Validate size for vector operations + CVE-2023-52607: ffd29dc45bc0355393859049f6becddc3ed08f74 powerpc/mm: Fix null-pointer dereference in pgtable_cache_add + CVE-2023-52617: e129c7fa7070fbce57feb0bfc5eaa65eef44b693 PCI: switchtec: Fix stdev_release() crash after surprise hot remove + CVE-2023-52618: a2c6206f18104fba7f887bf4dbbfe4c41adc4339 block/rnbd-srv: Check for unlikely string overflow + CVE-2023-52619: cd40e43f870cf21726b22487a95ed223790b3542 pstore/ram: Fix crash when setting number of cpus to an odd number + CVE-2023-52621: c7f1b6146f4a46d727c0d046284c28b6882c6304 bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers + CVE-2023-52622: dc3e0f55bec4410f3d74352c4a7c79f518088ee2 ext4: avoid online resizing failures due to oversized flex bg + CVE-2023-52623: 8f860c8407470baff2beb9982ad6b172c94f1d0a SUNRPC: Fix a suspicious RCU usage warning + CVE-2023-52632: 1556c242e64cdffe58736aa650b0b395854fe4d4 drm/amdkfd: Fix lock dependency warning with srcu + CVE-2023-52633: b427f55e9d4185f6f17cc1e3296eb8d0c4425283 um: time-travel: fix time corruption + CVE-2023-52634: ce29728ef6485a367934cc100249c66dd3cde5b6 drm/amd/display: Fix disable_otg_wa logic + CVE-2023-52635: ae815e2fdc284ab31651d52460698bd89c0fce22 PM / devfreq: Synchronize devfreq_monitor_[start/stop] + CVE-2024-26623: 5939feb63ea1f011027576c64b68b681cbad31ca pds_core: Prevent race issues involving the adminq + CVE-2024-26625: 8e51f084b5716653f19e291ed5f026791d4b3ed4 llc: call sock_orphan() at release time + CVE-2024-26627: 07e3ca0f17f579491b5f54e9ed05173d6c1d6fcb scsi: core: Move scsi_host_busy() out of host lock for waking up EH handler + CVE-2024-26640: 1b8adcc0e2c584fec778add7777fe28e20781e60 tcp: add sanity checks to rx zerocopy + CVE-2024-26641: c835df3bcc14858ae9b27315dd7de76370b94f3a ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() + CVE-2024-26671: f1bc0d8163f8ee84a8d5affdf624cfad657df1d2 blk-mq: fix IO hang from sbitmap wakeup race + CVE-2024-26672: 7b5d58c07024516c0e81b95e98f37710cf402c53 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' + CVE-2024-26673: 38cc1605338d99205a263707f4dde76408d3e0e8 netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations CVEs fixed in 6.7.5: + CVE-2023-52630: cd33b330cb21675189e747953845f5c3689e4912 blk-iocost: Fix an UBSAN shift-out-of-bounds warning + CVE-2023-52631: 686820fe141ea0220fc6fdfc7e5694f915cf64b2 fs/ntfs3: Fix an NULL dereference bug + CVE-2023-52636: bd9442e553ab8bf74b8be3b3c0a43bf4af4dc9b8 libceph: just wait for more data to be available on the socket CVE-2024-26581: 6eb14441f10602fa1cf691da9d685718b68b78a9 netfilter: nft_set_rbtree: skip end interval element from gc + CVE-2024-26600: 396e17af6761b3cc9e6e4ca94b4de7f642bfece1 phy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP + CVE-2024-26601: 6b0d48647935e4b8c7b75d1eccb9043fcd4ee581 ext4: regenerate buddy after block freeing failed if under fc replay + CVE-2024-26605: ef90508574d7af48420bdc5f7b9a4f1cdd26bc70 PCI/ASPM: Fix deadlock when enabling ASPM + CVE-2024-26658: 5b41d3fd04c6757b9c2a60a0c5b2609cae9999df bcachefs: grab s_umount only if snapshotting + CVE-2024-26659: 418456c0ce56209610523f21734c5612ee634134 xhci: handle isoc Babble and Buffer Overrun events properly + CVE-2024-26660: a938eab9586eea31cfd129a507f552efae14d738 drm/amd/display: Implement bounds check for stream encoder creation in DCN301 + CVE-2024-26661: 39f24c08363af1cd945abad84e3c87fd3e3c845a drm/amd/display: Add NULL test for 'timing generator' in 'dcn21_set_pipe()' + CVE-2024-26662: 0c863cab0e9173f8b6c7bc328bee3b8625f131b5 drm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()' + CVE-2024-26663: 0cd331dfd6023640c9669d0592bc0fd491205f87 tipc: Check the bearer type before calling tipc_udp_nl_bearer_add() + CVE-2024-26664: 3a7753bda55985dc26fae17795cb10d825453ad1 hwmon: (coretemp) Fix out-of-bounds memory access + CVE-2024-26665: 7dc9feb8b1705cf00de20563b6bc4831f4c99dab tunnels: fix out of bounds access when building IPv6 PMTU error + CVE-2024-26666: c255c3b653c6e8b52ac658c305e2fece2825f7ad wifi: mac80211: fix RCU use in TDLS fast-xmit + CVE-2024-26667: eb4f56f3ff5799ca754ae6d811803a63fe25a4a2 drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup + CVE-2024-26674: 2da241c5ed78d0978228a1150735539fe1a60eca x86/lib: Revert to _ASM_EXTABLE_UA() for {get,put}_user() fixups + CVE-2024-26675: 210d938f963dddc543b07e66a79b7d8d4bd00bd8 ppp_async: limit MRU to 64K + CVE-2024-26676: 82ae47c5c3a6b27fdc0f9e83c1499cb439c56140 af_unix: Call kfree_skb() for dead unix_(sk)->oob_skb in GC. + CVE-2024-26677: 63719f490e6a89896e9a463d2b45e8203eab23ae rxrpc: Fix delayed ACKs to not set the reference serial number + CVE-2024-26678: 4adeeff8c12321cd453412a659c3c0eeb9bb2397 x86/efistub: Use 1:1 file:memory mapping for PE/COFF .compat section + CVE-2024-26679: 307fa8a75ab7423fa5c73573ec3d192de5027830 inet: read sk->sk_family once in inet_recv_error() + CVE-2024-26680: e42e334c645575be5432adee224975d4f536fdb1 net: atlantic: Fix DMA mapping for PTP hwts ring + CVE-2024-26681: d91964cdada76740811b7c621239f9c407820dbc netdevsim: avoid potential loop in nsim_dev_trap_report_work() + CVE-2024-26682: ea88bde8e3fefbe4268f6991375dd629895a090a wifi: mac80211: improve CSA/ECSA connection refusal + CVE-2024-26683: ce112c941c2b172afba3e913a90c380647d53975 wifi: cfg80211: detect stuck ECSA element in probe resp + CVE-2024-26684: 3b48c9e258c8691c2f093ee07b1ea3764caaa1b2 net: stmmac: xgmac: fix handling of DPP safety error for DMA channels CVEs fixed in 6.7.6: CVE-2023-52429: cd70175481f63af31901dd463e44386f033c3f4c dm: limit the number of targets and parameter size area + CVE-2023-52637: fc74b9cb789cae061bbca7b203a3842e059f6b5d can: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER) + CVE-2023-52638: 559b6322f9480bff68cfa98d108991e945a4f284 can: j1939: prevent deadlock by changing j1939_socks_lock to rwlock + CVE-2023-52639: 28bb27824f25f36e5f80229a358d66ee09244082 KVM: s390: vsie: fix race during shadow creation + CVE-2024-0841: ec78418801ef7b0c22cd6a30145ec480dd48db39 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super CVE-2024-1151: da05eb129c0208ef907420480c5859083408dc2c net: openvswitch: limit the number of recursions from action sets CVE-2024-23850: 5a172344bfdabb46458e03708735d7b1a918c468 btrfs: do not ASSERT() if the newly created subvolume already got read CVE-2024-23851: cd70175481f63af31901dd463e44386f033c3f4c dm: limit the number of targets and parameter size area @@ -65,6 +207,157 @@ CVE-2024-26584: ab6397f072e5097f267abf5cb08a8004e6b17694 net: tls: handle backlogging of crypto requests CVE-2024-26585: e327ed60bff4a991cd7a709c47c4f0c5b4a4fd57 tls: fix race between tx work scheduling and socket close CVE-2024-26593: 609c7c1cc976e740d0fed4dbeec688b3ecb5dce2 i2c: i801: Fix block process call transactions + CVE-2024-26602: c5b2063c65d05e79fad8029324581d86cfba7eea sched/membarrier: reduce the ability to hammer on sys_membarrier + CVE-2024-26603: 627e28cbb65564e55008315d9e02fbb90478beda x86/fpu: Stop relying on userspace for info to fault in xsave buffer + CVE-2024-26604: b746d52ce7bcac325a2fa264216ead85b7fbbfaa Revert "kobject: Remove redundant checks for whether ktype is NULL" + CVE-2024-26606: 93b372c39c40cbf179e56621e6bc48240943af69 binder: signal epoll threads of self-work + CVE-2024-26621: 7432376c913381c5f24d373a87ff629bbde94b47 mm: huge_memory: don't force huge page alignment on 32 bit + CVE-2024-26685: 626daab3811b772086aef1bf8eed3ffe6f523eff nilfs2: fix potential bug in end_buffer_async_write + CVE-2024-26686: 27978243f165b44e342f28f449b91327944ea071 fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats + CVE-2024-26687: 9be71aa12afa91dfe457b3fb4a444c42b1ee036b xen/events: close evtchn after mapping cleanup + CVE-2024-26688: ec78418801ef7b0c22cd6a30145ec480dd48db39 fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super + CVE-2024-26689: 7958c1bf5b03c6f1f58e724dbdec93f8f60b96fc ceph: prevent use-after-free in encode_cap_msg() + CVE-2024-26690: e6af0f082a4b87b99ad033003be2a904a1791b3f net: stmmac: protect updates of 64-bit statistics counters + CVE-2024-26691: 3ab1c40a1e915e350d9181a4603af393141970cc KVM: arm64: Fix circular locking dependency + CVE-2024-26692: 63c35afd50e28b49c5b75542045a8c42b696dab9 smb: Fix regression in writes when non-standard maximum write size negotiated + CVE-2024-26693: c12f0f4d4caf23b1bfdc2602b6b70d56bdcd6aa7 wifi: iwlwifi: mvm: fix a crash when we run out of stations + CVE-2024-26694: d24eb9a27bea8fe5237fa71be274391d9d51eff2 wifi: iwlwifi: fix double-free bug + CVE-2024-26695: b5909f197f3b26aebedca7d8ac7b688fd993a266 crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked + CVE-2024-26696: e38585401d464578d30f5868ff4ca54475c34f7d nilfs2: fix hang in nilfs_lookup_dirty_data_buffers() + CVE-2024-26697: 2000016bab499074e6248ea85aeea7dd762355d9 nilfs2: fix data corruption in dsync block recovery for small block sizes + CVE-2024-26698: 0e8875de9dad12805ff66e92cd5edea6a421f1cd hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove + CVE-2024-26699: ca400d8e0c1c9d79c08dfb6b7f966e26c8cae7fb drm/amd/display: Fix array-index-out-of-bounds in dcn35_clkmgr + CVE-2024-26700: 5cd7185d2db76c42a9b7e69adad9591d9fca093f drm/amd/display: Fix MST Null Ptr for RV + CVE-2024-26702: 57d05dbbcd0b3dc0c252103b43012eef5d6430d1 iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC + CVE-2024-26703: 2354d29986ebd138f89c2b73fecf8237e0a4ad6b tracing/timerlat: Move hrtimer_init to timerlat_fd open() + CVE-2024-26704: 559ddacb90da1d8786dd8ec4fd76bbfa404eaef6 ext4: fix double-free of blocks due to wrong extents moved_len + CVE-2024-26705: aa52be55276614d33f22fbe7da36c40d6432d10b parisc: BTLB: Fix crash when setting up BTLB at CPU bringup + CVE-2024-26706: ce31d79aa1f13a2345791f84935281a2c194e003 parisc: Fix random data corruption from exception handler + CVE-2024-26707: 547545e50c913861219947ce490c68a1776b9b51 net: hsr: remove WARN_ONCE() in send_hsr_supervision_frame() + CVE-2024-26708: e158fb9679d15a2317ec13b4f6301bd26265df2f mptcp: really cope with fastopen race + CVE-2024-26709: c90fdea9cac9eb419fc266e75d625cb60c8f7f6c powerpc/iommu: Fix the missing iommu_group_put() during platform domain attach + CVE-2024-26711: 02876e2df02f8b17a593d77a0a7879a8109b27e1 iio: adc: ad4130: zero-initialize clock init data + CVE-2024-26712: 70ef2ba1f4286b2b73675aeb424b590c92d57b25 powerpc/kasan: Fix addr error caused by page alignment + CVE-2024-26713: 12b55cfdd3ab91c70cc945cf8b5f45984ea0abf1 powerpc/pseries/iommu: Fix iommu initialisation during DLPAR add + CVE-2024-26714: 7a3a70dd08e4b7dffc2f86f2c68fc3812804b9d0 interconnect: qcom: sc8180x: Mark CO0 BCM keepalive + CVE-2024-26715: 36695d5eeeefe5a64b47d0336e7c8fc144e78182 usb: dwc3: gadget: Fix NULL pointer dereference in dwc3_gadget_suspend + CVE-2024-26716: 465b545d1d7ef282192ddd4439b08279bdb13f6f usb: core: Prevent null pointer dereference in update_port_device_state + CVE-2024-26717: e28d6b63aeecbda450935fb58db0e682ea8212d3 HID: i2c-hid-of: fix NULL-deref on failed power up + CVE-2024-26718: 0c45a20cbe68bc4d681734f5c03891124a274257 dm-crypt, dm-verity: disable tasklets + CVE-2024-26719: 985d053f7633d8b539ab1531738d538efac678a9 nouveau: offload fence uevents work to workqueue + CVE-2024-26720: 65977bed167a92e87085e757fffa5798f7314c9f mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again + CVE-2024-26721: ff5999fb03f467e1e7159f0ddb199c787f7512b9 drm/i915/dsc: Fix the macro that calculates DSCC_/DSCA_ PPS reg address + CVE-2024-26722: ed5b8b735369b40d6c1f8ef3e62d369f74b4c491 ASoC: rt5645: Fix deadlock in rt5645_jack_detect_work() + CVE-2024-26723: 2a492f01228b7d091dfe38974ef40dccf8f9f2f1 lan966x: Fix crash when adding interface under a lag + CVE-2024-26724: 1596126ea50228f0ed96697bae4e9368fda02c56 net/mlx5: DPLL, Fix possible use after free after delayed work timer triggers + CVE-2024-26725: 087739cbd0d0b87b6cec2c0799436ac66e24acc8 dpll: fix possible deadlock during netlink dump operation + CVE-2024-26726: a4b7741c8302e28073bfc6dd1c2e73598e5e535e btrfs: don't drop extent_map for free space inode on write error + CVE-2024-26727: 5a172344bfdabb46458e03708735d7b1a918c468 btrfs: do not ASSERT() if the newly created subvolume already got read + +CVEs fixed in 6.7.7: + CVE-2023-52640: 0830c5cf19bdec50d0ede4755ddc463663deb21c fs/ntfs3: Fix oob in ntfs_listxattr + CVE-2023-52641: 847b68f58c212f0439c5a8101b3841f32caffccd fs/ntfs3: Add NULL ptr dereference checking at the end of attr_allocate_frame() + CVE-2024-26728: 2d392f7268a1a9bfbd98c831f0f4c964e59aa145 drm/amd/display: fix null-pointer dereference on edid reading + CVE-2024-26729: 351080ba3414c96afff0f1338b4aeb2983195b80 drm/amd/display: Fix potential null pointer dereference in dc_dmub_srv + CVE-2024-26730: c196387820c9214c5ceaff56d77303c82514b8b1 hwmon: (nct6775) Fix access to temperature configuration registers + CVE-2024-26731: d61608a4e394f23e0dca099df9eb8e555453d949 bpf, sockmap: Fix NULL pointer dereference in sk_psock_verdict_data_ready() + CVE-2024-26732: 897f75e2cde8a5f9f7529b55249af1fa4248c83b net: implement lockless setsockopt(SO_PEEK_OFF) + CVE-2024-26733: 3ab0d6f8289ba8402ca95a9fc61a34909d5e1f3a arp: Prevent overflow in arp_req_get(). + CVE-2024-26734: e91d3561e28d7665f4f837880501dc8755f635a9 devlink: fix possible use-after-free and memory leaks in devlink_init() + CVE-2024-26735: 02b08db594e8218cfbc0e4680d4331b457968a9b ipv6: sr: fix possible use-after-free and null-ptr-deref + CVE-2024-26736: d34a5e57632bb5ff825196ddd9a48ca403626dfa afs: Increase buffer size in afs_update_volume_status() + CVE-2024-26737: 7d80a9e745fa5b47da3bca001f186c02485c7c33 bpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel + CVE-2024-26738: 46e36ebd5e00a148b67ed77c1d31675996f77c25 powerpc/pseries/iommu: DLPAR add doesn't completely initialize pci_controller + CVE-2024-26739: f4e294bbdca8ac8757db436fc82214f3882fc7e7 net/sched: act_mirred: don't override retval if we already lost the skb + CVE-2024-26740: 60ddea1600bc476e0f5e02bce0e29a460ccbf0be net/sched: act_mirred: use the backlog for mirred ingress + CVE-2024-26741: f8c4a6b850882bc47aaa864b720c7a2ee3102f39 dccp/tcp: Unhash sk from ehash for tb2 alloc failure after check_estalblished(). + CVE-2024-26742: b9433b25cb06c415c9cb24782599649a406c8d6d scsi: smartpqi: Fix disable_managed_interrupts + CVE-2024-26743: bab8875c06ebda5e01c5c4cab30022aed85c14e6 RDMA/qedr: Fix qedr_create_user_qp error flow + CVE-2024-26744: c99a827d3cff9f84e1cb997b7cc6386d107aa74d RDMA/srpt: Support specifying the srpt_service_guid parameter + CVE-2024-26747: 01f82de440f2ab07c259b7573371e1c42e5565db usb: roles: fix NULL pointer issue when put module's reference + CVE-2024-26748: 92d20406a3d4ff3e8be667c79209dc9ed31df5b3 usb: cdns3: fix memory double free when handle zero packet + CVE-2024-26749: 9a07244f614bc417de527b799da779dcae780b5d usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() + CVE-2024-26751: 6abe0895b63c20de06685c8544b908c7e413efa8 ARM: ep93xx: Add terminator to gpiod_lookup_table + CVE-2024-26752: 83340c66b498e49353530e41542500fc8a4782d6 l2tp: pass correct message length to ip6_append_data + CVE-2024-26753: ef1e47d50324e232d2da484fe55a54274eeb9bc1 crypto: virtio/akcipher - Fix stack overflow on memcpy + CVE-2024-26754: 5013bd54d283eda5262c9ae3bcc966d01daf8576 gtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp() + CVE-2024-26755: 60d6130d0ac1d883ed93c2a1e10aadb60967fd48 md: Don't suspend the array for interrupted reshape + CVE-2024-26756: 13b520fb62b772e408f9b79c5fe18ad414e90417 md: Don't register sync_thread for reshape directly + CVE-2024-26757: 2ea169c5a0b1134d573d07fc27a16f327ad0e7d3 md: Don't ignore read-only array in md_check_recovery() + CVE-2024-26758: a55f0d6179a19c6b982e2dc344d58c98647a3be0 md: Don't ignore suspended array in md_check_recovery() + CVE-2024-26759: d183a4631acfc7af955c02a02e739cec15f5234d mm/swap: fix race when skipping swapcache + CVE-2024-26760: 1cfe9489fb563e9a0c9cdc5ca68257a44428c2ec scsi: target: pscsi: Fix bio_put() for error case + CVE-2024-26761: 3a3181a71935774bda2398451256d7441426420b cxl/pci: Fix disabling memory if DVSEC CXL Range does not match a CFMWS window + CVE-2024-26762: 21e5e84f3f63fdf44e49642a6e45cd895e921a84 cxl/pci: Skip to handle RAS errors if CXL.mem device is detached + CVE-2024-26763: d9e3763a505e50ba3bd22846f2a8db99429fb857 dm-crypt: don't modify the data when using authenticated encryption + CVE-2024-26764: 1dc7d74fe456944a9b1c57bd776280249f441ac6 fs/aio: Restrict kiocb_set_cancel_fn() to I/O submitted via libaio + CVE-2024-26765: 8bf2ca8c60712af288b88ba80f8e4df4573d923f LoongArch: Disable IRQ before init_fn() for nonboot CPUs + CVE-2024-26766: 9034a1bec35e9f725315a3bb6002ef39666114d9 IB/hfi1: Fix sdma.h tx->num_descs off-by-one error + CVE-2024-26767: beea9ab9080cd2ef46296070bb327af066ee09d7 drm/amd/display: fixed integer types and null check locations + CVE-2024-26768: 0f6810e39898af2d2cabd9313e4dbc945fb5dfdd LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_core_pic[MAX_CORE_PIC] + CVE-2024-26769: 1d86f79287206deec36d63b89c741cf542b6cadd nvmet-fc: avoid deadlock on delete association path + CVE-2024-26770: e71cc4a1e584293deafff1a7dea614b0210d0443 HID: nvidia-shield: Add missing null pointer checks to LED initialization + CVE-2024-26771: f2a5e30d1e9a629de6179fa23923a318d5feb29e dmaengine: ti: edma: Add some null pointer checks to the edma_probe + CVE-2024-26772: 21dbe20589c7f48e9c5d336ce6402bcebfa6d76a ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() + CVE-2024-26773: a2576ae9a35c078e488f2c573e9e6821d651fbbe ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found() + CVE-2024-26774: 8cf9cc602cfb40085967c0d140e32691c8b71cf3 ext4: avoid dividing by 0 in mb_update_avg_fragment_size() when block bitmap corrupt + CVE-2024-26775: 19a77b27163820f793b4d022979ffdca8f659b77 aoe: avoid potential deadlock at set_capacity + CVE-2024-26776: e4168ac25b4bd378bd7dda322d589482a136c1fd spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected + CVE-2024-26777: 1d11dd3ea5d039c7da089f309f39c4cd363b924b fbdev: sis: Error out if pixclock equals zero + CVE-2024-26778: a9ca4e80d23474f90841251f4ac0d941fa337a01 fbdev: savage: Error out if pixclock equals zero + CVE-2024-26779: 281280276b70c822f55ce15b661f6d1d3228aaa9 wifi: mac80211: fix race condition on enabling fast-xmit + +CVEs fixed in 6.7.9: + CVE-2024-26622: 6edefe1b6c29a9932f558a898968a9fcbeec5711 tomoyo: fix UAF write bug in tomoyo_write_control() + CVE-2024-26630: fe7e008e0ce728252e4ec652cceebcc62211657c mm: cachestat: fix folio read-after-free in cache walk + CVE-2024-26745: 5da6d306f315344af1ca2eff4bd9b10b130f0c28 powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV + CVE-2024-26746: bb71e040323175e18c233a9afef32ba14fa64eb7 dmaengine: idxd: Ensure safe user copy of completion record + CVE-2024-26782: 85933e80d077c9ae2227226beb86c22f464059cc mptcp: fix double-free on socket dismantle + CVE-2024-26783: bdd21eed8b72f9e28d6c279f6db258e090c79080 mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index + CVE-2024-26784: f6aaf131e4d4a9a26040ecc018eb70ab8b3d355d pmdomain: arm: Fix NULL dereference on scmi_perf_domain removal + CVE-2024-26785: fc719ecbca45c9c046640d72baddba3d83e0bc0b iommufd: Fix protection fault in iommufd_test_syz_conv_iova + CVE-2024-26786: 9526a46cc0c378d381560279bea9aa34c84298a0 iommufd: Fix iopt_access_list_id overwrite bug + CVE-2024-26787: d610a307225951929b9dff807788439454476f85 mmc: mmci: stm32: fix DMA API overlapping mappings warning + CVE-2024-26788: 677102a930643c31f1b4c512b041407058bdfef8 dmaengine: fsl-qdma: init irq after reg initialization + CVE-2024-26789: 9e8ecd4908b53941ab6f0f51584ab80c6c6606c4 crypto: arm64/neonbs - fix out-of-bounds access on short input + CVE-2024-26790: ad2f8920c314e0a2d9e984fc94b729eca3cda471 dmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read + CVE-2024-26791: 343eecb4ff49a7b1cc1dfe86958a805cf2341cfb btrfs: dev-replace: properly validate device names + CVE-2024-26793: 5366969a19a8a0d2ffb3d27ef6e8905e5e4216f8 gtp: fix use-after-free and null-ptr-deref in gtp_newlink() + CVE-2024-26795: 2a1728c15ec4f45ed9248ae22f626541c179bfbe riscv: Sparse-Memory/vmemmap out-of-bounds fix + CVE-2024-26796: e4f50e85de5a6b21dfdc0d7ca435eba4f62935c3 drivers: perf: ctr_get_width function for legacy is not defined + CVE-2024-26797: 50a6302cf881f67f1410461a68fe9eabd00ff31d drm/amd/display: Prevent potential buffer overflow in map_hw_resources + CVE-2024-26798: a2c881413dcc5d801bdc9535e51270cc88cb9cd8 fbcon: always restore the old font data in fbcon_do_set_font() + CVE-2024-26799: d5a7726e6ea62d447b79ab5baeb537ea6bdb225b ASoC: qcom: Fix uninitialized pointer dmactl + CVE-2024-26801: dd594cdc24f2e48dab441732e6dfcafd6b0711d1 Bluetooth: Avoid potential use-after-free in hci_error_reset + CVE-2024-26802: f72cf22dccc94038cbbaa1029cb575bf52e5cbc8 stmmac: Clear variable when destroying workqueue + CVE-2024-26803: 8f7a3894e58e6f5d5815533cfde60e3838947941 net: veth: clear GRO when clearing XDP even when down + CVE-2024-26804: 049d7989c67e8dd50f07a2096dbafdb41331fb9b net: ip_tunnel: prevent perpetual headroom growth + CVE-2024-26805: 59fc3e3d049e39e7d0d271f20dd5fb47c57faf1d netlink: Fix kernel-infoleak-after-free in __skb_datagram_iter + CVE-2024-26806: 041562ebc4759c9932b59a06527f8753b86da365 spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooks + CVE-2024-26807: 34e1d5c4407c78de0e3473e1fbf8fb74dbe66d03 spi: cadence-qspi: fix pointer reference in runtime PM hooks + +CVEs fixed in 6.7.10: + CVE-2023-28746: 18867a204511d032c2a6ed083461a10905061fac x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set + CVE-2024-26652: ffda0e962f270b3ec937660afd15b685263232d3 net: pds_core: Fix possible double free in error handling path + +CVEs fixed in 6.7.11: + CVE-2023-6270: 079cba4f4e307c69878226fdf5228c20aa1c969c aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts + CVE-2023-7042: db755cf93f5895bbac491d27a8e2fe04c5f9ae4a wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() + CVE-2024-22099: 5f9fe302dd3a9bbc50f4888464c1773f45166bfd Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security + CVE-2024-26651: efba65777f98457773c5b65e3135c6132d3b015f sr9800: Add check for usbnet_get_endpoints + CVE-2024-26809: 821e28d5b506e6a73ccc367ff792bd894050d48b netfilter: nft_set_pipapo: release elements in clone only from destroy path + +CVEs fixed in 6.7.12: + CVE-2023-47233: 6678a1e7d896c00030b31491690e8ddc9a90767a wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach + CVE-2024-23307: 1191f9391105e49115715e55030476849f6f6da5 md/raid5: fix atomicity violation in raid5_cache_count + CVE-2024-24861: b0864de231dece0f7226b909521bebc86105743a media: xc4000: Fix atomicity violation in xc4000_get_frequency + CVE-2024-26642: 8e07c16695583a66e81f67ce4c46e94dece47ba7 netfilter: nf_tables: disallow anonymous set with timeout flag + CVE-2024-26643: 5224afbc30c3ca9ba23e752f0f138729b2c48dd8 netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout + CVE-2024-26653: 420babea4f1881a7c4ea22a8e218b8c6895d3f21 usb: misc: ljca: Fix double free in error handling path + CVE-2024-26654: e955e8a7f38a856fc6534ba4e6bffd4d5cc80ac3 ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs + CVE-2024-26655: a88649b49523e8cbe95254440d803e38c19d2341 Fix memory leak in posix_clock_open() + CVE-2024-26656: af054a5fb24a144f99895afce9519d709891894c drm/amdgpu: fix use-after-free bug + CVE-2024-26657: 74cd204c7afe498aa9dcc3ebf0ecac53d477a429 drm/sched: fix null-ptr-deref in init entity Outstanding CVEs: CVE-2005-3660: (unk) @@ -151,26 +444,17 @@ CVE-2023-3640: (unk) CVE-2023-37454: (unk) CVE-2023-4010: (unk) - CVE-2023-47233: (unk) CVE-2023-6238: (unk) CVE-2023-6240: (unk) - CVE-2023-6270: (unk) - CVE-2023-6356: (unk) CVE-2023-6535: (unk) - CVE-2023-6536: (unk) - CVE-2023-7042: (unk) CVE-2024-0564: (unk) - CVE-2024-0841: (unk) CVE-2024-21803: (unk) - CVE-2024-22099: (unk) + CVE-2024-2193: (unk) CVE-2024-22386: (unk) - CVE-2024-23196: (unk) - CVE-2024-23307: (unk) CVE-2024-23848: (unk) CVE-2024-24857: (unk) CVE-2024-24858: (unk) CVE-2024-24859: (unk) - CVE-2024-24861: (unk) CVE-2024-24864: (unk) CVE-2024-25739: (unk) CVE-2024-25740: (unk)
diff --git a/data/CVEs.txt b/data/CVEs.txt index c62d5e9..844a71a 100644 --- a/data/CVEs.txt +++ b/data/CVEs.txt
@@ -1485,6 +1485,8 @@ CVE-2019-2215: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - f5cb779ba16334b45ba8946d6bfa6d9834d1527f (v2.6.12-rc2 to v4.16-rc1) CVE-2019-25044: 47cdee29ef9d94e485eb08f962c74943023a5271 - c3e2219216c92919a6bd1711f340f5faa98695e6 (v5.2-rc3 to v5.2-rc4) CVE-2019-25045: 6a53b7593233ab9e4f96873ebacc0f653a55c3e1 - dbb2483b2a46fbaf833cfb5deb5ed9cace9c7399 (v4.15-rc6 to v5.1) +CVE-2019-25160: 446fda4f26822b2d42ab3396aafcedf38a9ff2b6 - 5578de4834fe0f2a34fedc7374be691443396d1f (v2.6.19-rc1 to v5.0) +CVE-2019-25162: 611e12ea0f121a31d9e9c4ce2a18a77abc2f28d6 - e4c72c06c367758a14f227c847f9d623f1994ecf (v4.3-rc1 to v6.0-rc1) CVE-2019-3016: 0b9f6c4615c993d2b552e0d2bd1ade49b56e5beb - 8c6de56a42e0c657955e12b882a81ef07d1d073e (v4.10-rc1 to v5.6-rc1) CVE-2019-3459: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7c9cbd0b5e38a1672fcd137894ace3b042dfbf69 (v2.6.12-rc2 to v5.1-rc1) CVE-2019-3460: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - af3d5d1c87664a4f150fcf3534c6567cb19909b0 (v2.6.12-rc2 to v5.1-rc1) @@ -1721,6 +1723,19 @@ CVE-2020-36691: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7690aa1cdf7c4565ad6b013b324c28b685505e24 (v2.6.12-rc2 to v5.8-rc1) CVE-2020-36694: 80055dab5de0c8677bc148c4717ddfc753a9148e - cc00bcaa589914096edef7fb87ca5cee4a166b5c (v4.15-rc1 to v5.10) CVE-2020-36766: ca684386e6e21ba1511061f71577cdb6c3f2b3d3 - 6c42227c3467549ddc65efe99c869021d2f4a570 (v4.8-rc1 to v5.9-rc1) +CVE-2020-36775: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - df77fbd8c5b222c680444801ffd20e8bbc90a56e (v2.6.12-rc2 to v5.7-rc1) +CVE-2020-36776: 371a3bc79c11b707d7a1b7a2c938dc3cc042fffb - 34ab17cc6c2c1ac93d7e5d53bb972df9a968f085 (v5.8-rc4 to v5.13-rc1) +CVE-2020-36777: 0230d60e4661d9ced6fb0b9a30f182ebdafbba7a - bf9a40ae8d722f281a2721779595d6df1c33a0bf (v4.5-rc1 to v5.13-rc1) +CVE-2020-36778: 10b17004a74c384c6f410af355b0d6d7a168f613 - a85c5c7a3aa8041777ff691400b4046e56149fd3 (v5.6-rc1 to v5.13-rc1) +CVE-2020-36779: ea6dd25deeb5b797a145be7f860e3085e7d104c3 - 2c662660ce2bd3b09dae21a9a9ac9395e1e6c00b (v5.6-rc1 to v5.13-rc1) +CVE-2020-36780: (n/a) - 3a4f326463117cee3adcb72999ca34a9aaafda93 (unk to v5.13-rc1) +CVE-2020-36781: (n/a) - 47ff617217ca6a13194fcb35c6c3a0c57c080693 (unk to v5.13-rc1) +CVE-2020-36782: 13d6eb20fc79a1e606307256dad4098375539a09 - 278e5bbdb9a94fa063c0f9bcde2479d0b8042462 (v4.16-rc1 to v5.13-rc1) +CVE-2020-36783: 93222bd9b966105f43418fd336654ad10045783a - 223125e37af8a641ea4a09747a6a52172fc4b903 (v4.15-rc1 to v5.13-rc1) +CVE-2020-36784: 7fa32329ca03148fb2c07b4ef3247b8fc0488d6a - 23ceb8462dc6f4b4decdb5536a7e5fc477cdf0b6 (v4.5-rc1 to v5.13-rc1) +CVE-2020-36785: ad85094b293e40e7a2f831b0311a389d952ebd5e - ba11bbf303fafb33989e95473e409f6ab412b18d (v5.8-rc1 to v5.13-rc1) +CVE-2020-36786: 9289cdf399922a1bd801a8cd946a79581c00a380 - 6045b01dd0e3cd3759eafe7f290ed04c957500b1 (v5.10-rc1 to v5.13-rc1) +CVE-2020-36787: d2b4387f3bdf016e266d23cf657465f557721488 - 3536169f8531c2c5b153921dc7d1ac9fd570cda7 (v5.0-rc1 to v5.13-rc1) CVE-2020-3702: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 56c5485c9e444c2e85e11694b6c44f1338fc20fd (v2.6.12-rc2 to v5.12-rc1-dontuse) CVE-2020-4788: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - f79643787e0a0762d2409b7b8334e83f22d85695 (v2.6.12-rc2 to v5.10-rc5) CVE-2020-7053: 1acfc104cdf8a3408f0e83b4115d4419c6315005 - 7dc40713618c884bf07c030d1ab1f47a9dc1f310 (v4.14-rc1 to v5.2-rc1) @@ -1965,6 +1980,273 @@ CVE-2021-45486: 73f156a6e8c1074ac6327e0abd1169e95eb66463 - aa6dd211e4b1dde9d5dc25d699d35f789ae7eeba (v3.16-rc1 to v5.13-rc1) CVE-2021-45868: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9bf3d20331295b1ecb81f4ed9ef358c51699a050 (v2.6.12-rc2 to v5.16-rc1) CVE-2021-46283: 65038428b2c6c5be79d3f78a6b79c0cdc3a58a41 - ad9f151e560b016b6ad3280b48e42fa11e1a5440 (v5.7-rc1 to v5.13-rc7) +CVE-2021-46904: 72dc1c096c7051a48ab1dbb12f71976656b55eb5 - 8a12f8836145ffe37e9c8733dce18c22fb668b66 (v2.6.27-rc1 to v5.12-rc7) +CVE-2021-46905: 8a12f8836145ffe37e9c8733dce18c22fb668b66 - 2ad5692db72874f02b9ad551d26345437ea4f7f3 (v5.12-rc7 to v5.13-rc1) +CVE-2021-46906: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6be388f4a35d2ce5ef7dbf635a8964a5da7f799f (v2.6.12-rc2 to v5.13-rc5) +CVE-2021-46908: (n/a) - 9601148392520e2e134936e76788fc2a6371e7be (unk to v5.12-rc8) +CVE-2021-46909: 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 - 30e3b4f256b4e366a61658c294f6a21b8626dda7 (v4.13-rc1 to v5.12-rc8) +CVE-2021-46910: 2a15ba82fa6ca3f35502b3060f22118a938d2889 - d624833f5984d484c5e3196f34b926f9e71dafee (v5.11-rc1 to v5.12-rc8) +CVE-2021-46911: 5a4b9fe7fece62ecab6fb28fe92362f83b41c33e - 1a73e427b824133940c2dd95ebe26b6dce1cbf10 (v5.7-rc1 to v5.12-rc8) +CVE-2021-46912: 9cb8e048e5d93825ec5e8dfb5b8df4987ea25745 - 97684f0970f6e112926de631fdd98d9693c7e5c1 (v5.7-rc1 to v5.12-rc8) +CVE-2021-46913: 4094445229760d0d31a4190dfe88fe815c9fc34e - 4d8f9065830e526c83199186c5f56a6514f457d2 (v5.7-rc1 to v5.12-rc8) +CVE-2021-46914: 6f82b25587354ce7c9c42e0b53d8b0770b900847 - debb9df311582c83fe369baa35fa4b92e8a9c58a (v5.9-rc1 to v5.12-rc8) +CVE-2021-46915: c26844eda9d4fdbd266660e3b3de2d0270e3a1ed - b895bdf5d643b6feb7c60856326dd4feb6981560 (v4.13 to v5.12-rc8) +CVE-2021-46916: b02e5a0ebb172c8276cea3151942aac681f7a4a6 - 31166efb1cee348eb6314e9c0095d84cbeb66b9d (v5.11-rc1 to v5.12-rc8) +CVE-2021-46917: da32b28c95a79e399e18c03f8178f41aec9c66e4 - ea9aadc06a9f10ad20a90edc0a484f1147d88a7a (v5.8-rc6 to v5.12-rc8) +CVE-2021-46918: 8e50d392652f20616a136165dff516b86baf5e49 - 6df0e6c57dfc064af330071f372f11aa8c584997 (v5.11-rc1 to v5.12-rc8) +CVE-2021-46919: c52ca478233c172b2d322b5241d6279a8661cbba - 0fff71c5a311e1264988179f7dcc217fda15fadd (v5.6-rc1 to v5.12-rc8) +CVE-2021-46920: bfe1d56091c1a404b3d4ce7e9809d745fc4453bb - ea941ac294d75d0ace50797aebf0056f6f8f7a7f (v5.6-rc1 to v5.12-rc8) +CVE-2021-46921: b519b56e378ee82caf9b079b04f5db87dedc3251 - 84a24bf8c52e66b7ac89ada5e3cfbe72d65c1896 (v4.15-rc1 to v5.12) +CVE-2021-46922: 8c657a0590de585b1115847c17b34a58025f2f4b - 9d5171eab462a63e2fbebfccf6026e92be018f20 (v5.12-rc1-dontuse to v5.12) +CVE-2021-46923: 9caccd41541a6f7d6279928d9f971f6642c361af - 012e332286e2bb9f6ac77d195f17e74b2963d663 (v5.12-rc1-dontuse to v5.16-rc8) +CVE-2021-46924: 68957303f44a501af5cf37913208a2acaa6bcdf1 - 1b9dadba502234eea7244879b8d5d126bfaf9f0c (v3.16-rc1 to v5.16-rc8) +CVE-2021-46925: 5f08318f617b05b6ee389d8bd174c7af921ebf19 - 349d43127dac00c15231e8ffbcaabd70f7b0e544 (v4.11-rc1 to v5.16-rc8) +CVE-2021-46926: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 385f287f9853da402d94278e59f594501c1d1dad (v2.6.12-rc2 to v5.16-rc7) +CVE-2021-46927: 5b78ed24e8ec48602c1d6f5a188e58d000c81e2b - 3a0152b219523227c2a62a0a122cf99608287176 (v5.15-rc1 to v5.16-rc8) +CVE-2021-46928: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 484730e5862f6b872dca13840bed40fd7c60fa26 (v2.6.12-rc2 to v5.16-rc7) +CVE-2021-46929: d25adbeb0cdb860fb39e09cdd025e9cfc954c5ab - 5ec7d18d1813a5bead0b495045606c93873aecbb (v4.14-rc1 to v5.16-rc8) +CVE-2021-46930: 83374e035b6286731c5aa617844c7b724294c2a7 - 8c313e3bfd9adae8d5c4ba1cc696dcbc86fbf9bf (v5.2-rc1 to v5.16-rc8) +CVE-2021-46931: 5f29458b77d51c104554575b73184c243930aa87 - 918fc3855a6507a200e9cf22c20be852c0982687 (v5.7-rc1 to v5.16-rc8) +CVE-2021-46932: 5a6eb676d3bc4d7a6feab200a92437b62ad298da - 9f3ccdc3f6ef10084ceb3a47df0961bec6196fd0 (v2.6.23-rc1 to v5.16-rc8) +CVE-2021-46933: 5e33f6fdf735cda1d4580fe6f1878da05718fe73 - b1e0887379422975f237d43d8839b751a6bcf154 (v4.0-rc1 to v5.16-rc8) +CVE-2021-46934: 7d5cb45655f2e9e37ef75d18f50c0072ef14a38b - bb436283e25aaf1533ce061605d23a9564447bdf (v4.15-rc1 to v5.16-rc8) +CVE-2021-46935: 74310e06be4d74dcf67cd108366710dee5c576d5 - cfd0d84ba28c18b531648c9d4a35ecca89ad9901 (v4.14-rc1 to v5.16-rc8) +CVE-2021-46936: 61a7e26028b94805fd686a6dc9dbd9941f8f19b0 - e22e45fc9e41bf9fcc1e92cfb78eb92786728ef0 (v2.6.27-rc1 to v5.16-rc8) +CVE-2021-46937: 4bc05954d0076655cfaf6f0135585bdc20cd6b11 - ebb3f994dd92f8fb4d70c7541091216c1e10cb71 (v5.15-rc1 to v5.16-rc8) +CVE-2021-46938: 1c357a1e86a4227a6b6059f2de118ae47659cebc - 8e947c8f4a5620df77e43c9c75310dc510250166 (v4.6-rc1 to v5.13-rc1) +CVE-2021-46939: (n/a) - aafe104aa9096827a429bc1358f8260ee565b7cc (unk to v5.13-rc1) +CVE-2021-46940: 9972d5d84d76982606806b2ce887f70c2f8ba60a - 13a779de4175df602366d129e41782ad7168cef0 (v5.10-rc4 to v5.13-rc1) +CVE-2021-46941: 41ce1456e1dbbc7355d0fcc10cf7c337c13def24 - f88359e1588b85cf0e8209ab7d6620085f3441d9 (v4.12-rc1 to v5.13-rc1) +CVE-2021-46942: 37d1e2e3642e2380750d7f35279180826f29660e - 734551df6f9bedfbefcd113ede665945e9de0b99 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-46943: 6d5f26f2e045f2377b524516194657c00efbbce8 - ad91849996f9dd79741a961fd03585a683b08356 (v5.2-rc1 to v5.13-rc1) +CVE-2021-46944: 6d5f26f2e045f2377b524516194657c00efbbce8 - 3630901933afba1d16c462b04d569b7576339223 (v5.2-rc1 to v5.13-rc1) +CVE-2021-46945: 014c9caa29d3a44e0de695c99ef18bec3e887d52 - ac2f7ca51b0929461ea49918f27c11b680f28995 (v5.11-rc1 to v5.13-rc1) +CVE-2021-46947: e26ca4b535820b1445dcef3c0f82b3fb5b45108b - 99ba0ea616aabdc8e26259fd722503e012199a76 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-46948: 12804793b17c0e19115a90d98f2f3df0cb79e233 - 83b09a1807415608b387c7bc748d329fefc5617e (v5.10-rc1 to v5.13-rc1) +CVE-2021-46949: 12804793b17c0e19115a90d98f2f3df0cb79e233 - 5b1faa92289b53cad654123ed2bc8e10f6ddd4ac (v5.10-rc1 to v5.13-rc1) +CVE-2021-46950: (n/a) - 2417b9869b81882ab90fd5ed1081a1cb2d4db1dd (unk to v5.13-rc1) +CVE-2021-46951: (n/a) - 48cff270b037022e37835d93361646205ca25101 (unk to v5.13-rc1) +CVE-2021-46952: (n/a) - c09f11ef35955785f92369e25819bf0629df2e59 (unk to v5.13-rc1) +CVE-2021-46953: ca9ae5ec4ef0ed13833b03297ab319676965492c - 1ecd5b129252249b9bc03d7645a7bda512747277 (v4.12-rc1 to v5.13-rc1) +CVE-2021-46954: c129412f74e99b609f0a8e95fc3915af1fd40f34 - 31fe34a0118e0acc958c802e830ad5d37ef6b1d3 (v5.11-rc1 to v5.13-rc1) +CVE-2021-46955: d52e5a7e7ca49457dd31fc8b42fb7c0d58a31221 - 7c0ea5930c1c211931819d83cfb157bff1539a4c (v4.16-rc7 to v5.13-rc1) +CVE-2021-46956: a62a8ef9d97da23762a588592c8b8eb50a8deb6a - c79c5e0178922a9e092ec8fed026750f39dcaef4 (v5.4-rc1 to v5.13-rc1) +CVE-2021-46957: c22b0bcb1dd024cb9caad9230e3a387d8b061df5 - b1ebaa0e1318494a7637099a26add50509e37964 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-46958: ef67963dac255b293e19815ea3d440567be4626f - 061dde8245356d8864d29e25207aa4daa0be4d3c (v5.7-rc4 to v5.13-rc1) +CVE-2021-46959: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 794aaf01444d4e765e2b067cba01cc69c1c68ed9 (v2.6.12-rc2 to v5.13-rc1) +CVE-2021-46960: 61cfac6f267dabcf2740a7ec8a0295833b28b5f5 - 83728cbf366e334301091d5b808add468ab46b27 (v4.11-rc1 to v5.13-rc1) +CVE-2021-46961: 3f1f3234bc2db1c16b9818b9a15a5d58ad45251c - a97709f563a078e259bf0861cd259aa60332890a (v5.1-rc1 to v5.13-rc1) +CVE-2021-46962: (n/a) - e29c84857e2d51aa017ce04284b962742fb97d9e (unk to v5.13-rc1) +CVE-2021-46963: af2a0c51b1205327f55a7e82e530403ae1d42cbb - 6641df81ab799f28a5d564f860233dd26cca0d93 (v5.5-rc1 to v5.13-rc1) +CVE-2021-46964: a6dcfe08487e5e83b6b4214c959a9577a9ed2d9f - f02d4086a8f36a0e1aaebf559b54cf24a177a486 (v5.11-rc1 to v5.13-rc1) +CVE-2021-46965: (n/a) - 683313993dbe1651c7aa00bb42a041d70e914925 (unk to v5.13-rc1) +CVE-2021-46966: 03d1571d9513369c17e6848476763ebbd10ec2cb - e483bb9a991bdae29a0caa4b3a6d002c968f94aa (v5.4-rc1 to v5.13-rc1) +CVE-2021-46967: ddd89d0a059d8e9740c75a97e0efe9bf07ee51f9 - 3a3e0fad16d40a2aa68ddf7eea4acdf48b22dd44 (v5.8-rc1 to v5.13-rc1) +CVE-2021-46968: 29c2680fd2bf3862ff5cf2957f198512493156f9 - 70fac8088cfad9f3b379c9082832b4d7532c16c2 (v5.10-rc3 to v5.13-rc1) +CVE-2021-46969: (n/a) - 0ecc1c70dcd32c0f081b173a1a5d89952686f271 (unk to v5.13-rc1) +CVE-2021-46970: (n/a) - 0fccbf0a3b690b162f53b13ed8bc442ea33437dc (unk to v5.13-rc1) +CVE-2021-46971: b0c8fdc7fdb77586c3d1937050925b960743306e - 08ef1af4de5fe7de9c6d69f1e22e51b66e385d9b (v5.4-rc1 to v5.13-rc1) +CVE-2021-46972: 6815f479ca90ee7fd2e28b2a420f796b974155fe - eaab1d45cdb4bb0c846bd23c3d666d5b90af7b41 (v5.8-rc1 to v5.13-rc1) +CVE-2021-46973: 6e728f321393b1fce9e1c2c3e55f9f7c15991321 - 47a017f33943278570c072bc71681809b2567b3a (v5.8-rc1 to v5.13-rc1) +CVE-2021-46974: 979d63d50c0c0f7bc537bf821e056cc9fe5abd38 - b9b34ddbe2076ade359cd5ce7537d5ed019e9807 (v5.0-rc1 to v5.13-rc1) +CVE-2021-46976: 229007e02d697b0662f85378aae53531b0dfea05 - 402be8a101190969fc7ff122d07e262df86e132b (v5.8-rc1 to v5.13-rc2) +CVE-2021-46977: 4be5341026246870818e28b53202b001426a5aec - 5104d7ffcf24749939bea7fdb5378d186473f890 (v5.5-rc1 to v5.13-rc2) +CVE-2021-46978: f2c7ef3ba9556d62a7e2bb23b563c6510007d55c - f5c7e8425f18fdb9bdb7d13340651d7876890329 (v5.11-rc3 to v5.13-rc2) +CVE-2021-46979: 8dedcc3eee3aceb37832176f0a1b03d5687acda3 - 901f84de0e16bde10a72d7eb2f2eb73fcde8fa1a (v5.11-rc1 to v5.13-rc2) +CVE-2021-46980: 992a60ed0d5e312ce9a485c9e12097ac82ae4b3e - 1f4642b72be79757f050924a9b9673b6a02034bc (v5.8-rc1 to v5.13-rc2) +CVE-2021-46981: e9e006f5fcf2bab59149cb38a48a4817c1b538b4 - 79ebe9110fa458d58f1fceb078e2068d7ad37390 (v5.4-rc1 to v5.13-rc2) +CVE-2021-46982: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a949dc5f2c5cfe0c910b664650f45371254c0744 (v2.6.12-rc2 to v5.13-rc2) +CVE-2021-46983: ca0f1a8055be2a04073af435dc68419334481638 - 8cc365f9559b86802afc0208389f5c8d46b4ad61 (v5.9-rc1 to v5.13-rc2) +CVE-2021-46984: a6088845c2bf754d6cb2572b484180680b037804 - efed9a3337e341bd0989161b97453b52567bc59d (v4.18-rc1 to v5.13-rc2) +CVE-2021-46985: eb50aaf960e3bedfef79063411ffd670da94b84b - 0c8bd174f0fc131bc9dfab35cd8784f59045da87 (v5.12-rc5 to v5.13-rc2) +CVE-2021-46986: e81a7018d93a7de31a3f121c9a7eecd0a5ec58b0 - bb9c74a5bd1462499fe5ccb1e3c5ac40dcfa9139 (v5.10-rc1 to v5.13-rc2) +CVE-2021-46987: c53e9653605dbf708f5be02902de51831be4b009 - f9baa501b4fd6962257853d46ddffbc21f27e344 (v5.9-rc1 to v5.13-rc2) +CVE-2021-46988: cb658a453b9327ce96ce5222c24d162b5b65b564 - 7ed9d238c7dbb1fdb63ad96a6184985151b0171c (v4.11-rc1 to v5.13-rc2) +CVE-2021-46989: 31651c607151f1034cfb57e5a78678bea54c362b - c3187cf32216313fb316084efac4dab3a8459b1d (v4.19-rc1 to v5.13-rc2) +CVE-2021-46990: f79643787e0a0762d2409b7b8334e83f22d85695 - aec86b052df6541cc97c5fca44e5934cbea4963b (v5.10-rc5 to v5.13-rc2) +CVE-2021-46991: 7b0b1a6d0ac983ce1928432285d0222d4fb7c38b - 38318f23a7ef86a8b1862e5e8078c4de121960c3 (v4.16-rc1 to v5.13-rc1) +CVE-2021-46992: 0ed6389c483dc77cdbdd48de0ca7ce41723dd667 - a54754ec9891830ba548e2010c889e3c8146e449 (v4.9-rc1 to v5.13-rc1) +CVE-2021-46993: 69842cba9ace84849bb9b8edcdf2cefccd97901c - 6d2f8909a5fabb73fe2a63918117943986c39b6c (v5.3-rc1 to v5.13-rc1) +CVE-2021-46994: 8ce8c0abcba314e1fe954a1840f6568bf5aef2ef - 03c427147b2d3e503af258711af4fc792b89b0af (v5.5-rc1 to v5.13-rc1) +CVE-2021-46995: cf8ee6de2543a0fa6d9471ddbb7216464a9681a1 - 4cc7faa406975b460aa674606291dea197c1210c (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-46996: b131c96496b369c7b14125e7c50e89ac7cec8051 - 85dfd816fabfc16e71786eda0a33a7046688b5b0 (v5.10-rc1 to v5.13-rc1) +CVE-2021-46997: 23529049c68423820487304f244144e0d576e85a - 4d6a38da8e79e94cbd1344aa90876f0f805db705 (v5.10-rc7 to v5.13-rc1) +CVE-2021-46998: fb7516d42478ebc8e2f00efb76ef96f7b68fd8d3 - 643001b47adc844ae33510c4bb93c236667008a3 (v4.16-rc1 to v5.13-rc1) +CVE-2021-46999: 145cb2f7177d94bc54563ed26027e952ee0ae03c - 35b4f24415c854cd718ccdf38dbea6297f010aae (v5.7-rc3 to v5.13-rc1) +CVE-2021-47000: 878dabb64117406abd40977b87544d05bb3031fc - 1775c7ddacfcea29051c67409087578f8f4d751b (v5.8-rc1 to v5.13-rc1) +CVE-2021-47001: 2ae50ad68cd79224198b525f7bd645c9da98b6ff - 35d8b10a25884050bb3b0149b62c3818ec59f77c (v5.5-rc1 to v5.13-rc1) +CVE-2021-47002: 5191955d6fc65e6d4efe8f4f10a6028298f57281 - b9f83ffaa0c096b4c832a43964fe6bff3acffe10 (v5.11-rc1 to v5.13-rc1) +CVE-2021-47003: 89e3becd8f821e507052e012d2559dcda59f538e - 28ac8e03c43dfc6a703aa420d18222540b801120 (v5.11 to v5.13-rc1) +CVE-2021-47004: 4354994f097d068a894aa1a0860da54571df3582 - 61461fc921b756ae16e64243f72af2bfc2e620db (v4.20-rc1 to v5.13-rc1) +CVE-2021-47005: 2c04c5b8eef797dca99699cfb55ff42dd3c12c23 - 6613bc2301ba291a1c5a90e1dc24cf3edf223c03 (v5.1-rc1 to v5.13-rc1) +CVE-2021-47006: 1879445dfa7bbd6fe21b09c5cc72f4934798afed - a506bd5756290821a4314f502b4bafc2afcf5260 (v4.7-rc1 to v5.13-rc1) +CVE-2021-47007: b4b10061ef98c583bcf82a4200703fbaa98c18dc - 3ab0598e6d860ef49d029943ba80f627c15c15d6 (v5.8-rc1 to v5.13-rc1) +CVE-2021-47008: f1c6366e304328de301be362eca905a3503ff33b - a3ba26ecfb569f4aa3f867e80c02aa65f20aadad (v5.11-rc1 to v5.13-rc1) +CVE-2021-47009: 5df16caada3fba3b21cb09b85cdedf99507f4ec1 - 83a775d5f9bfda95b1c295f95a3a041a40c7f321 (v5.12-rc1-dontuse to v5.13-rc2) +CVE-2021-47010: 6670e152447732ba90626f36dfc015a13fbf150e - 8d432592f30fcc34ef5a10aac4887b4897884493 (v4.15-rc1 to v5.13-rc1) +CVE-2021-47011: 3de7d4f25a7438f09fef4e71ef111f1805cd8e7c - 9f38f03ae8d5f57371b71aa6b4275765b65454fd (v5.11-rc5 to v5.13-rc1) +CVE-2021-47012: 2251334dcac9eb337575d8767e2a6a7e81848f7f - 3093ee182f01689b89e9f8797b321603e5de4f63 (v5.3-rc1 to v5.13-rc1) +CVE-2021-47013: b9b17debc69d27cd55e21ee51a5ba7fc50a426cf - 6d72e7c767acbbdd44ebc7d89c6690b405b32b57 (v4.9-rc1 to v5.13-rc1) +CVE-2021-47014: ae372cb1750f6c95370f92fe5f5620e0954663ba - f77bd544a6bbe69aa50d9ed09f13494cf36ff806 (v5.8-rc7 to v5.13-rc1) +CVE-2021-47015: a1b0e4e684e9c300b9e759b46cb7a0147e61ddff - bbd6f0a948139970f4a615dff189d9a503681a39 (v5.1-rc5 to v5.13-rc1) +CVE-2021-47016: 7529b90d051e4629884771ba2b1d3a87d2c6a9d7 - 43262178c043032e7c42d00de44c818ba05f9967 (v5.2-rc1 to v5.13-rc1) +CVE-2021-47017: c8334512f3dd1b94844baca629f9bedca4271593 - 8392df5d7e0b6a7d21440da1fc259f9938f4dec3 (v5.8-rc1 to v5.13-rc1) +CVE-2021-47018: 265c3491c4bc8d40587996d6ee2f447a7ccfb4f3 - 9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3c (v5.5-rc1 to v5.13-rc1) +CVE-2021-47019: ffa1bf97425bd511b105ce769976e20a845a71e9 - fe3fccde8870764ba3e60610774bd7bc9f8faeff (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47020: 89e590535f32d4bc548bcf266f3b046e50942f6d - 48f17f96a81763c7c8bf5500460a359b9939359f (v4.18-rc1 to v5.13-rc1) +CVE-2021-47021: f285dfb98562e8380101095d168910df1d07d8be - e9d32af478cfc3744a45245c0b126738af4b3ac4 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47022: a6275e934605646ef81b02d8d1164f21343149c9 - 8ab31da7b89f71c4c2defcca989fab7b42f87d71 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47023: 501ef3066c89d7f9045315e1be58749cf9e6814d - 333980481b99edb24ebd5d1a53af70a15d9146de (v5.10-rc1 to v5.13-rc1) +CVE-2021-47024: ac03046ece2b158ebd204dfc4896fd9f39f0e6c8 - 8432b8114957235f42e070a16118a7f750de9d39 (v5.2-rc2 to v5.13-rc1) +CVE-2021-47025: c0b57581b73be7b43f39e0dff201c93413f6a668 - b34ea31fe013569d42b7e8681ef3f717f77c5b72 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47026: 6a98d71daea186247005099758af549e6afdd244 - 7f4a8592ff29f19c5a2ca549d0973821319afaad (v5.8-rc1 to v5.13-rc1) +CVE-2021-47027: 5c14a5f944b91371961548b1907802f74a4d2e5c - e230f0c44f011f3270680a506b19b7e84c5e8923 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47028: (n/a) - f43b941fd61003659a3f0e039595e5e525917aa8 (unk to v5.13-rc1) +CVE-2021-47029: d0e274af2f2e44b9d496f5d2c0431fdd2ea76fb8 - c996f0346e40e3b1ac2ebaf0681df898fb157f60 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47030: d2bf7959d9c0f631ef860edaf834d55773fdedff - 49cc85059a2cb656f96ff3693f891e8fe8f669a9 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47031: 1c099ab44727c8e42fe4de4d91b53cec3ef02860 - 782b3e86ea970e899f8e723db9f64708a15ca30e (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47032: 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 - 7dcf3c04f0aca746517a77433b33d40868ca4749 (v5.10-rc1 to v5.13-rc1) +CVE-2021-47033: 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 - ebee7885bb12a8fe2c2f9bac87dbd87a05b645f9 (v5.10-rc1 to v5.13-rc1) +CVE-2021-47034: f1cb8f9beba8699dd1b4518418191499e53f7b17 - b8b2f37cf632434456182e9002d63cbc4cccc50c (v4.18-rc1 to v5.13-rc1) +CVE-2021-47035: b802d070a52a1565b47daaa808872cfbd4a17b01 - eea53c5816889ee8b64544fa2e9311a81184ff9c (v5.6-rc1 to v5.13-rc1) +CVE-2021-47036: 9fd1ff5d2ac7181844735806b0a703c942365291 - 18f25dc399901426dff61e676ba603ff52c666f7 (v5.6-rc1 to v5.13-rc1) +CVE-2021-47037: 520a1c396d1966b64884d8e0176a580150d5a09e - 96fadf7e8ff49fdb74754801228942b67c3eeebd (v5.10-rc1 to v5.13-rc1) +CVE-2021-47038: eab2404ba798a8efda2a970f44071c3406d94e57 - 17486960d79b900c45e0bb8fbcac0262848582ba (v5.7-rc1 to v5.13-rc1) +CVE-2021-47039: bf9c0538e485b591a2ee02d9adb8a99db4be5a2a - 1ffec389a6431782a8a28805830b6fae9bf00af1 (v5.11-rc1 to v5.13-rc1) +CVE-2021-47040: efe68c1ca8f49e8c06afd74b699411bfbb8ba1ff - 38134ada0ceea3e848fe993263c0ff6207fd46e7 (v5.8-rc1 to v5.13-rc1) +CVE-2021-47041: 872d26a391da92ed8f0c0f5cb5fef428067b7f30 - b5332a9f3f3d884a1b646ce155e664cc558c1722 (v5.0-rc1 to v5.13-rc1) +CVE-2021-47042: 3a00c04212d1cfe1426338b78f4ead623508c874 - 616cf23b6cf40ad6f03ffbddfa1b6c4eb68d8ae1 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2021-47043: 32f0a6ddc8c98a1aade2bf3d07c79d5d2c6ceb9a - 5a465c5391a856a0c1e9554964d660676c35d1b2 (v5.5-rc1 to v5.13-rc1) +CVE-2021-47044: 5a7f555904671c0737819fe4d19bd6143de3f6c0 - 39a2a6eb5c9b66ea7c8055026303b3aa681b49a5 (v5.10-rc1 to v5.13-rc1) +CVE-2021-47045: 4430f7fd09ecb037570119e0aacbf0c17b8f98b2 - 8dd1c125f7f838abad009b64bff5f0a11afe3cb6 (v5.11-rc1 to v5.13-rc1) +CVE-2021-47046: (n/a) - 8e6fafd5a22e7a2eb216f5510db7aab54cc545c1 (unk to v5.13-rc1) +CVE-2021-47047: 1c26372e5aa9e53391a1f8fe0dc7cd93a7e5ba9e - 126bdb606fd2802454e6048caef1be3e25dd121e (v5.10-rc1 to v5.13-rc1) +CVE-2021-47048: 1c26372e5aa9e53391a1f8fe0dc7cd93a7e5ba9e - a2c5bedb2d55dd27c642c7b9fb6886d7ad7bdb58 (v5.10-rc1 to v5.13-rc1) +CVE-2021-47049: 6f3d791f300618caf82a2be0c27456edd76d5164 - 3e9bf43f7f7a46f21ec071cb47be92d0874c48da (v4.14-rc1 to v5.13-rc1) +CVE-2021-47050: ca7d8b980b67f133317525c4273e144116ee1ae5 - 59e27d7c94aa02da039b000d33c304c179395801 (v5.9-rc1 to v5.13-rc1) +CVE-2021-47051: 944c01a889d97dc08e1b71f4ed868f4023fd6034 - a03675497970a93fcf25d81d9d92a59c2d7377a7 (v5.2-rc1 to v5.13-rc1) +CVE-2021-47052: (n/a) - 854b7737199848a91f6adfa0a03cf6f0c46c86e8 (unk to v5.13-rc1) +CVE-2021-47053: d9b45418a91773b7672e4c60037a28074b495c6d - 50274b01ac1689b1a3f6bc4b5b3dbf361a55dd3a (v5.10-rc1 to v5.13-rc1) +CVE-2021-47054: 335a127548081322bd2b294d715418648912f20c - ac6ad7c2a862d682bb584a4bc904d89fa7721af8 (v4.9-rc1 to v5.13-rc1) +CVE-2021-47055: f7e6b19bc76471ba03725fe58e0c218a3d6266c3 - 1e97743fd180981bef5f01402342bb54bf1c6366 (v5.9-rc1 to v5.13-rc1) +CVE-2021-47056: 25c6ffb249f612c56a48ce48a3887adf57b8f4bd - 8609f5cfdc872fc3a462efa6a3eca5cb1e2f6446 (v4.7-rc1 to v5.13-rc1) +CVE-2021-47057: ac2614d721dea2ff273af19c6c5d508d58a2bb3e - 98b5ef3e97b16eaeeedb936f8bda3594ff84a70e (v5.10-rc1 to v5.13-rc1) +CVE-2021-47058: cffa4b2122f5f3e53cf3d529bbc74651f95856d5 - e41a962f82e7afb5b1ee644f48ad0b3aee656268 (v5.11-rc3 to v5.13-rc1) +CVE-2021-47059: (n/a) - 1dbc6a1e25be8575d6c4114d1d2b841a796507f7 (unk to v5.13-rc1) +CVE-2021-47060: f65886606c2d3b562716de030706dfe1bea4ed5e - 5d3c4c79384af06e3c8e25b7770b6247496b4417 (v5.9-rc5 to v5.13-rc1) +CVE-2021-47061: f65886606c2d3b562716de030706dfe1bea4ed5e - 2ee3757424be7c1cd1d0bbfa6db29a7edd82a250 (v5.9-rc5 to v5.13-rc1) +CVE-2021-47062: ad73109ae7ec30d5bfb76be108e304f9f0af4829 - c36b16d29f3af5f32fc1b2a3401bf48f71cabee1 (v5.11-rc1 to v5.13-rc1) +CVE-2021-47063: 13dfc0540a575b47b2d640b093ac16e9e09474f6 - 4d906839d321c2efbf3fed4bc31ffd9ff55b75c0 (v4.13-rc1 to v5.13-rc1) +CVE-2021-47064: 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 - b4403cee6400c5f679e9c4a82b91d61aa961eccf (v5.10-rc1 to v5.13-rc1) +CVE-2021-47065: (n/a) - 2ff25985ea9ccc6c9af2c77b0b49045adcc62e0e (unk to v5.13-rc1) +CVE-2021-47066: 29bcff787a2593b2126cfaff612c0b4e560022e9 - ceaf2966ab082bbc4d26516f97b3ca8a676e2af8 (v5.10-rc1 to v5.13-rc1) +CVE-2021-47067: 783807436f363e5b1ad4d43ba7debbedfcadbb99 - ef85bb582c41524e9e68dfdbde48e519dac4ab3d (v5.5-rc1 to v5.13-rc1) +CVE-2021-47068: c33b1cc62ac05c1dbb1cdafe2eb66da01c76ca8d - c61760e6940dd4039a7f5e84a6afc9cdbf4d82b6 (v5.12-rc7 to v5.13-rc1) +CVE-2021-47069: c5b2cbdbdac563f46ecd5e187253ab1abbd6fc04 - a11ddb37bf367e6b5239b95ca759e5389bb46048 (v5.6-rc1 to v5.13-rc3) +CVE-2021-47070: (n/a) - 0b0226be3a52dadd965644bc52a807961c2c26df (unk to v5.13-rc3) +CVE-2021-47071: cdfa835c6e5e87d145f9f632b58843de97509f2b - 3ee098f96b8b6c1a98f7f97915f8873164e6af9d (v4.20-rc1 to v5.13-rc3) +CVE-2021-47072: 64d6b281ba4db044c946158387c74e1149b9487e - 54a40fc3a1da21b52dbf19f72fdc27a2ec740760 (v5.12-rc1-dontuse to v5.13-rc3) +CVE-2021-47073: 1a258e670434f404a4500b65ba1afea2c2b29bba - 3a53587423d25c87af4b4126a806a0575104b45e (v4.15-rc1 to v5.13-rc3) +CVE-2021-47074: 3a85a5de29ea779634ddfd768059e06196687aba - 03504e3b54cc8118cc26c064e60a0b00c2308708 (v4.8-rc1 to v5.13-rc3) +CVE-2021-47075: (n/a) - fec356a61aa3d3a66416b4321f1279e09e0f256f (unk to v5.13-rc3) +CVE-2021-47076: (n/a) - dc07628bd2bbc1da768e265192c28ebd301f509d (unk to v5.13-rc3) +CVE-2021-47077: 61d8658b4a435eac729966cc94cdda077a8df5cd - 73578af92a0fae6609b955fcc9113e50e413c80f (v4.11-rc1 to v5.13-rc3) +CVE-2021-47078: 8700e3e7c4857d28ebaa824509934556da0b3e76 - 67f29896fdc83298eed5a6576ff8f9873f709228 (v4.8-rc1 to v5.13-rc3) +CVE-2021-47079: ff36b0d953dc4cbc40a72945920ff8e805f1b0da - ff67dbd554b2aaa22be933eced32610ff90209dd (v5.12-rc1-dontuse to v5.13-rc3) +CVE-2021-47080: 9f85cbe50aa044a46f0a22fda323fa27b80c82da - 54d87913f147a983589923c7f651f97de9af5be1 (v5.10-rc1 to v5.13-rc3) +CVE-2021-47081: 423815bf02e257091d5337be5c63b57fc29e4254 - 115726c5d312b462c9d9931ea42becdfa838a076 (v5.12-rc1-dontuse to v5.13-rc3) +CVE-2021-47082: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 158b515f703e75e7d68289bf4d98c664e1d632df (v2.6.12-rc2 to v5.16-rc7) +CVE-2021-47083: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 2d5446da5acecf9c67db1c9d55ae2c3e5de01f8d (v2.6.12-rc2 to v5.16-rc7) +CVE-2021-47086: bdb6e697b2a76c541960b86ab8fda88f3de1adf2 - 75a2f31520095600f650597c0ac41f48b5ba0068 (v3.3-rc1 to v5.16-rc7) +CVE-2021-47087: ec185dd3ab257dc2a60953fdf1b6622f524cc5b7 - 18549bf4b21c739a9def39f27dcac53e27286ab5 (v5.14-rc5 to v5.16-rc7) +CVE-2021-47088: 4bc05954d0076655cfaf6f0135585bdc20cd6b11 - 34796417964b8d0aef45a99cf6c2d20cebe33733 (v5.15-rc1 to v5.16-rc7) +CVE-2021-47089: 0ce20dd840897b12ae70869c69f1ba34d6d16965 - 0129ab1f268b6cf88825eae819b9b84aa0a85634 (v5.12-rc1-dontuse to v5.16-rc7) +CVE-2021-47090: b94e02822debdf0cc473556aad7dcc859f216653 - 2a57d83c78f889bf3f54eede908d0643c40d5418 (v5.10-rc1 to v5.16-rc7) +CVE-2021-47091: 295b02c4be74bebf988593b8322369513fcecf68 - 87a270625a89fc841f1a7e21aae6176543d8385c (v5.10-rc1 to v5.16-rc7) +CVE-2021-47092: c8607e4a086fae05efe5bffb47c5199c65e7216e - a80dfc025924024d2c61a4c1b8ef62b2fce76a04 (v5.15-rc4 to v5.16-rc7) +CVE-2021-47093: 938835aa903ae19ad62805134f79bbcf20fc3bea - 26a8b09437804fabfb1db080d676b96c0de68e7c (v5.9 to v5.16-rc7) +CVE-2021-47094: faaf05b00aecdb347ffd1d763d024394ec0329f8 - 3a0f64de479cae75effb630a2e0a237ca0d0623c (v5.10-rc1 to v5.16-rc7) +CVE-2021-47095: c4436c9149c5d2bc0c49ab57ec85c75ea1c4d61c - 34f35f8f14bc406efc06ee4ff73202c6fd245d15 (v5.4-rc1 to v5.16-rc7) +CVE-2021-47096: 09d23174402da0f10e98da2c61bb5ac8e7d79fdd - 39a8fc4971a00d22536aeb7d446ee4a97810611b (v5.15-rc4 to v5.16-rc7) +CVE-2021-47097: e4c9062717feda88900b566463228d1c4910af6d - 1d72d9f960ccf1052a0630a68c3d358791dbdaaa (v5.11-rc1 to v5.16-rc7) +CVE-2021-47098: b50aa49638c7e12abf4ecc483f4e928c5cccc1b0 - 55840b9eae5367b5d5b29619dc2fb7e4596dba46 (v5.14-rc1 to v5.16-rc7) +CVE-2021-47099: d3256efd8e8b234a6251e4d4580bd2c3c31fdc4c - 9695b7de5b4760ed22132aca919570c0190cb0ce (v5.13-rc1 to v5.16-rc7) +CVE-2021-47100: b2cfd8ab4add53c2070367bfee2f5b738f51698d - ffb76a86f8096a8206be03b14adda6092e18e275 (v4.15-rc1 to v5.16-rc7) +CVE-2021-47101: (n/a) - 8035b1a2a37a29d8c717ef84fca8fe7278bc9f03 (unk to v5.16-rc7) +CVE-2021-47102: 3d5048cc54bd250cfbb358c37fcc011135977887 - 2efc2256febf214e7b2bdaa21fe6c3c3146acdcb (v5.14-rc1 to v5.16-rc7) +CVE-2021-47103: (n/a) - 8f905c0e7354ef261360fb7535ea079b1082c105 (unk to v5.16-rc7) +CVE-2021-47104: d39bf40e55e666b5905fdbd46a0dced030ce87be - bee90911e0138c76ee67458ac0d58b38a3190f65 (v5.15 to v5.16-rc7) +CVE-2021-47105: 2d4238f5569722197612656163d824098208519c - afe8a3ba85ec2a6b6849367e25c06a2f8e0ddd05 (v5.5-rc1 to v5.16-rc7) +CVE-2021-47106: aaa31047a6d25da0fa101da1ed544e1247949b40 - 0f7d9b31ce7abdbb29bf018131ac920c9f698518 (v5.13-rc1 to v5.16-rc7) +CVE-2021-47107: f5dcccd647da513a89f3b6ca392b0c1eb050b9fc - 53b1119a6e5028b125f431a0116ba73510d82a72 (v5.13-rc1 to v5.16-rc7) +CVE-2021-47108: 41ca9caaae0bfc959b22dbcd59d88a7107707e17 - 3b8e19a0aa3933a785be9f1541afd8d398c4ec69 (v5.14-rc1 to v5.16-rc7) +CVE-2021-47109: 58956317c8de52009d1a38a721474c24aef74fe7 - 7a6b1ab7475fd6478eeaf5c9d1163e7a18125c8f (v5.0-rc1 to v5.13-rc7) +CVE-2021-47110: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c02027b5742b5aa804ef08a4a9db433295533046 (v2.6.12-rc2 to v5.13-rc2) +CVE-2021-47111: 2ac061ce97f413bfbbdd768f7d2e0fda2e8170df - 107866a8eb0b664675a260f1ba0655010fac1e08 (v5.5-rc1 to v5.13-rc6) +CVE-2021-47112: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 8b79feffeca28c5459458fe78676b081e87c93a4 (v2.6.12-rc2 to v5.13-rc2) +CVE-2021-47113: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - dc09ef3562726cd520c8338c1640872a60187af5 (v2.6.12-rc2 to v5.13-rc5) +CVE-2021-47114: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6bba4471f0cc1296fe3c2089b9e52442d3074b2e (v2.6.12-rc2 to v5.13-rc5) +CVE-2021-47116: (n/a) - a8867f4e3809050571c98de7a2d465aff5e4daf5 (unk to v5.13-rc5) +CVE-2021-47117: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 082cd4ec240b8734a82a89ffb890216ac98fec68 (v2.6.12-rc2 to v5.13-rc5) +CVE-2021-47118: 9ec52099e4b8678a60e9f93e41ad87885d64f3e6 - 0711f0d7050b9e07c44bc159bbc64ac0a1022c7f (v2.6.19-rc1 to v5.13-rc5) +CVE-2021-47119: ce40733ce93de402ed629762f0e912d9af187cef - afd09b617db3786b6ef3dc43e28fe728cfea84df (v2.6.25-rc1 to v5.13-rc5) +CVE-2021-47120: 9d7b18668956c411a422d04c712994c5fdb23a4b - 4b4f6cecca446abcb686c6e6c451d4f1ec1a7497 (v4.20-rc1 to v5.13-rc5) +CVE-2021-47121: 7ad65bf68d705b445ef10b77ab50dab22be185ee - 7f5d86669fa4d485523ddb1d212e0a2d90bd62bb (v3.3-rc1 to v5.13-rc5) +CVE-2021-47122: 7c18d2205ea76eef9674e59e1ecae4f332a53e9e - b53558a950a89824938e9811eddfc8efcd94e1bb (v3.3-rc1 to v5.13-rc5) +CVE-2021-47123: 90cd7e424969d29aff653333b4dcb4e2e199d791 - 447c19f3b5074409c794b350b10306e1da1ef4ba (v5.11-rc1 to v5.13-rc2) +CVE-2021-47124: (n/a) - a298232ee6b9a1d5d732aa497ff8be0d45b5bd82 (unk to v5.13-rc2) +CVE-2021-47125: (n/a) - 944d671d5faa0d78980a3da5c0f04960ef1ad893 (unk to v5.13-rc5) +CVE-2021-47126: f88d8ea67fbdbac7a64bfa6ed9a2ba27bb822f74 - 821bbf79fe46a8b1d18aa456e8ed0a3c208c3754 (v5.3-rc1 to v5.13-rc5) +CVE-2021-47127: c7a219048e459cf99c6fec0f7c1e42414e9e6202 - e102db780e1c14f10c70dafa7684af22a745b51d (v5.12-rc1-dontuse to v5.13-rc5) +CVE-2021-47128: (n/a) - ff40e51043af63715ab413995ff46996ecf9583f (unk to v5.13-rc5) +CVE-2021-47129: 857b46027d6f91150797295752581b7155b9d0e1 - 1710eb913bdcda3917f44d383c32de6bdabfc836 (v5.3-rc1 to v5.13-rc5) +CVE-2021-47130: c6e3f13398123a008cd2ee28f93510b113a32791 - bcd9a0797d73eeff659582f23277e7ab6e5f18f3 (v5.8-rc1 to v5.13-rc5) +CVE-2021-47131: (n/a) - c55dcdd435aa6c6ad6ccac0a4c636d010ee367a4 (unk to v5.13-rc5) +CVE-2021-47132: 64b9cea7a0afe579dd2682f1f1c04f2e4e72fd25 - b5941f066b4ca331db225a976dae1d6ca8cf0ae3 (v5.12-rc1-dontuse to v5.13-rc5) +CVE-2021-47133: (n/a) - 5ad755fd2b326aa2bc8910b0eb351ee6aece21b1 (unk to v5.13-rc5) +CVE-2021-47134: b91540d52a08b65eb6a2b09132e1bd54fa82754c - 668a84c1bfb2b3fd5a10847825a854d63fac7baa (v5.10-rc1 to v5.13-rc5) +CVE-2021-47135: (n/a) - d874e6c06952382897d35bf4094193cd44ae91bd (unk to v5.13-rc5) +CVE-2021-47136: (n/a) - 9453d45ecb6c2199d72e73c993e9d98677a2801b (unk to v5.13-rc4) +CVE-2021-47137: (n/a) - c7718ee96dbc2f9c5fc3b578abdf296dd44b9c20 (unk to v5.13-rc4) +CVE-2021-47138: b1a79360ee862f8ada4798ad2346fa45bb41b527 - 88c380df84fbd03f9b137c2b9d0a44b9f2f553b0 (v5.2-rc1 to v5.13-rc4) +CVE-2021-47139: 08a100689d4baf296d6898c687ea8d005da8d234 - a289a7e5c1d49b7d47df9913c1cc81fb48fab613 (v5.6-rc1 to v5.13-rc4) +CVE-2021-47140: (n/a) - d6177a6556f853785867e2ec6d5b7f4906f0d809 (unk to v5.13-rc4) +CVE-2021-47141: 893ce44df56580fb878ca5af9c4a5fd87567da50 - 5218e919c8d06279884aa0baf76778a6817d5b93 (v5.3-rc1 to v5.13-rc4) +CVE-2021-47142: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 1e5c37385097c35911b0f8a0c67ffd10ee1af9a2 (v2.6.12-rc2 to v5.13-rc3) +CVE-2021-47143: (n/a) - 444d7be9532dcfda8e0385226c862fd7e986f607 (unk to v5.13-rc4) +CVE-2021-47144: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - fa7e6abc75f3d491bc561734312d065dc9dc2a77 (v2.6.12-rc2 to v5.13-rc3) +CVE-2021-47145: (n/a) - 91df99a6eb50d5a1bc70fff4a09a0b7ae6aab96d (unk to v5.13-rc3) +CVE-2021-47146: (n/a) - 020ef930b826d21c5446fdc9db80fd72a791bc21 (unk to v5.13-rc4) +CVE-2021-47147: (n/a) - 9c1bb37f8cad5e2ee1933fa1da9a6baa7876a8e4 (unk to v5.13-rc4) +CVE-2021-47148: 81a4362016e7d8b17031fe1aa43cdb58a7f0f163 - e5cc361e21648b75f935f9571d4003aaee480214 (v5.12-rc1-dontuse to v5.13-rc4) +CVE-2021-47149: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 52202be1cd996cde6e8969a128dc27ee45a7cb5e (v2.6.12-rc2 to v5.13-rc3) +CVE-2021-47150: 59d0f746564495c7f54526674deabfcf101236a1 - 619fee9eb13b5d29e4267cb394645608088c28a8 (v3.18-rc1 to v5.13-rc4) +CVE-2021-47151: (n/a) - a00593737f8bac2c9e97b696e7ff84a4446653e8 (unk to v5.13-rc4) +CVE-2021-47152: 18b683bff89d46ace55f12d00c0440d44d6160c4 - 29249eac5225429b898f278230a6ca2baa1ae154 (v5.7-rc1 to v5.13-rc4) +CVE-2021-47153: 636752bcb5177a301d0266270661581de8624828 - e4d8716c3dcec47f1557024add24e1f3c09eb24b (v3.6-rc1 to v5.13-rc4) +CVE-2021-47158: (n/a) - cec279a898a3b004411682f212215ccaea1cd0fb (unk to v5.13-rc4) +CVE-2021-47159: badf3ada60ab8f76f9488dc8f5c0c57f70682f5a - a269333fa5c0c8e53c92b5a28a6076a28cde3e83 (v4.7-rc1 to v5.13-rc4) +CVE-2021-47160: (n/a) - 474a2ddaa192777522a7499784f1d60691cd831a (unk to v5.13-rc4) +CVE-2021-47161: 90ba37033cb94207e97c4ced9be575770438213b - 680ec0549a055eb464dce6ffb4bfb736ef87236e (v4.10-rc1 to v5.13-rc4) +CVE-2021-47162: 45c8b7b175ceb2d542e0fe15247377bf3bce29ec - b7df21cf1b79ab7026f545e7bf837bd5750ac026 (v4.3 to v5.13-rc4) +CVE-2021-47163: d0f91938bede204a343473792529e0db7d599836 - 04c26faa51d1e2fe71cf13c45791f5174c37f986 (v4.1-rc1 to v5.13-rc4) +CVE-2021-47164: 7e51891a237f9ea319f53f9beb83afb0077d88e6 - 83026d83186bc48bb41ee4872f339b83f31dfc55 (v5.8-rc1 to v5.13-rc4) +CVE-2021-47165: (n/a) - 7cfc4ea78fc103ea51ecbacd9236abb5b1c490d2 (unk to v5.13-rc4) +CVE-2021-47166: a7d42ddb3099727f58366fa006f850a219cce6c8 - 0d0ea309357dea0d85a82815f02157eb7fcda39f (v4.0-rc1 to v5.13-rc4) +CVE-2021-47167: a7d42ddb3099727f58366fa006f850a219cce6c8 - 56517ab958b7c11030e626250c00b9b1a24b41eb (v4.0-rc1 to v5.13-rc4) +CVE-2021-47168: 16b374ca439fb406e46e071f75428f5b033056f8 - 769b01ea68b6c49dc3cde6adf7e53927dacbd3a8 (v2.6.37-rc1 to v5.13-rc4) +CVE-2021-47169: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 016002848c82eeb5d460489ce392d91fe18c475c (v2.6.12-rc2 to v5.13-rc4) +CVE-2021-47170: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4f2629ea67e7225c3fd292c7fe4f5b3c9d6392de (v2.6.12-rc2 to v5.13-rc4) +CVE-2021-47171: d0cad871703b898a442e4049c532ec39168e5b57 - 46a8b29c6306d8bbfd92b614ef65a47c900d8e70 (v2.6.34-rc2 to v5.13-rc4) +CVE-2021-47172: (n/a) - f2a772c51206b0c3f262e4f6a3812c89a650191b (unk to v5.13-rc4) +CVE-2021-47173: (n/a) - dcb4b8ad6a448532d8b681b5d1a7036210b622de (unk to v5.13-rc4) +CVE-2021-47174: 7400b063969bdca4a06cd97f1294d765c8eecbe1 - f0b3d338064e1fe7531f0d2977e35f3b334abfb4 (v5.7-rc1 to v5.13-rc4) +CVE-2021-47175: (n/a) - e70f7a11876a1a788ceadf75e9e5f7af2c868680 (unk to v5.13-rc4) +CVE-2021-47176: b72949328869dfd45f6452c2410647afd7db5f1a - c0c8a8397fa8a74d04915f4d3d28cb4a5d401427 (v5.11-rc1 to v5.13-rc4) +CVE-2021-47177: 39ab9555c24110671f8dc671311a26e5c985b592 - 0ee74d5a48635c848c20f152d0d488bf84641304 (v4.11-rc1 to v5.13-rc4) +CVE-2021-47178: 1526d9f10c6184031e42afad0adbdde1213e8ad1 - 70ca3c57ff914113f681e657634f7fbfa68e1ad1 (v5.11-rc1 to v5.13-rc4) +CVE-2021-47179: (n/a) - a421d218603ffa822a0b8045055c03eae394a7eb (unk to v5.13-rc4) +CVE-2021-47180: (n/a) - e0652f8bb44d6294eeeac06d703185357f25d50b (unk to v5.13-rc4) CVE-2022-0001: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d45476d9832409371537013ebdd8dc1a7781f97a (v2.6.12-rc2 to v5.17-rc8) CVE-2022-0002: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d45476d9832409371537013ebdd8dc1a7781f97a (v2.6.12-rc2 to v5.17-rc8) CVE-2022-0168: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d6f5e358452479fa8a773b5c6ccc9e4ec5a20880 (v2.6.12-rc2 to v5.18-rc1) @@ -2290,6 +2572,11 @@ CVE-2022-48425: 12dad495eaab95e0bb784c43869073617c513ea4 - 98bea253aa28ad8be2ce565a9ca21beb4a9419e5 (v5.15-rc1 to v6.4-rc1) CVE-2022-48502: f7464060f7ab9a2424428008f0ee9f1e267e410f - 0e8235d28f3a0e9eda9f02ff67ee566d5f42b66b (v5.15-rc1 to v6.2-rc1) CVE-2022-48619: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 409353cbe9fe48f6bc196114c442b1cff05a39bc (v2.6.12-rc2 to v5.18-rc1) +CVE-2022-48626: (n/a) - bd2db32e7c3e35bd4d9b8bbff689434a50893546 (unk to v5.17-rc4) +CVE-2022-48627: 81732c3b2fede049a692e58a7ceabb6d18ffb18c - 39cdb68c64d84e71a4a717000b6e5de208ee60cc (v3.7-rc1 to v5.19-rc7) +CVE-2022-48628: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e3dfcab2080dc1f9a4b09cc1327361bc2845bfcd (v2.6.12-rc2 to v6.6-rc1) +CVE-2022-48629: ceec5f5b59882b871a722ca4d49b767a09a4bde9 - a680b1832ced3b5fa7c93484248fd221ea0d614b (v4.19-rc1 to v5.17) +CVE-2022-48630: a680b1832ced3b5fa7c93484248fd221ea0d614b - 16287397ec5c08aa58db6acf7dbc55470d78087d (v5.17 to v5.18) CVE-2023-0030: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 729eba3355674f2d9524629b73683ba1d1cd3f10 (v2.6.12-rc2 to v5.0-rc1) CVE-2023-0045: 9137bb27e60e554dab694eafa4cca241fa3a694f - a664ec9158eeddd75121d39c9a0758016097fa96 (v4.20-rc5 to v6.2-rc3) CVE-2023-0047: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 60e2793d440a3ec95abb5d6d4fc034a4b480472d (v2.6.12-rc2 to v5.16-rc1) @@ -2412,6 +2699,7 @@ CVE-2023-28464: 0f00cd322d22d4441de51aa80bcce5bb6a8cbb44 - 5dc7d23e167e2882ef118456ceccd57873e876d8 (v6.3-rc1 to v6.3-rc7) CVE-2023-28466: 3c4d7559159bfe1e3b94df3a657b2cda3a34e218 - 49c47cc21b5b7a3d8deb18fc57b0aa2ab1286962 (v4.13-rc1 to v6.3-rc2) CVE-2023-2860: 4f4853dc1c9c1994f6f756eabdcc25374ff271d9 - 84a53580c5d2138c7361c7c3eea5b31827e63b35 (v4.10-rc1 to v6.0-rc5) +CVE-2023-28746: (n/a) - e95df4ec0c0c9791941f112db699fae794b9862a (unk to v6.9-rc1) CVE-2023-28772: 5e3ca0ec76fce92daa4eed0d02de9c79b1fe3920 - d3b16034a24a112bb83aeb669ac5b9b01f744bb7 (v2.6.27-rc1 to v5.14-rc1) CVE-2023-28866: d0b137062b2de75b264b84143d21c98abc5f5ad2 - bce56405201111807cc8e4f47c6de3e10b17c1ac (v5.17-rc1 to v6.3-rc4) CVE-2023-2898: b4b10061ef98c583bcf82a4200703fbaa98c18dc - d8189834d4348ae608083e1f1f53792cfcc2a9bc (v5.8-rc1 to v6.5-rc1) @@ -2551,7 +2839,7 @@ CVE-2023-46813: 597cfe48212a3f110ab0f918bf59791f453e65b7 - 63e44bc52047f182601e7817da969a105aa1f721 (v5.10-rc1 to v6.6-rc7) CVE-2023-46838: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c7ec4f2d684e17d69bbdd7c4324db0ef5daac26a (v2.6.12-rc2 to v6.8-rc2) CVE-2023-46862: dbbe9c642411c359ad0a0e32442eb2e11d3811b5 - 7644b1a1c9a7ae8ab99175989bfc8676055edb46 (v5.10-rc1 to v6.6) -CVE-2023-47233: e756af5b30b008f6ffcfebf8ad0b477f6f225b62 - (n/a) (v3.7-rc1 to unk) +CVE-2023-47233: e756af5b30b008f6ffcfebf8ad0b477f6f225b62 - 0f7352557a35ab7888bc7831411ec8a3cbe20d78 (v3.7-rc1 to v6.9-rc1) CVE-2023-4732: 5a281062af1d43d3f3956a6b429c2d727bc92603 - 8f34f1eac3820fc2722e5159acceb22545b30b0d (v5.7-rc1 to v5.14-rc1) CVE-2023-4881: 49499c3e6e18b7677a63316f3ff54a16533dc28f - fd94d9dadee58e09b49075240fe83423eb1dcd36 (v4.1-rc1 to v6.6-rc1) CVE-2023-4921: 462dbc9101acd38e92eda93c0726857517a24bbd - 8fc134fee27f2263988ae38920bc03da416b03d8 (v3.8-rc1 to v6.6-rc1) @@ -2570,7 +2858,7 @@ CVE-2023-52429: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - bd504bcfec41a503b32054da5472904b404341a4 (v2.6.12-rc2 to v6.8-rc3) CVE-2023-52433: f6c383b8c31a - 2ee52ae94baabf7ee09cf2a8d854b990dac5d0e4 (v6.5-rc6 to v6.6-rc1) CVE-2023-52434: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - af1689a9b7701d9907dfc84d2a4b57c4bc907144 (v2.6.12-rc2 to v6.7-rc6) -CVE-2023-52435: (n/a) - 23d05d563b7e7b0314e65c8e882bc27eac2da8e7 (unk to v6.7-rc6) +CVE-2023-52435: 3953c46c3ac7eef31a9935427371c6f54a22f1ba - 23d05d563b7e7b0314e65c8e882bc27eac2da8e7 (v4.8-rc1 to v6.7-rc6) CVE-2023-52436: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e26b6d39270f5eab0087453d9b544189a38c8564 (v2.6.12-rc2 to v6.8-rc1) CVE-2023-52438: dd2283f2605e - 3f489c2067c5824528212b0fc18b28d51332d906 (v4.20-rc1 to v6.8-rc1) CVE-2023-52439: 57c5f4df0a5a - 0c9ae0b8605078eafc3bea053cc78791e97ba2e2 (v4.18-rc5 to v6.8-rc1) @@ -2590,15 +2878,159 @@ CVE-2023-52453: d9a871e4a143047d1d84a606772af319f11516f9 - be12ad45e15b5ee0e2526a50266ba1d295d26a88 (v6.2-rc1 to v6.8-rc1) CVE-2023-52454: 872d26a391da92ed8f0c0f5cb5fef428067b7f30 - efa56305908ba20de2104f1b8508c6a7401833be (v5.0-rc1 to v6.8-rc1) CVE-2023-52455: a5bf3cfce8cb77d9d24613ab52d520896f83dd48 - bb57f6705960bebeb832142ce9abf43220c3eab1 (v6.3-rc1 to v6.8-rc1) -CVE-2023-52456: (n/a) - 78d60dae9a0c9f09aa3d6477c94047df2fe6f7b0 (unk to v6.8-rc1) -CVE-2023-52457: (n/a) - ad90d0358bd3b4554f243a425168fc7cebe7d04e (unk to v6.8-rc1) -CVE-2023-52458: (n/a) - 6f64f866aa1ae6975c95d805ed51d7e9433a0016 (unk to v6.8-rc1) +CVE-2023-52456: cb1a609236096c278ecbfb7be678a693a70283f1 - 78d60dae9a0c9f09aa3d6477c94047df2fe6f7b0 (v5.9-rc1 to v6.8-rc1) +CVE-2023-52457: e3f0c638f428fd66b5871154b62706772045f91a - ad90d0358bd3b4554f243a425168fc7cebe7d04e (v6.1-rc6 to v6.8-rc1) +CVE-2023-52458: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6f64f866aa1ae6975c95d805ed51d7e9433a0016 (v2.6.12-rc2 to v6.8-rc1) CVE-2023-52459: 28a1295795d85a25f2e7dd391c43969e95fcb341 - 3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2 (v6.6-rc1 to v6.8-rc1) CVE-2023-52460: 7966f319c66d9468623c6a6a017ecbc0dd79be75 - b719a9c15d52d4f56bdea8241a5d90fd9197ce99 (v6.7-rc1 to v6.8-rc1) CVE-2023-52461: 56e449603f0ac580700621a356d35d5716a62ce5 - 2bbe6ab2be53858507f11f99f856846d04765ae3 (v6.7-rc1 to v6.8-rc1) CVE-2023-52462: 27113c59b6d0a587b29ae72d4ff3f832f58b0651 - ab125ed3ec1c10ccc36bc98c7a4256ad114a3dae (v5.16-rc1 to v6.8-rc1) CVE-2023-52463: f88814cc2578c121e6edef686365036db72af0ed - 0e8d2444168dd519fea501599d150e62718ed2fe (v5.8-rc7 to v6.8-rc1) CVE-2023-52464: 41003396f932d7f027725c7acebb6a7caa41dc3e - 475c58e1a471e9b873e3e39958c64a2d278275c8 (v4.12-rc1 to v6.8-rc1) +CVE-2023-52465: 8648aeb5d7b70e13264ff5f444f22081d37d4670 - 88f04bc3e737155e13caddf0ba8ed19db87f0212 (v6.5-rc1 to v6.8-rc1) +CVE-2023-52467: e15d7f2b81d2e7d93115d46fa931b366c1cdebc2 - 41673c66b3d0c09915698fec5c13b24336f18dd1 (v5.9-rc1 to v6.8-rc1) +CVE-2023-52468: dcfbb67e48a2becfce7990386e985b9c45098ee5 - 93ec4a3b76404bce01bd5c9032bef5df6feb1d62 (v6.4-rc1 to v6.8-rc1) +CVE-2023-52469: a2e73f56fa6282481927ec43aa9362c03c2e2104 - 28dd788382c43b330480f57cd34cde0840896743 (v4.2-rc1 to v6.8-rc1) +CVE-2023-52470: fa7f517cb26eb1a1a1f0baffcced39f6c3ec3337 - 7a2464fac80d42f6f8819fed97a553e9c2f43310 (v3.16-rc1 to v6.8-rc1) +CVE-2023-52471: d938a8cca88a5f02f523f95fe3d2d1214f4b4a8d - 3027e7b15b02d2d37e3f82d6b8404f6d37e3b8cf (v6.7-rc1 to v6.8-rc1) +CVE-2023-52472: 6637e11e4ad22ff03183da0dbd36d65c98b81cf7 - d872ca165cb67112f2841ef9c37d51ef7e63d1e4 (v6.5-rc1 to v6.8-rc1) +CVE-2023-52473: 3d439b1a2ad36c8b4ea151c8de25309d60d17407 - 04e6ccfc93c5a1aa1d75a537cf27e418895e20ea (v6.4-rc1 to v6.8-rc1) +CVE-2023-52474: 7be85676f1d13c77a7e0c72e04903bfd39580d4f - 00cbce5cbf88459cd1aa1d60d0f1df15477df127 (v4.14-rc1 to v6.4-rc1) +CVE-2023-52475: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5c15c60e7be615f05a45cd905093a54b11f461bc (v2.6.12-rc2 to v6.6-rc6) +CVE-2023-52476: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e53899771a02f798d436655efbd9d4b46c0f9265 (v2.6.12-rc2 to v6.6-rc6) +CVE-2023-52477: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - f74a7afc224acd5e922c7a2e52244d891bbe44ee (v2.6.12-rc2 to v6.6-rc6) +CVE-2023-52478: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - dac501397b9d81e4782232c39f94f4307b137452 (v2.6.12-rc2 to v6.6-rc6) +CVE-2023-52479: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c69813471a1ec081a0b9bf0c6bd7e8afd818afce (v2.6.12-rc2 to v6.6-rc5) +CVE-2023-52480: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 53ff5cf89142b978b1a5ca8dc4d4425e6a09745f (v2.6.12-rc2 to v6.6-rc5) +CVE-2023-52481: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 471470bc7052d28ce125901877dd10e4c048e513 (v2.6.12-rc2 to v6.6-rc5) +CVE-2023-52482: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a5ef7d68cea1344cf524f04981c2b3f80bedbb0d (v2.6.12-rc2 to v6.6-rc4) +CVE-2023-52483: 889b7da23abf92faf34491df95733bda63639e32 - 5093bbfc10ab6636b32728e35813cbd79feb063c (v5.15-rc1 to v6.6-rc6) +CVE-2023-52484: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d5afb4b47e13161b3f33904d45110f9e6463bad6 (v2.6.12-rc2 to v6.6-rc5) +CVE-2023-52485: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 8892780834ae294bc3697c7d0e056d7743900b39 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52486: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - cb4daf271302d71a6b9a7c01bd0b6d76febd8f0c (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52487: 9be6c21fdcf8a7ec48262bb76f78c17ac2761ac6 - d76fdd31f953ac5046555171620f2562715e9b71 (v6.5-rc1 to v6.8-rc2) +CVE-2023-52488: dfeae619d781dee61666d5551b93ba3be755a86b - dbf4ab821804df071c8b566d9813083125e6d97b (v3.16-rc1 to v6.8-rc1) +CVE-2023-52489: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5ec8e8ea8b7783fab150cf86404fc38cb4db8800 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52490: 64c8902ed4418317cd416c566f896bd4a92b2efc - d1adb25df7111de83b64655a80b5a135adbded61 (v6.3-rc1 to v6.8-rc1) +CVE-2023-52491: b2f0d2724ba477d326e9d654d4db1c93e98f8b93 - 206c857dd17d4d026de85866f1b5f0969f2a109e (v4.12-rc1 to v6.8-rc1) +CVE-2023-52492: d2fb0a0438384fee08a418025f743913020033ce - f5c24d94512f1b288262beda4d3dcb9629222fc7 (v5.6-rc1 to v6.8-rc1) +CVE-2023-52493: 1d3173a3bae7039b765a0956e3e4bf846dbaacb8 - 01bd694ac2f682fb8017e16148b928482bc8fa4b (v5.7-rc1 to v6.8-rc1) +CVE-2023-52494: ec32332df7645e0ba463a08d483fe97665167071 - eff9704f5332a13b08fbdbe0f84059c9e7051d5f (v5.13-rc1 to v6.8-rc1) +CVE-2023-52495: 080b4e24852b1d5b66929f69344e6c3eeb963941 - c4fb7d2eac9ff9bfc35a2e4d40c7169a332416e0 (v6.3-rc1 to v6.8-rc1) +CVE-2023-52497: 0ffd71bcc3a03ebb3551661a36052488369c4de9 - 3c12466b6b7bf1e56f9b32c366a3d83d87afb4de (v5.3-rc1 to v6.8-rc1) +CVE-2023-52498: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7839d0078e0d5e6cc2fa0b0dfbee71de74f1e557 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52499: 6f76a01173ccaa363739f913394d4e138d92d718 - f0eee815babed70a749d2496a7678be5b45b4c14 (v5.12-rc1-dontuse to v6.6-rc6) +CVE-2023-52500: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c13e7331745852d0dd7c35eabbe181cbd5b01172 (v2.6.12-rc2 to v6.6-rc2) +CVE-2023-52501: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 95a404bd60af6c4d9d8db01ad14fe8957ece31ca (v2.6.12-rc2 to v6.6-rc2) +CVE-2023-52502: 8f50020ed9b81ba909ce9573f9d05263cdebf502 - 31c07dffafce914c1d1543c135382a11ff058d93 (v3.6-rc1 to v6.6-rc6) +CVE-2023-52503: 757cc3e9ff1d72d014096399d6e2bf03974d9da1 - f4384b3e54ea813868bb81a861bf5b2406e15d8f (v5.6-rc1 to v6.6-rc6) +CVE-2023-52504: 6657fca06e3ffab8d0b3f9d8b397f5ee498952d7 - d35652a5fc9944784f6f50a5c979518ff8dacf61 (v4.17-rc1 to v6.6-rc6) +CVE-2023-52505: 8f73b37cf3fbda67ea1e579c3b5785da4e7aa2e3 - 139ad1143151a07be93bf741d4ea7c89e59f89ce (v5.18-rc1 to v6.6-rc6) +CVE-2023-52506: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b795fb9f5861ee256070d59e33130980a01fadd7 (v2.6.12-rc2 to v6.6-rc3) +CVE-2023-52507: 6a2968aaf50c7a22fced77a5e24aa636281efca8 - 354a6e707e29cb0c007176ee5b8db8be7bd2dee0 (v3.2-rc1 to v6.6-rc6) +CVE-2023-52508: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 8ae5b3a685dc59a8cf7ccfe0e850999ba9727a3c (v2.6.12-rc2 to v6.6-rc2) +CVE-2023-52509: (n/a) - 3971442870713de527684398416970cf025b4f89 (unk to v6.6-rc6) +CVE-2023-52510: ded845a781a578dfb0b5b2c138e5a067aa3b1242 - f990874b1c98fe8e57ee9385669f501822979258 (v4.12-rc1 to v6.6-rc6) +CVE-2023-52511: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 171f8a49f212e87a8b04087568e1b3d132e36a18 (v2.6.12-rc2 to v6.6-rc1) +CVE-2023-52512: a1d1e0e3d80a870cc37a6c064994b89e963d2b58 - 87d315a34133edcb29c4cadbf196ec6c30dfd47b (v5.18-rc1 to v6.6-rc6) +CVE-2023-52513: 6c52fdc244b5ccc468006fd65a504d4ee33743c7 - 53a3f777049771496f791504e7dc8ef017cba590 (v5.3-rc1 to v6.6-rc5) +CVE-2023-52515: d8536670916a685df116b5c2cb256573fd25e4e3 - e193b7955dfad68035b983a0011f4ef3590c85eb (v3.7-rc1 to v6.6-rc5) +CVE-2023-52516: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - fb5a4315591dae307a65fc246ca80b5159d296e1 (v2.6.12-rc2 to v6.6-rc1) +CVE-2023-52517: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 1f11f4202caf5710204d334fe63392052783876d (v2.6.12-rc2 to v6.6-rc1) +CVE-2023-52518: 8961987f3f5fa2f2618e72304d013c8dd5e604a6 - b938790e70540bf4f2e653dcd74b232494d06c8f (v5.16-rc1 to v6.6-rc5) +CVE-2023-52519: (n/a) - 8f02139ad9a7e6e5c05712f8c1501eebed8eacfd (unk to v6.6-rc5) +CVE-2023-52520: 1bcad8e510b27ad843315ab2c27ccf459e3acded - 528ab3e605cabf2f9c9bd5944d3bfe15f6e94f81 (v5.14-rc1 to v6.6-rc5) +CVE-2023-52522: 767e97e1e0db0d0f3152cd2f3bd3403596aedbad - 25563b581ba3a1f263a00e8c9a97f5e7363be6fd (v2.6.37-rc1 to v6.6-rc5) +CVE-2023-52523: 122e6c79efe1c25816118aca9cfabe54e99c2432 - b80e31baa43614e086a9d29dc1151932b1bd7fc5 (v5.13-rc1 to v6.6-rc5) +CVE-2023-52524: 6709d4b7bc2e079241fdef15d1160581c5261c10 - dfc7f7a988dad34c3bf4c053124fb26aa6c5f916 (v6.5-rc1 to v6.6-rc5) +CVE-2023-52525: 11958528161731c58e105b501ed60b83a91ea941 - aef7a0300047e7b4707ea0411dc9597cba108fc8 (v6.6-rc1 to v6.6-rc5) +CVE-2023-52526: 5c2a64252c5dc4cfe78e5b2a531c118894e3d155 - 75a5221630fe5aa3fedba7a06be618db0f79ba1e (v6.1-rc1 to v6.6-rc5) +CVE-2023-52527: a32e0eec7042b21ccb52896cf715e3e2641fed93 - 9d4c75800f61e5d75c1659ba201b6c0c7ead3070 (v3.5-rc1 to v6.6-rc5) +CVE-2023-52528: d0cad871703b898a442e4049c532ec39168e5b57 - e9c65989920f7c28775ec4e0c11b483910fb67b8 (v2.6.34-rc2 to v6.6-rc5) +CVE-2023-52529: fb1a79a6b6e1223ddb18f12aa35e36f832da2290 - e1cd4004cde7c9b694bbdd8def0e02288ee58c74 (v5.14-rc1 to v6.6-rc5) +CVE-2023-52530: fdf7cb4185b60c68e1a75e61691c4afdc15dea0e - 31db78a4923ef5e2008f2eed321811ca79e7f71b (v4.14-rc6 to v6.6-rc5) +CVE-2023-52531: 8ca151b568b67a7b72dcfc6ee6ea7c107ddd795c - 8ba438ef3cacc4808a63ed0ce24d4f0942cfe55d (v3.9-rc1 to v6.6-rc5) +CVE-2023-52532: (n/a) - b2b000069a4c307b09548dc2243f31f3ca0eac9c (unk to v6.6-rc5) +CVE-2023-52559: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 59df44bfb0ca4c3ee1f1c3c5d0ee8e314844799e (v2.6.12-rc2 to v6.6-rc5) +CVE-2023-52560: 9f86d624292c238203b3687cdb870a2cde1a6f9b - 45120b15743fa7c0aa53d5db6dfb4c8f87be4abd (v5.16-rc5 to v6.6-rc4) +CVE-2023-52561: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 110e70fccce4f22b53986ae797d665ffb1950aa6 (v2.6.12-rc2 to v6.6-rc1) +CVE-2023-52562: 0495e337b7039191dfce6e03f5f830454b1fae6b - 46a9ea6681907a3be6b6b0d43776dccc62cad6cf (v6.0-rc4 to v6.6-rc4) +CVE-2023-52563: (n/a) - 099f0af9d98231bb74956ce92508e87cbcb896be (unk to v6.6-rc3) +CVE-2023-52564: 9b9c8195f3f0d74a826077fc1c01b9ee74907239 - 29346e217b8ab8a52889b88f00b268278d6b7668 (v6.5-rc4 to v6.6-rc4) +CVE-2023-52565: (n/a) - 41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb (unk to v6.6-rc3) +CVE-2023-52566: (n/a) - 7ee29facd8a9c5a26079148e36bcf07141b3a6bc (unk to v6.6-rc4) +CVE-2023-52567: 0ba9e3a13c6adfa99e32b2576d20820ab10ad48a - cce7fc8b29961b64fadb1ce398dc5ff32a79643b (v6.4-rc1 to v6.6-rc4) +CVE-2023-52568: (n/a) - c6c2adcba50c2622ed25ba5d5e7f05f584711358 (unk to v6.6-rc4) +CVE-2023-52569: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 2c58c3931ede7cd08cbecf1f1a4acaf0a04a41a9 (v2.6.12-rc2 to v6.6-rc2) +CVE-2023-52570: da44c340c4fe9d9653ae84fa6a60f406bafcffce - c777b11d34e0f47dbbc4b018ef65ad030f2b283a (v6.1-rc1 to v6.6-rc4) +CVE-2023-52571: (n/a) - 488ef44c068e79752dba8eda0b75f524f111a695 (unk to v6.6-rc4) +CVE-2023-52572: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d527f51331cace562393a8038d870b3e9916686f (v2.6.12-rc2 to v6.6-rc3) +CVE-2023-52573: fd261ce6a30e01ad67c416e2c67e263024b3a6f9 - f1d95df0f31048f1c59092648997686e3f7d9478 (v5.1-rc1 to v6.6-rc3) +CVE-2023-52574: (n/a) - 492032760127251e5540a5716a70996bacf2a3fd (unk to v6.6-rc3) +CVE-2023-52575: fb3bd914b3ec28f5fb697ac55c4846ac2d542855 - 01b057b2f4cc2d905a0bd92195657dbd9a7005ab (v6.5-rc6 to v6.6-rc3) +CVE-2023-52576: fee3ff99bc67604fba77f19da0106f3ec52b1956 - 34cf99c250d5cd2530b93a57b0de31d3aaf8685b (v5.13-rc1 to v6.6-rc3) +CVE-2023-52577: 977ad86c2a1bcaf58f01ab98df5cc145083c489c - 6af289746a636f71f4c0535a9801774118486c7a (v6.6-rc1 to v6.6-rc3) +CVE-2023-52578: 1c29fc4989bc2a3838b2837adc12b8aeb0feeede - 44bdb313da57322c9b3c108eb66981c6ec6509f4 (v2.6.17-rc4 to v6.6-rc3) +CVE-2023-52580: 4f1cc51f34886d645cd3e8fc2915cc9b7a55c3b6 - 75ad80ed88a182ab2ad5513e448cf07b403af5c3 (v5.12-rc1-dontuse to v6.6-rc3) +CVE-2023-52581: 5f68718b34a531a556f2f50300ead2862278da26 - cf5000a7787cbc10341091d37245a42c119d26c5 (v6.5-rc6 to v6.6-rc3) +CVE-2023-52582: 3d3c95046742e4eebaa4b891b0b01cbbed94ebbd - df1c357f25d808e30b216188330e708e09e1a412 (v5.13-rc1 to v6.6-rc3) +CVE-2023-52583: (n/a) - b493ad718b1f0357394d2cdecbf00a44a36fa085 (unk to v6.8-rc1) +CVE-2023-52584: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e821d50ab5b956ed0effa49faaf29912fd4106d9 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52585: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b8d55a90fd55b767c25687747e2b24abd1ef8680 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52586: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 45284ff733e4caf6c118aae5131eb7e7cf3eea5a (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52587: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4f973e211b3b1c6d36f7c6a19239d258856749f9 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52588: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4961acdd65c956e97c1a000c82d91a8c1cdbe44b (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52589: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 870565f063a58576e8a4529f122cac4325c6b395 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52590: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9d618d19b29c2943527e3a43da0a35aea91062fc (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52591: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 49db9b1b86a82448dfaf3fcfefcf678dee56c8ed (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52593: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - fe0a7776d4d19e613bb8dd80fe2d78ae49e8b49d (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52594: 27876a29de221186c9d5883e5fe5f6da18ef9a45 - 2adc886244dff60f948497b59affb6c6ebb3c348 (v3.0-rc1 to v6.8-rc1) +CVE-2023-52595: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a11d965a218f0cd95b13fe44d0bcd8a20ce134a8 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52596: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 315552310c7de92baea4e570967066569937a843 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52597: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b988b1bb0053c0dcd26187d29ef07566a565cf55 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52598: (n/a) - 8b13601d19c541158a6e18b278c00ba69ae37829 (unk to v6.8-rc1) +CVE-2023-52599: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 49f9637aafa6e63ba686c13cb8549bf5e6920402 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52600: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e0e1958f4c365e380b17ccb35617345b31ef7bf3 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52601: (n/a) - 74ecdda68242b174920fe7c6133a856fb7d8559b (unk to v6.8-rc1) +CVE-2023-52602: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - fa5492ee89463a7590a1449358002ff7ef63529f (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52603: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 27e56f59bab5ddafbcfe69ad7a4a6ea1279c1b16 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52604: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9862ec7ac1cbc6eb5ee4a045b5d5b8edbb2f7e68 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52606: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 8f9abaa6d7de0a70fc68acaedce290c1f96e2e59 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52607: a0668cdc154e54bf0c85182e0535eea237d53146 - f46c8a75263f97bda13c739ba1c90aced0d3b071 (v2.6.33-rc1 to v6.8-rc1) +CVE-2023-52608: 5c8a47a5a91d4d6e185f758d61997613d9c5d6ac - 437a310b22244d4e0b78665c3042e5d1c0f45306 (v5.7-rc1 to v6.8-rc2) +CVE-2023-52609: (n/a) - 9a9ab0d963621d9d12199df9817e66982582d5a5 (unk to v6.8-rc1) +CVE-2023-52610: b57dc7c13ea90e09ae15f821d2583fa0231b4935 - 3f14b377d01d8357eba032b4cabc8c1149b458b6 (v5.3-rc1 to v6.8-rc1) +CVE-2023-52611: 65371a3f14e73979958aea0db1e3bb456a296149 - 00384f565a91c08c4bedae167f749b093d10e3fe (v6.4-rc1 to v6.8-rc1) +CVE-2023-52612: 1ab53a77b772bf7369464a0e4fa6fd6499acf8f1 - 744e1885922a9943458954cfea917b31064b4131 (v4.10-rc1 to v6.8-rc1) +CVE-2023-52613: e7e3a7c35791fe7a70997883fb8ada5866a40f4d - 15ef92e9c41124ee9d88b01208364f3fe1f45f84 (v6.6-rc1 to v6.8-rc1) +CVE-2023-52614: (n/a) - 08e23d05fa6dc4fc13da0ccf09defdd4bbc92ff4 (unk to v6.8-rc1) +CVE-2023-52615: 9996508b3353063f2d6c48c1a28a84543d72d70b - 78aafb3884f6bc6636efcc1760c891c8500b9922 (v2.6.33-rc1 to v6.8-rc1) +CVE-2023-52616: d58bb7e55a8a65894cc02f27c3e2bf9403e7c40f - ba3c5574203034781ac4231acf117da917efcd2a (v5.10-rc1 to v6.8-rc1) +CVE-2023-52617: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - df25461119d987b8c81d232cfe4411e91dcabe66 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52618: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9e4bf6a08d1e127bcc4bd72557f2dfafc6bc7f41 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52619: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d49270a04623ce3c0afddbf3e984cb245aa48e9c (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52620: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e26d3009efda338f19016df4175f354a9bd0a4ab (v2.6.12-rc2 to v6.4) +CVE-2023-52621: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 169410eba271afc9f0fb476d996795aa26770c6d (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52622: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5d1935ac02ca5aee364a449a35e2977ea84509b0 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52623: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 31b62908693c90d4d07db597e685d9f25a120073 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52624: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e5ffd1263dd5b44929c676171802e7b6af483f21 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52625: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 8e57c06bf4b0f51a4d6958e15e1a99c9520d00fa (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52626: 92214be5979c0961a471b7eaaaeacab41bdf456c - 3876638b2c7ebb2c9d181de1191db0de8cac143a (v6.7-rc2 to v6.8-rc2) +CVE-2023-52627: ca69300173b642ba64118200172171ea5967b6c5 - 020e71c7ffc25dfe29ed9be6c2d39af7bd7f661f (v5.6-rc1 to v6.8-rc1) +CVE-2023-52628: 49499c3e6e18b7677a63316f3ff54a16533dc28f - fd94d9dadee58e09b49075240fe83423eb1dcd36 (v4.1-rc1 to v6.6-rc1) +CVE-2023-52629: 9f5e8eee5cfe1328660c71812d87c2a67bda389f - 246f80a0b17f8f582b2c0996db02998239057c65 (v2.6.20-rc1 to v6.6-rc1) +CVE-2023-52630: 5160a5a53c0c4ae3708959d9465ea43ad5d90542 - 2a427b49d02995ea4a6ff93a1432c40fa4d36821 (v5.10-rc1 to v6.8-rc4) +CVE-2023-52631: be71b5cba2e6485e8959da7a9f9a44461a1bb074 - b2dd7b953c25ffd5912dda17e980e7168bebcf6c (v5.15-rc1 to v6.8-rc4) +CVE-2023-52632: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 2a9de42e8d3c82c6990d226198602be44f43f340 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52633: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - abe4eaa8618bb36c2b33e9cdde0499296a23448c (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52634: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 2ce156482a6fef349d2eba98e5070c412d3af662 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52635: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - aed5ed595960c6d301dcd4ed31aeaa7a8054c0c6 (v2.6.12-rc2 to v6.8-rc1) +CVE-2023-52636: d396f89db39a2f259e2125ca43b4c31bb65afcad - 8e46a2d068c92a905d01cbb018b00d66991585ab (v6.6-rc1 to v6.8-rc4) +CVE-2023-52637: 9d71dd0c70099914fcd063135da3c580865e924c - efe7cf828039aedb297c1f9920b638fffee6aabc (v5.4-rc1 to v6.8-rc5) +CVE-2023-52638: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6cdedc18ba7b9dacc36466e27e3267d201948c8d (v2.6.12-rc2 to v6.8-rc5) +CVE-2023-52639: (n/a) - fe752331d4b361d43cfd0b89534b4b2176057c32 (unk to v6.8-rc4) +CVE-2023-52640: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 731ab1f9828800df871c5a7ab9ffe965317d3f15 (v2.6.12-rc2 to v6.8-rc4) +CVE-2023-52641: (n/a) - aaab47f204aaf47838241d57bf8662c8840de60a (unk to v6.8-rc4) CVE-2023-5345: a4e430c8c8ba96be8c6ec4f2eb108bb8bcbee069 - e6e43b8aa7cd3c3af686caf0c2e11819a886d705 (v6.1-rc1 to v6.6-rc4) CVE-2023-5633: a950b989ea29ab3b38ea7f6e3d2540700a3c54e8 - 91398b413d03660fd5828f7b4abc64e884b98069 (v6.2 to v6.6-rc6) CVE-2023-5717: fa8c269353d560b7c28119ad7617029f92e40b15 - 32671e3799ca2e4590773fd0e63aaa4229e50c06 (v4.4-rc1 to v6.6-rc7) @@ -2611,11 +3043,11 @@ CVE-2023-6200: 3dec89b14d37ee635e772636dad3f09f78f1ab87 - dade3f6a1e4e35a5ae916d5e78b3229ec34c78ec (v6.6-rc1 to v6.7-rc7) CVE-2023-6238: 855b7717f44b13e0990aa5ad36bbf9aa35051516 - (n/a) (v6.2-rc1 to unk) CVE-2023-6240: (n/a) - (n/a) (unk to unk) -CVE-2023-6270: (n/a) - (n/a) (unk to unk) -CVE-2023-6356: (n/a) - (n/a) (unk to unk) +CVE-2023-6270: (n/a) - f98364e926626c678fb4b9004b75cacf92ff0662 (unk to v6.9-rc1) +CVE-2023-6356: (n/a) - efa56305908ba20de2104f1b8508c6a7401833be (unk to v6.8-rc1) CVE-2023-6531: 0091bfc81741b8d3aeb3b7ab8636f911b2de6e80 - 705318a99a138c29a512a72c3e0043b3cd7f55f4 (v6.1-rc1 to v6.7-rc5) CVE-2023-6535: (n/a) - (n/a) (unk to unk) -CVE-2023-6536: (n/a) - (n/a) (unk to unk) +CVE-2023-6536: (n/a) - 0849a5441358cef02586fb2d60f707c0db195628 (unk to v6.8-rc1) CVE-2023-6546: e1eaea46bb4020b38a141b84f88565d4603f8dd0 - 3c4f8333b582487a2d1e02171f1465531cde53e3 (v2.6.35-rc1 to v6.5-rc7) CVE-2023-6560: 2b188cc1bb857a9d4701ae59aa7768b5124e262e - 820d070feb668aab5bc9413c285a1dda2a70e076 (v5.1-rc1 to v6.7-rc4) CVE-2023-6606: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b35858b3786ddbb56e1c35138ba25d6adf8d0bef (v2.6.12-rc2 to v6.7-rc7) @@ -2626,7 +3058,7 @@ CVE-2023-6915: 72dba584b695d8bc8c1a50ed54ad4cba7c62314d - af73483f4e8b6f5c68c9aa63257bdd929a9c194a (v2.6.23-rc1 to v6.7-rc7) CVE-2023-6931: a723968c0ed36db676478c3d26078f13484fe01c - 382c27f4ed28f803b1f1473ac2d8db0afc795a1b (v4.3-rc4 to v6.7-rc5) CVE-2023-6932: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e2b706c691905fe78468c361aaabc719d0a496f1 (v2.6.12-rc2 to v6.7-rc4) -CVE-2023-7042: 5e3dd157d7e70f0e3cea3f2573ed69fb156a19d5 - (n/a) (v3.11-rc1 to unk) +CVE-2023-7042: 5e3dd157d7e70f0e3cea3f2573ed69fb156a19d5 - ad25ee36f00172f7d53242dc77c69fff7ced0755 (v3.11-rc1 to v6.9-rc1) CVE-2023-7192: 7d367e06688dc7a2cc98c2ace04e1296e1d987e2 - ac4893980bbe79ce383daf9a0885666a30fe4c83 (v3.3-rc6 to v6.3-rc1) CVE-2024-0193: 5f68718b34a531a556f2f50300ead2862278da26 - 7315dc1e122c85ffdfc8defffbb8f8b616c2eb1a (v6.5-rc6 to v6.7) CVE-2024-0340: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4d8df0f5f79f747d75a7d356d9b9ea40a4e4c8a9 (v2.6.12-rc2 to v6.4-rc6) @@ -2641,27 +3073,28 @@ CVE-2024-0641: fc1b6d6de2208774efd2a20bf0daddb02d18b1e0 - 08e50cf071847323414df0835109b6f3560d44f5 (v5.5-rc1 to v6.6-rc5) CVE-2024-0646: d829e9c4112b52f4f00195900fd4c685f61365ab - c5a595000e2677e865a39f249c056bc05d6e55fd (v4.20-rc1 to v6.7-rc5) CVE-2024-0775: 7c319d328505b7781b65238ae9f53293b5ee0ca8 - 4c0b4818b1f636bc96359f7817a2d8bab6370162 (v3.6-rc1 to v6.4-rc2) -CVE-2024-0841: 32021982a324dce93b4ae00c06213bf45fb319c8 - (n/a) (v5.1-rc1 to unk) +CVE-2024-0841: 32021982a324dce93b4ae00c06213bf45fb319c8 - 79d72c68c58784a3e1cd2378669d51bfd0cb7498 (v5.1-rc1 to v6.8-rc4) CVE-2024-1085: aaa31047a6d25da0fa101da1ed544e1247949b40 - b1db244ffd041a49ecc9618e8feb6b5c1afcdaa7 (v5.13-rc1 to v6.8-rc1) CVE-2024-1086: e0abdadcc6e113ed2e22c85b350074487095875b - f342de4e2f33e0e39165d8639387aa6c19dff660 (v3.15-rc1 to v6.8-rc2) CVE-2024-1151: 798c166173ffb50128993641fcf791df51bed48e - 6e2f90d31fe09f2b852de25125ca875aabd81367 (v4.12-rc1 to v6.8-rc5) CVE-2024-1312: 6c21e066f9256ea1df6f88768f6ae1080b7cf509 - 657b5146955eba331e01b9a6ae89ce2e716ba306 (CVE Caused by Backporting) CVE-2024-21803: (n/a) - (n/a) (unk to unk) -CVE-2024-22099: (n/a) - (n/a) (unk to unk) +CVE-2024-2193: (n/a) - (n/a) (unk to unk) +CVE-2024-22099: (n/a) - 2535b848fa0f42ddff3e5255cf5e742c9b77bb26 (unk to v6.8-rc7) CVE-2024-22386: (n/a) - (n/a) (unk to unk) CVE-2024-22705: e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9 - d10c77873ba1e9e6b91905018e29e196fd5f863d (v5.15-rc1 to v6.7-rc8) -CVE-2024-23196: (n/a) - (n/a) (unk to unk) -CVE-2024-23307: edbe83ab4c27ea6669eb57adb5ed7eaec1118ceb - (n/a) (v4.1-rc1 to unk) +CVE-2024-23196: (n/a) - 1f4a08fed450db87fbb5ff5105354158bdbe1a22 (unk to v6.5-rc1) +CVE-2024-23307: edbe83ab4c27ea6669eb57adb5ed7eaec1118ceb - dfd2bf436709b2bccb78c2dda550dde93700efa7 (v4.1-rc1 to v6.9-rc1) CVE-2024-23848: (n/a) - (n/a) (unk to unk) CVE-2024-23849: 3289025aedc018f8fd9d0e37fb9efa0c6d531ffa - 13e788deb7348cc88df34bed736c3b3b9927ea52 (v4.11-rc1 to v6.8-rc2) CVE-2024-23850: 2dfb1e43f57dd3aeaa66f7cf05d068db2d4c8788 - e03ee2fe873eb68c1f9ba5112fee70303ebf9dfb (v5.9-rc1 to v6.8-rc4) -CVE-2024-23851: (n/a) - bd504bcfec41a503b32054da5472904b404341a4 (unk to v6.8-rc3) +CVE-2024-23851: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - bd504bcfec41a503b32054da5472904b404341a4 (v2.6.12-rc2 to v6.8-rc3) CVE-2024-24855: ecfd03c6a99ad98fea5cb75ec83cd9945adff8d9 - 0e881c0a4b6146b7e856735226208f48251facd8 (v2.6.34-rc1 to v6.5-rc2) CVE-2024-24857: 31ad169148df2252a774c73c504aff43bfa4b656 - (n/a) (v3.16-rc1 to unk) CVE-2024-24858: 4e70c7e71c5f9cf11013628ab5a0ced449b1c7b2 - (n/a) (v3.13-rc1 to unk) CVE-2024-24859: 04837f6447c7f3ef114cda1ad761822dedbff8cf - (n/a) (v2.6.18-rc1 to unk) CVE-2024-24860: 2fd36558f02c0606768929fc77671716680d01c2 - da9065caa594d19b26e1a030fd0cc27bd365d685 (v4.2-rc1 to v6.8-rc1) -CVE-2024-24861: (n/a) - (n/a) (unk to unk) +CVE-2024-24861: (n/a) - 36d503ad547d1c75758a6fcdbec2806f1b6aeb41 (unk to v6.9-rc1) CVE-2024-24864: (n/a) - (n/a) (unk to unk) CVE-2024-25739: 801c135ce73d5df1caf3eca35b66a10824ae0707 - (n/a) (v2.6.22-rc1 to unk) CVE-2024-25740: (n/a) - (n/a) (unk to unk) @@ -2670,14 +3103,14 @@ CVE-2024-26581: f718863aca469a109895cb855e6b81fff4827d71 - 60c0c230c6f046da536d3df8b39a20b9a9fd6af0 (v6.5-rc4 to v6.8-rc4) CVE-2024-26582: fd31f3996af2 - 32b55c5ff9103b8508c1e04bfa5a08c64e7a925f (v6.0-rc1 to v6.8-rc5) CVE-2024-26583: 0cada33241d9de205522e3858b18e506ca5cce2c - aec7961916f3f9e88766e2688992da6980f11b8d (v5.7 to v6.8-rc5) -CVE-2024-26584: (n/a) - 8590541473188741055d27b955db0777569438e3 (unk to v6.8-rc5) +CVE-2024-26584: a54667f6728c - 8590541473188741055d27b955db0777569438e3 (v4.16-rc1 to v6.8-rc5) CVE-2024-26585: a42055e8d2c3 - e01e3934a1b2d122919f73bc6ddbe1cdafc4bbdb (v4.20-rc1 to v6.8-rc5) CVE-2024-26586: c3ab435466d5 - 483ae90d8f976f8339cf81066312e1329f2d3706 (v4.19-rc1 to v6.8-rc1) -CVE-2024-26587: (n/a) - ea937f77208323d35ffe2f8d8fc81b00118bfcda (unk to v6.8-rc1) -CVE-2024-26588: (n/a) - 36a87385e31c9343af9a4756598e704741250a67 (unk to v6.8-rc1) +CVE-2024-26587: b63e78fca889e07931ec8f259701718a24e5052e - ea937f77208323d35ffe2f8d8fc81b00118bfcda (v6.6-rc1 to v6.8-rc1) +CVE-2024-26588: bbfddb904df6f82a5948687a2d57766216b9bc0f - 36a87385e31c9343af9a4756598e704741250a67 (v6.1-rc3 to v6.8-rc1) CVE-2024-26589: d58e468b1112 - 22c7fa171a02d310e3a3f6ed46a698ca8a0060ed (v4.20-rc1 to v6.8-rc1) CVE-2024-26590: 8f89926290c4 - 118a8cf504d7dfa519562d000f423ee3ca75d2c4 (v5.16-rc1 to v6.8-rc1) -CVE-2024-26591: (n/a) - 715d82ba636cb3629a6e18a33bb9dbe53f9936ee (unk to v6.8-rc1) +CVE-2024-26591: f3a95075549e0e5c36db922caf86847db7a35403 - 715d82ba636cb3629a6e18a33bb9dbe53f9936ee (v5.13-rc1 to v6.8-rc1) CVE-2024-26592: (n/a) - 38d20c62903d669693a1869aa68c4dd5674e2544 (unk to v6.8-rc1) CVE-2024-26593: 315cd67c9453 - c1c9d0f6f7f1dbf29db996bd8e166242843a5f21 (v5.3-rc1 to v6.8-rc5) CVE-2024-26594: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 92e470163d96df8db6c4fa0f484e4a229edb903d (v2.6.12-rc2 to v6.8-rc1) @@ -2686,3 +3119,208 @@ CVE-2024-26597: 14452ca3b5ce304fb2fea96dbc9ca1e4e7978551 - b33fb5b801c6db408b774a68e7c8722796b59ecc (v4.17-rc1 to v6.8-rc1) CVE-2024-26598: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - ad362fe07fecf0aba839ff2cc59a3617bd42c33f (v2.6.12-rc2 to v6.8-rc1) CVE-2024-26599: 3ab7b6ac5d829e60c3b89d415811ff1c9f358c8e - a297d07b9a1e4fb8cda25a4a2363a507d294b7c9 (v5.17-rc1 to v6.8-rc1) +CVE-2024-26600: 657b306a7bdfca4ae1514b533a0e7c3c6d26dbc6 - 7104ba0f1958adb250319e68a15eff89ec4fd36d (v3.7-rc1 to v6.8-rc3) +CVE-2024-26601: 6bd97bf273bdb4944904e57480f6545bca48ad77 - c9b528c35795b711331ed36dc3dbee90d5812d4e (v5.11-rc1 to v6.8-rc3) +CVE-2024-26602: 22e4ebb975822833b083533035233d128b30e98f - 944d5fe50f3f03daacfea16300e656a1691c4a23 (v4.14-rc1 to v6.8-rc6) +CVE-2024-26603: fcb3635f5018e53024c6be3c3213737f469f74ff - d877550eaf2dc9090d782864c96939397a3c6835 (v5.14-rc1 to v6.8-rc4) +CVE-2024-26604: 1b28cb81dab7c1eedc6034206f4e8d644046ad31 - 3ca8fbabcceb8bfe44f7f50640092fd8f1de375c (v6.6-rc1 to v6.8-rc5) +CVE-2024-26605: f93e71aea6c60ebff8adbd8941e678302d377869 - 1e560864159d002b453da42bd2c13a1805515a20 (v6.7 to v6.8-rc3) +CVE-2024-26606: 457b9a6f09f011ebcb9b52cc203a6331a6fc2de7 - 97830f3c3088638ff90b20dfba2eb4d487bf14d7 (v2.6.29-rc1 to v6.8-rc3) +CVE-2024-26607: 21d808405fe49028036932dd969920f4fee4f481 - 08ac6f132dd77e40f786d8af51140c96c6d739c9 (v5.0-rc1 to v6.8-rc2) +CVE-2024-26608: 0626e6641f6b467447c81dd7678a69c66f7746cf - ebeae8adf89d9a82359f6659b1663d09beec2faa (v5.15-rc1 to v6.8-rc2) +CVE-2024-26610: cf29c5b66b9f83939367d90679eb68cdfa2f0356 - cf4a0d840ecc72fcf16198d5e9c505ab7d5a5e4d (v5.5-rc1 to v6.8-rc2) +CVE-2024-26611: 24ea50127ecf0efe819c1f6230add27abc6ca9d9 - c5114710c8ce86b8317e9b448f4fd15c711c2a82 (v6.6-rc1 to v6.8-rc2) +CVE-2024-26612: 9549332df4ed4e761a1d41c83f2c25d28bb22431 - 3be0b3ed1d76c6703b9ee482b55f7e01c369cc68 (v5.17-rc1 to v6.8-rc2) +CVE-2024-26614: fff1f3001cc58b5064a0f1154a7ac09b76f29c44 - 198bc90e0e734e5f98c3d2833e8390cac3df61b2 (v4.4-rc1 to v6.8-rc2) +CVE-2024-26615: 4b1b7d3b30a6d32ac1a1dcede284e76ef8a8542d - dbc153fd3c142909e564bb256da087e13fbf239c (v4.19-rc1 to v6.8-rc2) +CVE-2024-26616: e02ee89baa66c40e1002cf8b09141fce7265e0f5 - f546c4282673497a06ecb6190b50ae7f6c85b02f (v6.4-rc1 to v6.8-rc2) +CVE-2024-26617: 52526ca7fdb905a768a93f8faa418e9b988fc34b - 4cccb6221cae6d020270606b9e52b1678fc8b71a (v6.7-rc1 to v6.8-rc1) +CVE-2024-26618: 5d0a8d2fba50e9c07cde4aad7fba28c008b07a5b - dc7eb8755797ed41a0d1b5c0c39df3c8f401b3d9 (v6.5-rc7 to v6.8-rc1) +CVE-2024-26619: d8792a5734b0f3e58b898c2e2f910bfac48e9ee3 - 78996eee79ebdfe8b6f0e54cb6dcc792d5129291 (v6.7-rc5 to v6.8-rc1) +CVE-2024-26620: 48cae940c31d2407d860d87c41d5f9871c0521db - 850fb7fa8c684a4c6bf0e4b6978f4ddcc5d43d11 (v6.0-rc1 to v6.8-rc1) +CVE-2024-26621: efa7df3e3bb5da8e6abbe37727417f32a37fba47 - 4ef9ad19e17676b9ef071309bc62020e2373705d (v6.7 to v6.8-rc3) +CVE-2024-26622: (n/a) - 2f03fc340cac9ea1dc63cbf8c93dd2eb0f227815 (unk to v6.8-rc7) +CVE-2024-26623: (n/a) - 7e82a8745b951b1e794cc780d46f3fbee5e93447 (unk to v6.8-rc3) +CVE-2024-26625: (n/a) - aa2b2eb3934859904c287bf5434647ba72e14c1c (unk to v6.8-rc3) +CVE-2024-26626: bb7403655b3c3eb245d0ee330047cd3e20b3c4af - e622502c310f1069fd9f41cd38210553115f610a (v6.8-rc1 to v6.8-rc3) +CVE-2024-26627: (n/a) - 4373534a9850627a2695317944898eb1283a2db0 (unk to v6.8-rc3) +CVE-2024-26629: ce3c4ad7f4ce5db7b4f08a1e237d8dd94b39180b - edcf9725150e42beeca42d085149f4c88fa97afd (v5.19-rc1 to v6.8-rc2) +CVE-2024-26630: cf264e1329fb0307e044f7675849f9f38b44c11a - 3a75cb05d53f4a6823a32deb078de1366954a804 (v6.5-rc1 to v6.8-rc7) +CVE-2024-26631: 2d9a93b4902be6a5504b5941dd15e9cd776aadca - 2e7ef287f07c74985f1bf2858bedc62bd9ebf155 (v5.13-rc1 to v6.8-rc1) +CVE-2024-26632: 640d1930bef4f87ec8d8d2b05f0f6edc1dfcf662 - 7bed6f3d08b7af27b7015da8dc3acf2b9c1f21d7 (v5.17-rc1 to v6.8-rc1) +CVE-2024-26633: (n/a) - d375b98e0248980681e5e56b712026174d617198 (unk to v6.8-rc1) +CVE-2024-26634: 7663d522099ecc464512164e660bc771b2ff7b64 - d09486a04f5da0a812c26217213b89a3b1acf836 (v6.6-rc7 to v6.8-rc2) +CVE-2024-26635: (n/a) - e3f9bed9bee261e3347131764e42aeedf1ffea61 (unk to v6.8-rc2) +CVE-2024-26636: (n/a) - dad555c816a50c6a6a8a86be1f9177673918c647 (unk to v6.8-rc2) +CVE-2024-26637: 0a3d898ee9a8303d5b3982b97ef0703919c3ea76 - 556857aa1d0855aba02b1c63bc52b91ec63fc2cc (v6.7 to v6.8-rc2) +CVE-2024-26638: f94fd25cb0aaf77fd7453f31c5d394a1a68ecf60 - 78fbb92af27d0982634116c7a31065f24d092826 (v5.19-rc1 to v6.8-rc1) +CVE-2024-26639: 5ec8e8ea8b7783fab150cf86404fc38cb4db8800 - f6564fce256a3944aa1bc76cb3c40e792d97c1eb (v6.8-rc1 to v6.8-rc3) +CVE-2024-26640: 93ab6cc69162775201587cc9da00d5016dc890e2 - 577e4432f3ac810049cb7e6b71f4d96ec7c6e894 (v4.18-rc1 to v6.8-rc3) +CVE-2024-26641: 0d3c703a9d1723c7707e0680019ac8ff5922db42 - 8d975c15c0cd744000ca386247432d57b21f9df0 (v4.7-rc1 to v6.8-rc3) +CVE-2024-26642: 761da2935d6e18d178582dbdf315a3a458555505 - 16603605b667b70da974bea8216c93e7db043bf1 (v4.1-rc1 to v6.8) +CVE-2024-26643: 5f68718b34a531a556f2f50300ead2862278da26 - 552705a3650bbf46a22b1adedc1b04181490fc36 (v6.5-rc6 to v6.8) +CVE-2024-26644: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7081929ab2572920e94d70be3d332e5c9f97095a (v2.6.12-rc2 to v6.8-rc2) +CVE-2024-26645: c193707dde77ace92a649cd59a17e105e2fbeaef - 2b44760609e9eaafc9d234a6883d042fc21132a7 (v4.17-rc1 to v6.8-rc2) +CVE-2024-26646: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 97566d09fd02d2ab329774bb89a2cdf2267e86d9 (v2.6.12-rc2 to v6.8-rc1) +CVE-2024-26647: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 3bb9b1f958c3d986ed90a3ff009f1e77e9553207 (v2.6.12-rc2 to v6.8-rc1) +CVE-2024-26648: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7073934f5d73f8b53308963cee36f0d389ea857c (v2.6.12-rc2 to v6.8-rc1) +CVE-2024-26649: 3da9b71563cbb7281875adab1d7c4132679da987 - bc03c02cc1991a066b23e69bbcc0f66e8f1f7453 (v6.3-rc1 to v6.8-rc1) +CVE-2024-26650: (n/a) - 5913320eb0b3ec88158cfcb0fa5e996bf4ef681b (unk to v6.8-rc2) +CVE-2024-26651: (n/a) - 07161b2416f740a2cb87faa5566873f401440a61 (unk to v6.9-rc1) +CVE-2024-26652: 4569cce43bc61e4cdd76597a1cf9b608846c18cc - ba18deddd6d502da71fd6b6143c53042271b82bd (v6.4-rc1 to v6.8) +CVE-2024-26653: acd6199f195d6de814ac4090ce0864a613b1580e - 7c9631969287a5366bc8e39cd5abff154b35fb80 (v6.7-rc1 to v6.9-rc2) +CVE-2024-26654: (n/a) - 051e0840ffa8ab25554d6b14b62c9ab9e4901457 (unk to v6.9-rc2) +CVE-2024-26655: (n/a) - 5b4cdd9c5676559b8a7c944ac5269b914b8c0bb8 (unk to v6.9-rc2) +CVE-2024-26656: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 22207fd5c80177b860279653d017474b2812af5e (v2.6.12-rc2 to v6.9-rc1) +CVE-2024-26657: 56e449603f0ac580700621a356d35d5716a62ce5 - f34e8bb7d6c6626933fe993e03ed59ae85e16abb (v6.7-rc1 to v6.9-rc2) +CVE-2024-26658: (n/a) - 2acc59dd88d27ad69b66ded80df16c042b04eeec (unk to v6.8-rc1) +CVE-2024-26659: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7c4650ded49e5b88929ecbbb631efb8b0838e811 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26660: 3a83e4e64bb1522ddac67ffc787d1c38291e1a65 - 58fca355ad37dcb5f785d9095db5f748b79c5dc2 (v5.11-rc1 to v6.8-rc4) +CVE-2024-26661: 474ac4a875ca6fea3fc5183d3ad22ef7523dca53 - 66951d98d9bf45ba25acf37fe0747253fafdf298 (v5.9-rc1 to v6.8-rc4) +CVE-2024-26662: 474ac4a875ca6fea3fc5183d3ad22ef7523dca53 - e96fddb32931d007db12b1fce9b5e8e4c080401b (v5.9-rc1 to v6.8-rc4) +CVE-2024-26663: ef20cd4dd1633987bcf46ac34ace2c8af212361f - 3871aa01e1a779d866fa9dfdd5a836f342f4eb87 (v4.9-rc1 to v6.8-rc4) +CVE-2024-26664: (n/a) - 4e440abc894585a34c2904a32cd54af1742311b3 (unk to v6.8-rc4) +CVE-2024-26665: 4cb47a8644cc9eb8ec81190a50e79e6530d0297f - d75abeec401f8c86b470e7028a13fcdc87e5dd06 (v5.9-rc1 to v6.8-rc4) +CVE-2024-26666: 8cc07265b69141f8ed9597d0f27185239c241c80 - 9480adfe4e0f0319b9da04b44e4eebd5ad07e0cd (v6.5-rc1 to v6.8-rc4) +CVE-2024-26667: ae4d721ce10057a4aa9f0d253e0d460518a9ef75 - 7f3d03c48b1eb6bc45ab20ca98b8b11be25f9f52 (v5.19-rc1 to v6.8-rc4) +CVE-2024-26668: d2168e849ebf617b2b7feae44c0c0baf739cb610 - c9d9eb9c53d37cdebbad56b91e40baf42d5a97aa (v4.3-rc1 to v6.8-rc2) +CVE-2024-26669: bbf73830cd48cff1599811d4f69c7cfd49c7b869 - 32f2a0afa95fae0d1ceec2ff06e0e816939964b8 (v5.1-rc1 to v6.8-rc2) +CVE-2024-26670: 471470bc7052d28ce125901877dd10e4c048e513 - 832dd634bd1b4e3bbe9f10b9c9ba5db6f6f2b97f (v6.6-rc5 to v6.8-rc1) +CVE-2024-26671: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5266caaf5660529e3da53004b8b7174cab6374ed (v2.6.12-rc2 to v6.8-rc1) +CVE-2024-26672: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4f32504a2f85a7b40fe149436881381f48e9c0c0 (v2.6.12-rc2 to v6.8-rc1) +CVE-2024-26673: 857b46027d6f91150797295752581b7155b9d0e1 - 8059918a1377f2f1fff06af4f5a4ed3d5acd6bc4 (v5.3-rc1 to v6.8-rc3) +CVE-2024-26674: b19b74bc99b1501a550f4448d04d59b946dc617a - 8eed4e00a370b37b4e5985ed983dccedd555ea9d (v6.4-rc1 to v6.8-rc4) +CVE-2024-26675: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - cb88cb53badb8aeb3955ad6ce80b07b598e310b8 (v2.6.12-rc2 to v6.8-rc4) +CVE-2024-26676: (n/a) - 1279f9d9dec2d7462823a18c29ad61359e0a007d (unk to v6.8-rc4) +CVE-2024-26677: (n/a) - e7870cf13d20f56bfc19f9c3e89707c69cf104ef (unk to v6.8-rc4) +CVE-2024-26678: 3e3eabe26dc88692d34cf76ca0e0dd331481cc15 - 1ad55cecf22f05f1c884adf63cc09d3c3e609ebf (v6.7-rc1 to v6.8-rc4) +CVE-2024-26679: f4713a3dfad045d46afcb9c2a7d0bba288920ed4 - eef00a82c568944f113f2de738156ac591bbd5cd (v3.18-rc7 to v6.8-rc4) +CVE-2024-26680: 94ad94558b0fbf18dd6fb0987540af1693157556 - 2e7d3b67630dfd8f178c41fa2217aa00e79a5887 (v5.5-rc1 to v6.8-rc4) +CVE-2024-26681: 012ec02ae4410207f796a9b280a60b80b6cc790a - ba5e1272142d051dcc57ca1d3225ad8a089f9858 (v6.0-rc1 to v6.8-rc4) +CVE-2024-26682: c09c4f31998bac6d73508e38812518aceb069b68 - 35e2385dbe787936c793d70755a5177d267a40aa (v6.7-rc1 to v6.8-rc4) +CVE-2024-26683: c09c4f31998bac6d73508e38812518aceb069b68 - 177fbbcb4ed6b306c1626a277fac3fb1c495a4c7 (v6.7-rc1 to v6.8-rc4) +CVE-2024-26684: 56e58d6c8a5640eb708e85866e9d243d0357ee54 - 46eba193d04f8bd717e525eb4110f3c46c12aec3 (v5.4-rc1 to v6.8-rc4) +CVE-2024-26685: 7f42ec3941560f0902fe3671e36f2c20ffd3af0a - 5bc09b397cbf1221f8a8aacb1152650c9195b02b (v3.12-rc4 to v6.8-rc4) +CVE-2024-26686: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7601df8031fd67310af891897ef6cc0df4209305 (v2.6.12-rc2 to v6.8-rc4) +CVE-2024-26687: d46a78b05c0e37f76ddf4a7a67bf0b6c68bada55 - fa765c4b4aed2d64266b694520ecb025c862c5a9 (v2.6.37-rc1 to v6.8-rc5) +CVE-2024-26688: 32021982a324dce93b4ae00c06213bf45fb319c8 - 79d72c68c58784a3e1cd2378669d51bfd0cb7498 (v5.1-rc1 to v6.8-rc4) +CVE-2024-26689: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - cda4672da1c26835dcbd7aec2bfed954eda9b5ef (v2.6.12-rc2 to v6.8-rc4) +CVE-2024-26690: 133466c3bbe171f826294161db203f7670bb30c8 - 38cc3c6dcc09dc3a1800b5ec22aef643ca11eab8 (v6.6-rc1 to v6.8-rc4) +CVE-2024-26691: (n/a) - 10c02aad111df02088d1a81792a709f6a7eca6cc (unk to v6.8-rc5) +CVE-2024-26692: d08089f649a0cfb2099c8551ac47eef0cc23fdf2 - 4860abb91f3d7fbaf8147d54782149bb1fc45892 (v6.3-rc1 to v6.8-rc5) +CVE-2024-26693: 57974a55d995468a9a476e24693eb741c649b25f - b7198383ef2debe748118996f627452281cf27d7 (v6.4-rc1 to v6.8-rc5) +CVE-2024-26694: 5e31b3df86ec6fbb925eee77fe2c450099c61dff - 353d321f63f7dbfc9ef58498cc732c9fe886a596 (v6.4-rc1 to v6.8-rc4) +CVE-2024-26695: 1b05ece0c931536c0a38a9385e243a7962e933f6 - ccb88e9549e7cfd8bcd511c538f437e20026e983 (v6.0-rc1 to v6.8-rc4) +CVE-2024-26696: 1d1d1a767206fbe5d4c69493b7e6d2a8d08cc0a0 - 38296afe3c6ee07319e01bb249aa4bb47c07b534 (v3.9-rc1 to v6.8-rc4) +CVE-2024-26697: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 67b8bcbaed4777871bb0dcc888fb02a614a98ab1 (v2.6.12-rc2 to v6.8-rc4) +CVE-2024-26698: ac5047671758ad4be9f93898247b3a8b6dfde4c7 - e0526ec5360a48ad3ab2e26e802b0532302a7e11 (v5.8-rc1 to v6.8-rc3) +CVE-2024-26699: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 46806e59a87790760870d216f54951a5b4d545bc (v2.6.12-rc2 to v6.8-rc5) +CVE-2024-26700: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e6a7df96facdcf5b1f71eb3ec26f2f9f6ad61e57 (v2.6.12-rc2 to v6.8-rc4) +CVE-2024-26702: 121354b2eceb2669ebdffa76b105ad6c03413966 - 792595bab4925aa06532a14dd256db523eb4fa5e (v5.0-rc1 to v6.8-rc5) +CVE-2024-26703: e88ed227f639ebcb31ed4e5b88756b47d904584b - 1389358bb008e7625942846e9f03554319b7fecc (v6.5-rc1 to v6.8-rc3) +CVE-2024-26704: fcf6b1b729bcd23f2b49a84fb33ffbb44712ee6a - 55583e899a5357308274601364741a83e78d6ac4 (v3.18-rc2 to v6.8-rc3) +CVE-2024-26705: e5ef93d02d6c9cc3a14e7348481c9e41a528caa1 - 913b9d443a0180cf0de3548f1ab3149378998486 (v6.6-rc2 to v6.8-rc3) +CVE-2024-26706: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 8b1d72395635af45410b66cc4c4ab37a12c4a831 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26707: 121c33b07b3127f501b366bc23d2a590e2f2b8ef - 37e8c97e539015637cb920d3e6f1e404f707a06e (v5.9-rc1 to v6.8-rc3) +CVE-2024-26708: 1e777f39b4d75e599a3aac8e0f67d739474f198c - 337cebbd850f94147cee05252778f8f78b8c337f (v6.2-rc1 to v6.8-rc5) +CVE-2024-26709: a8ca9fc9134c1a43e6d4db7ff59496bbd7075def - 0846dd77c8349ec92ca0079c9c71d130f34cb192 (v6.7-rc1 to v6.8-rc5) +CVE-2024-26710: 18f14afe281648e31ed35c9ad2fcb724c4838ad9 - f1acb109505d983779bbb7e20a1ee6244d2b5736 (v6.8-rc1 to v6.8-rc5) +CVE-2024-26711: 62094060cf3acaf52e277457d807ea753269b89e - a22b0a2be69a36511cb5b37d948b651ddf7debf3 (v6.2-rc1 to v6.8-rc5) +CVE-2024-26712: 663c0c9496a69f80011205ba3194049bcafd681d - 4a7aee96200ad281a5cc4cf5c7a2e2a49d2b97b0 (v5.4-rc1 to v6.8-rc5) +CVE-2024-26713: (n/a) - ed8b94f6e0acd652ce69bd69d678a0c769172df8 (unk to v6.8-rc5) +CVE-2024-26714: 9c8c6bac1ae86f6902baa938101902fb3a0a100b - 85e985a4f46e462a37f1875cb74ed380e7c0c2e0 (v5.15-rc1 to v6.8-rc5) +CVE-2024-26715: 9772b47a4c2916d645c551228b6085ea24acbe5d - 61a348857e869432e6a920ad8ea9132e8d44c316 (v4.6-rc5 to v6.8-rc3) +CVE-2024-26716: 83cb2604f641cecadc275ca18adbba4bf262320f - 12783c0b9e2c7915a50d5ec829630ff2da50472c (v6.5-rc1 to v6.8-rc3) +CVE-2024-26717: b33752c300232d7f95dd9a4353947d0c9e6a0e52 - 00aab7dcb2267f2aef59447602f34501efe1a07f (v5.12-rc1-dontuse to v6.8-rc3) +CVE-2024-26718: 39d42fa96ba1b7d2544db3f8ed5da8fb0d5cb877 - 0a9bab391e336489169b95cb0d4553d921302189 (v5.9-rc1 to v6.8-rc3) +CVE-2024-26719: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 39126abc5e20611579602f03b66627d7cd1422f0 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26720: f6789593d5cea42a4ecb1cbeab6a23ade5ebbba7 - 9319b647902cbd5cc884ac08a8a6d54ce111fc78 (v3.16 to v6.8-rc3) +CVE-2024-26721: bd077259d0a9c9bf453e7e9751bf41f1996e6585 - 962ac2dce56bb3aad1f82a4bbe3ada57a020287c (v6.7-rc1 to v6.8-rc5) +CVE-2024-26722: cdba4301adda7c60a2064bf808e48fccd352aaa9 - 6ef5d5b92f7117b324efaac72b3db27ae8bb3082 (v6.7-rc5 to v6.8-rc5) +CVE-2024-26723: cabc9d49333df72fe0f6d58bdcf9057ba341e701 - 15faa1f67ab405d47789d4702f587ec7df7ef03e (v6.1-rc1 to v6.8-rc5) +CVE-2024-26724: 496fd0a26bbf73b6b12407ee4fbe5ff49d659a6d - aa1eec2f546f2afa8c98ec41e5d8ee488165d685 (v6.7-rc1 to v6.8-rc5) +CVE-2024-26725: 9d71b54b65b1fb6c0d3a6c5c88ba9b915c783fbc - 53c0441dd2c44ee93fddb5473885fd41e4bc2361 (v6.7-rc1 to v6.8-rc5) +CVE-2024-26726: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5571e41ec6e56e35f34ae9f5b3a335ef510e0ade (v2.6.12-rc2 to v6.8-rc5) +CVE-2024-26727: 2dfb1e43f57dd3aeaa66f7cf05d068db2d4c8788 - e03ee2fe873eb68c1f9ba5112fee70303ebf9dfb (v5.9-rc1 to v6.8-rc4) +CVE-2024-26728: 0e859faf8670a78ce206977dcf1a31a0231e9ca5 - 9671761792156f2339627918bafcd713a8a6f777 (v6.7-rc1 to v6.8-rc6) +CVE-2024-26729: 028bac5834495f4f4036bf8b3206fcdafe99a393 - d2b48f340d9e4a8fbeb1cdc84cd8da6ad143a907 (v6.7-rc1 to v6.8-rc6) +CVE-2024-26730: b7f1f7b2523a6a4382f12fe953380b847b80e09d - d56e460e19ea8382f813eb489730248ec8d7eb73 (v6.6-rc1 to v6.8-rc6) +CVE-2024-26731: 6df7f764cd3cf5a03a4a47b23be47e57e41fcd85 - 4cd12c6065dfcdeba10f49949bffcf383b3952d8 (v6.4-rc4 to v6.8-rc6) +CVE-2024-26732: 859051dd165ec6cc915f0f2114699021144fd249 - 56667da7399eb19af857e30f41bea89aa6fa812c (v6.7-rc1 to v6.8-rc6) +CVE-2024-26733: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a7d6027790acea24446ddd6632d394096c0f4667 (v2.6.12-rc2 to v6.8-rc6) +CVE-2024-26734: 687125b5799cd5120437fa455cfccbe8537916ff - def689fc26b9a9622d2e2cb0c4933dd3b1c8071c (v6.3-rc1 to v6.8-rc6) +CVE-2024-26735: 915d7e5e5930b4f01d0971d93b9b25ed17d221aa - 5559cea2d5aa3018a5f00dd2aca3427ba09b386b (v4.10-rc1 to v6.8-rc6) +CVE-2024-26736: d2ddc776a4581d900fc3bdc7803b403daae64d88 - 6ea38e2aeb72349cad50e38899b0ba6fbcb2af3d (v4.15-rc1 to v6.8-rc6) +CVE-2024-26737: b00628b1c7d595ae5b544e059c27b1f5828314b4 - 0281b919e175bb9c3128bd3872ac2903e9436e3f (v5.15-rc1 to v6.8-rc6) +CVE-2024-26738: (n/a) - a5c57fd2e9bd1c8ea8613a8f94fd0be5eccbf321 (unk to v6.8-rc6) +CVE-2024-26739: (n/a) - 166c2c8a6a4dc2e4ceba9e10cfe81c3e469e3210 (unk to v6.8-rc6) +CVE-2024-26740: 53592b3640019f2834701093e38272fdfd367ad8 - 52f671db18823089a02f07efc04efdb2272ddc17 (v4.10-rc1 to v6.8-rc6) +CVE-2024-26741: 28044fc1d4953b07acec0da4d2fc4784c57ea6fb - 66b60b0c8c4a163b022a9f0ad6769b0fd3dc662f (v6.1-rc1 to v6.8-rc6) +CVE-2024-26742: cf15c3e734e8d25de7b4d9170f5a69ace633a583 - 5761eb9761d2d5fe8248a9b719efc4d8baf1f24a (v6.0-rc1 to v6.8-rc6) +CVE-2024-26743: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5ba4e6d5863c53e937f49932dee0ecb004c65928 (v2.6.12-rc2 to v6.8-rc6) +CVE-2024-26744: a42d985bd5b234da8b61347a78dc3057bf7bb94d - fdfa083549de5d50ebf7f6811f33757781e838c0 (v3.3-rc1 to v6.8-rc6) +CVE-2024-26745: (n/a) - 09a3c1e46142199adcee372a420b024b4fc61051 (unk to v6.8-rc7) +CVE-2024-26746: c2f156bf168fb42cd6ecd0a8e2204dbe542b8516 - d3ea125df37dc37972d581b74a5d3785c3f283ab (v6.4-rc1 to v6.8-rc7) +CVE-2024-26747: 5c54fcac9a9de559b444ac63ec3cd82f1d157a0b - 1c9be13846c0b2abc2480602f8ef421360e1ad9e (v4.19-rc6 to v6.8-rc6) +CVE-2024-26748: (n/a) - 5fd9e45f1ebcd57181358af28506e8a661a260b3 (unk to v6.8-rc6) +CVE-2024-26749: 7733f6c32e36ff9d7adadf40001039bf219b1cbe - cd45f99034b0c8c9cb346dd0d6407a95ca3d36f6 (v5.4-rc1 to v6.8-rc6) +CVE-2024-26750: 25236c91b5ab4a26a56ba2e79b8060cf4e047839 - aa82ac51d63328714645c827775d64dbfd9941f3 (v6.8-rc5 to v6.8-rc6) +CVE-2024-26751: b2e63555592f81331c8da3afaa607d8cf83e8138 - fdf87a0dc26d0550c60edc911cda42f9afec3557 (v4.15-rc1 to v6.8-rc6) +CVE-2024-26752: (n/a) - 359e54a93ab43d32ee1bff3c2f9f10cb9f6b6e79 (unk to v6.8-rc6) +CVE-2024-26753: 59ca6c93387d325e96577d8bd4c23c78c1491c11 - c0ec2a712daf133d9996a8a1b7ee2d4996080363 (v5.18-rc1 to v6.8-rc6) +CVE-2024-26754: 459aa660eb1d8ce67080da1983bb81d716aa5a69 - 136cfaca22567a03bbb3bf53a43d8cb5748b80ec (v4.7-rc1 to v6.8-rc6) +CVE-2024-26755: bc08041b32abe6c9824f78735bac22018eabfc06 - 9e46c70e829bddc24e04f963471e9983a11598b7 (v6.7-rc1 to v6.8-rc6) +CVE-2024-26756: f67055780caac6a99f43834795c43acf99eba6a6 - ad39c08186f8a0f221337985036ba86731d6aafe (v2.6.17-rc1 to v6.8-rc6) +CVE-2024-26757: ecbfb9f118bce49f571675929160e4ecef91cc8a - 55a48ad2db64737f7ffc0407634218cc6e4c513b (v4.8-rc1 to v6.8-rc6) +CVE-2024-26758: 68866e425be2ef2664aa5c691bb3ab789736acf5 - 1baae052cccd08daf9a9d64c3f959d8cdb689757 (v3.0-rc4 to v6.8-rc6) +CVE-2024-26759: (n/a) - 13ddaf26be324a7f951891ecd9ccd04466d27458 (unk to v6.8-rc6) +CVE-2024-26760: 066ff571011d8416e903d3d4f1f41e0b5eb91e1d - de959094eb2197636f7c803af0943cb9d3b35804 (v5.19-rc1 to v6.8-rc6) +CVE-2024-26761: 34e37b4c432cd0f1842b352fde4b8878b4166888 - 0cab687205986491302cd2e440ef1d253031c221 (v5.19-rc1 to v6.8-rc6) +CVE-2024-26762: 6ac07883dbb5f60f7bc56a13b7a84a382aa9c1ab - eef5c7b28dbecd6b141987a96db6c54e49828102 (v6.7-rc1 to v6.8-rc6) +CVE-2024-26763: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 50c70240097ce41fe6bce6478b80478281e4d0f7 (v2.6.12-rc2 to v6.8-rc6) +CVE-2024-26764: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b820de741ae48ccf50dd95e297889c286ff4f760 (v2.6.12-rc2 to v6.8-rc6) +CVE-2024-26765: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 1001db6c42e4012b55e5ee19405490f23e033b5a (v2.6.12-rc2 to v6.8-rc6) +CVE-2024-26766: (n/a) - e6f57c6881916df39db7d95981a8ad2b9c3458d6 (unk to v6.8-rc6) +CVE-2024-26767: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 0484e05d048b66d01d1f3c1d2306010bb57d8738 (v2.6.12-rc2 to v6.8-rc5) +CVE-2024-26768: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4551b30525cf3d2f026b92401ffe241eb04dfebe (v2.6.12-rc2 to v6.8-rc4) +CVE-2024-26769: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 710c69dbaccdac312e32931abcb8499c1525d397 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26770: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b6eda11c44dc89a681e1c105f0f4660e69b1e183 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26771: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6e2276203ac9ff10fc76917ec9813c660f627369 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26772: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 832698373a25950942c04a512daa652c18a9b513 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26773: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 4530b3660d396a646aad91a787b6ab37cf604b53 (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26774: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 993bf0f4c393b3667830918f9247438a8f6fdb5b (v2.6.12-rc2 to v6.8-rc3) +CVE-2024-26775: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e169bd4fb2b36c4b2bee63c35c740c85daeb2e86 (v2.6.12-rc2 to v6.8-rc2) +CVE-2024-26776: (n/a) - de8b6e1c231a95abf95ad097b993d34b31458ec9 (unk to v6.8-rc2) +CVE-2024-26777: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - e421946be7d9bf545147bea8419ef8239cb7ca52 (v2.6.12-rc2 to v6.8-rc2) +CVE-2024-26778: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 04e5eac8f3ab2ff52fa191c187a46d4fdbc1e288 (v2.6.12-rc2 to v6.8-rc2) +CVE-2024-26779: (n/a) - bcbc84af1183c8cf3d1ca9b78540c2185cd85e7f (unk to v6.8-rc2) +CVE-2024-26780: 1279f9d9dec2d7462823a18c29ad61359e0a007d - 25236c91b5ab4a26a56ba2e79b8060cf4e047839 (v6.8-rc4 to v6.8-rc5) +CVE-2024-26781: b8adb69a7d29c2d33eb327bca66476fb6066516b - d6a9608af9a75d13243d217f6ce1e30e57d56ffe (v6.8-rc6 to v6.8-rc7) +CVE-2024-26782: cf7da0d66cc1a2a19fc5930bb746ffbb2d4cd1be - 10048689def7e40a4405acda16fdc6477d4ecc5c (v5.6-rc1 to v6.8-rc7) +CVE-2024-26783: c574bbe917036c8968b984c82c7b13194fe5ce98 - 2774f256e7c0219e2b0a0894af1c76bdabc4f974 (v5.18-rc1 to v6.8-rc7) +CVE-2024-26784: (n/a) - eb5555d422d0fc325e1574a7353d3c616f82d8b5 (unk to v6.8-rc7) +CVE-2024-26785: 9227da7816dd1a42e20d41e2244cb63c205477ca - cf7c2789822db8b5efa34f5ebcf1621bc0008d48 (v6.6-rc1 to v6.8-rc7) +CVE-2024-26786: 9227da7816dd1a42e20d41e2244cb63c205477ca - aeb004c0cd6958e910123a1607634401009c9539 (v6.6-rc1 to v6.8-rc7) +CVE-2024-26787: 46b723dd867d599420fb640c0eaf2a866ef721d4 - 6b1ba3f9040be5efc4396d86c9752cdc564730be (v4.20-rc1 to v6.8-rc7) +CVE-2024-26788: b092529e0aa09829a6404424ce167bf3ce3235e2 - 87a39071e0b639f45e05d296cc0538eef44ec0bd (v5.1-rc1 to v6.8-rc7) +CVE-2024-26789: (n/a) - 1c0cf6d19690141002889d72622b90fc01562ce4 (unk to v6.8-rc7) +CVE-2024-26790: b092529e0aa09829a6404424ce167bf3ce3235e2 - 9d739bccf261dd93ec1babf82f5c5d71dd4caa3e (v5.1-rc1 to v6.8-rc7) +CVE-2024-26791: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9845664b9ee47ce7ee7ea93caf47d39a9d4552c4 (v2.6.12-rc2 to v6.8-rc7) +CVE-2024-26792: e03ee2fe873eb68c1f9ba5112fee70303ebf9dfb - e2b54eaf28df0c978626c9736b94f003b523b451 (v6.8-rc4 to v6.8-rc7) +CVE-2024-26793: (n/a) - 616d82c3cfa2a2146dd7e3ae47bda7e877ee549e (unk to v6.8-rc7) +CVE-2024-26794: b0ad381fa7690244802aed119b478b4bdafc31dd - a1a4a9ca77f143c00fce69c1239887ff8b813bec (v6.8-rc6 to v6.8-rc7) +CVE-2024-26795: d95f1a542c3df396137afa217ef9bd39cb8931ca - a11dd49dcb9376776193e15641f84fcc1e5980c9 (v5.4-rc1 to v6.8-rc7) +CVE-2024-26796: cc4c07c89aada16229084eeb93895c95b7eabaa3 - 682dc133f83e0194796e6ea72eb642df1c03dfbe (v6.6-rc1 to v6.8-rc7) +CVE-2024-26797: (n/a) - 0f8ca019544a252d1afb468ce840c6dcbac73af4 (unk to v6.8-rc7) +CVE-2024-26798: (n/a) - 00d6a284fcf3fad1b7e1b5bc3cd87cbfb60ce03f (unk to v6.8-rc7) +CVE-2024-26799: b81af585ea54ee9f749391e594ee9cbd44061eae - 1382d8b55129875b2e07c4d2a7ebc790183769ee (v5.18-rc1 to v6.8-rc7) +CVE-2024-26800: 8590541473188741055d27b955db0777569438e3 - 13114dc5543069f7b97991e3b79937b6da05f5b0 (v6.8-rc5 to v6.8-rc7) +CVE-2024-26801: c7741d16a57cbf97eebe53f27e8216b1ff20e20c - 2449007d3f73b2842c9734f45f0aadb522daf592 (v4.0-rc1 to v6.8-rc7) +CVE-2024-26802: (n/a) - 8af411bbba1f457c33734795f024d0ef26d0963f (unk to v6.8-rc7) +CVE-2024-26803: (n/a) - fe9f801355f0b47668419f30f1fac1cf4539e736 (unk to v6.8-rc7) +CVE-2024-26804: 243aad830e8a4cdda261626fbaeddde16b08d04a - 5ae1e9922bbdbaeb9cfbe91085ab75927488ac0f (v2.6.34-rc3 to v6.8-rc7) +CVE-2024-26805: 1853c949646005b5959c483becde86608f548f24 - 661779e1fcafe1b74b3f3fe8e980c1e207fea1fd (v4.3-rc3 to v6.8-rc7) +CVE-2024-26806: (n/a) - 959043afe53ae80633e810416cee6076da6e91c6 (unk to v6.8-rc7) +CVE-2024-26807: 2087e85bb66ee3652dafe732bb9b9b896229eafc - 32ce3bb57b6b402de2aec1012511e7ac4e7449dc (v6.4-rc1 to v6.8-rc7) +CVE-2024-26808: (n/a) - 01acb2e8666a6529697141a6017edbf206921913 (unk to v6.8-rc2) +CVE-2024-26809: (n/a) - b0e256f3dd2ba6532f37c5c22e07cb07a36031ee (unk to v6.9-rc1)
diff --git a/data/cmts.json b/data/cmts.json index 2e4eed2..8664512 100644 --- a/data/cmts.json +++ b/data/cmts.json
@@ -2,6 +2,7 @@ "0024d8ad1639e32d717445c69ca813fd19c2a91c": "v3.9-rc1", "0031c41be5c529f8329e327b63cde92ba1284842": "v2.6.34-rc7", "00374d9b6d9f932802b55181be9831aa948e5b7c": "v6.5-rc7", + "00384f565a91c08c4bedae167f749b093d10e3fe": "v6.8-rc1", "003a3e1d60b0bb5cfb4feffb05a2083db2346364": "v4.2-rc1", "003b686ace820ce2d635a83f10f2d7f9c147dabc": "v5.2-rc1", "0048b4837affd153897ed1222283492070027aa9": "v4.3-rc1", @@ -9,24 +10,40 @@ "005145378c9ad7575a01b6ce1ba118fb427f583a": "v4.11-rc1", "008ca35f6e87be1d60b6af3d1ae247c6d5c2531d": "v5.18-rc1", "0091bfc81741b8d3aeb3b7ab8636f911b2de6e80": "v6.1-rc1", + "00aab7dcb2267f2aef59447602f34501efe1a07f": "v6.8-rc3", "00b4492686e0497fdb924a9d4c8f6f99377e176c": "v6.1-rc1", "00b5f37189d24ac3ed46cb7f11742094778c46ce": "v5.18-rc1", + "00cbce5cbf88459cd1aa1d60d0f1df15477df127": "v6.4-rc1", + "00d6a284fcf3fad1b7e1b5bc3cd87cbfb60ce03f": "v6.8-rc7", "0113d9c9d1ccc07f5a3710dac4aa24b6d711278c": "v6.6-rc3", + "0129ab1f268b6cf88825eae819b9b84aa0a85634": "v5.16-rc7", + "012e332286e2bb9f6ac77d195f17e74b2963d663": "v5.16-rc8", + "012ec02ae4410207f796a9b280a60b80b6cc790a": "v6.0-rc1", "01310bb7c9c98752cc763b36532fab028e0f8f81": "v4.20-rc3", "01330d7288e0050c5aaabc558059ff91589e67cd": "v4.5-rc1", "0143fc5e9f6f5aad4764801015bc8d4b4a278200": "v3.6-rc1", + "014c9caa29d3a44e0de695c99ef18bec3e887d52": "v5.11-rc1", "0152dfee235e87660f52a117fc9f70dc55956bb4": "v6.1-rc1", + "016002848c82eeb5d460489ce392d91fe18c475c": "v5.13-rc4", "017c59c042d01fc84cae7a8ea475861e702c77ab": "v4.9-rc1", "017c73a34a661a861712f7cc1393a123e5b2208c": "v6.6-rc5", "0185604c2d82c560dab2f2933a18f797e74ab5a8": "v4.4-rc7", "0185846975339a5c348373aa450a977f5242366b": "v6.3-rc1", + "01acb2e8666a6529697141a6017edbf206921913": "v6.8-rc2", + "01b057b2f4cc2d905a0bd92195657dbd9a7005ab": "v6.6-rc3", + "01bd694ac2f682fb8017e16148b928482bc8fa4b": "v6.8-rc1", "01c846f9539c194c7a6e34af036b1115b8ed822a": "v3.17-rc1", "01ca667133d019edc9f0a1f70a272447c84ec41f": "v5.1-rc4", "01ea173e103edd5ec41acec65b9261b87e123fc2": "v5.12-rc1-dontuse", "01f810ace9ed3": "v5.12-rc1-dontuse", + "020e71c7ffc25dfe29ed9be6c2d39af7bd7f661f": "v6.8-rc1", + "020ef930b826d21c5446fdc9db80fd72a791bc21": "v5.13-rc4", "0217ed2848e8538bcf9172d97ed2eeb4a26041bb": "v5.12-rc5", + "0230d60e4661d9ced6fb0b9a30f182ebdafbba7a": "v4.5-rc1", "027ef6c87853b0a9df53175063028edb4950d476": "v3.7-rc1", + "0281b919e175bb9c3128bd3872ac2903e9436e3f": "v6.8-rc6", "028a41e89383e1208dff1afe3e260b8cb6d3431c": "v4.1-rc1", + "028bac5834495f4f4036bf8b3206fcdafe99a393": "v6.7-rc1", "029f7f3b8701cc7aca8bdb31f0c7edd6a479e357": "v4.5-rc1", "02a4d923e4400a36d340ea12d8058f69ebf3a383": "v6.3-rc4", "02e1a114fdb71e59ee6770294166c30d437bf86a": "v6.0-rc1", @@ -39,8 +56,11 @@ "0336e04a6520bdaefdb0769d2a70084fa52e81ed": "v5.2-rc1", "034ae28b56f13dc1f2beb3fa294b455f57ede9cb": "v6.2-rc1", "034faeb9ef390d58239e1dce748143f6b35a0d9b": "v3.13-rc1", + "03504e3b54cc8118cc26c064e60a0b00c2308708": "v5.13-rc3", "0361a28d3f9a4315a100c7b37ba0b55cfe15fe07": "v2.6.30-rc1", + "03c427147b2d3e503af258711af4fc792b89b0af": "v5.13-rc1", "03c8efc1ffeb6b82a22c1af8dd908af349563314": "v2.6.38-rc1", + "03d1571d9513369c17e6848476763ebbd10ec2cb": "v5.4-rc1", "03dab869b7b239c4e013ec82aea22e181e441cfc": "v4.9-rc3", "03f36e885fc26cb0ea299fb6df5171a51e814548": "v2.6.24-rc2", "040757f738e13caaa9c5078bca79aa97e11dde88": "v4.11-rc2", @@ -48,12 +68,15 @@ "045a31b95509c8f25f5f04ec5e0dec5cd09f2c5f": "v5.17-rc1", "045c7a3f53d9403b62d396b6d051c4be5044cdb4": "v4.11-rc7", "04837f6447c7f3ef114cda1ad761822dedbff8cf": "v2.6.18-rc1", + "0484e05d048b66d01d1f3c1d2306010bb57d8738": "v6.8-rc5", + "0495e337b7039191dfce6e03f5f830454b1fae6b": "v6.0-rc4", "0496f56065e00f6c3bfcefc4f9b5419847e4a8b5": "v4.2-rc1", "049c4e13714ecbca567b4d5f6d563f05d431c80e": "v5.13-rc4", "04aa64375f48a5d430b5550d9271f8428883e550": "v6.1-rc8", "04b5d028f50ff05a8f9ae049ee71f8fdfcf1f5de": "v2.6.30-rc2", "04bcef2a83f40c6db24222b27a52892cba39dffb": "v2.6.33-rc4", "04bf464a5dfd9ade0dda918e44366c2c61fce80b": "v4.1-rc7", + "04c26faa51d1e2fe71cf13c45791f5174c37f986": "v5.13-rc4", "04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5": "v5.17-rc3", "04c4f2ee3f68c9a4bf1653d15f1a9a435ae33f7a": "v5.12-rc8", "04c55383fa5689357bcdd2c8036725a55ed632bc": "v6.4-rc7", @@ -61,12 +84,15 @@ "04d4fbca1017c11381e7d82acea21dd741e748bc": "v3.6-rc3", "04d80663f67ccef893061b49ec8a42ff7045ae84": "v5.17-rc1", "04dc715e24d0": "v4.11-rc1", + "04e5eac8f3ab2ff52fa191c187a46d4fdbc1e288": "v6.8-rc2", + "04e6ccfc93c5a1aa1d75a537cf27e418895e20ea": "v6.8-rc1", "04f25edb48c441fc278ecc154c270f16966cbb90": "v5.3-rc1", "04f5866e41fb70690e28397487d8bd8eea7d712a": "v5.1-rc6", "04f81f0154e4bf002be6f4d85668ce1257efa4d9": "v4.0-rc1", "050d91c03b28ca479df13dfb02bcd2c60dd6a878": "v6.6-rc1", "050fad7c4534c13c8eb1d9c2ba66012e014773cb": "v4.17-rc7", "051ae669e4505abbe05165bebf6be7922de11f41": "v6.1-rc8", + "051e0840ffa8ab25554d6b14b62c9ab9e4901457": "v6.9-rc2", "051ff581ce70e822729e9474941f3c206cbf7436": "v4.6-rc1", "054623105728b06852f077299e2bf1bf3d5f2b0b": "v4.1-rc1", "054a3ef683a176a509cc9b37f762029aae942495": "v6.2-rc1", @@ -88,15 +114,19 @@ "05fe58fdc10df9ebea04c0eaed57adc47af5c184": "v2.6.30-rc1", "060423bfdee3f8bc6e2c1bac97de24d5415e2bc4": "v5.3", "0614e2b73768b502fc32a75349823356d98aae2c": "v5.4-rc1", + "061dde8245356d8864d29e25207aa4daa0be4d3c": "v5.13-rc1", "0625b4ba1a5d4703c7fb01c497bd6c156908af00": "v4.19-rc1", "0626e6641f6b467447c81dd7678a69c66f7746cf": "v5.15-rc1", "06615d11cc78162dfd5116efb71f29eb29502d37": "v6.3-rc4", + "066ff571011d8416e903d3d4f1f41e0b5eb91e1d": "v5.19-rc1", "06b6a1cf6e776426766298d055bb3991957d90a7": "v3.6-rc1", "06bd3c36a733ac27962fea7d6f47168841376824": "v4.7-rc1", "06c8173eb92bbfc03a0fe8bb64315857d0badd06": "v4.0-rc3", "06ce521af9558814b8606c0476c54497cf83a653": "v4.11-rc1", "06deeec77a5a689cc94b21a8a91a76e42176685d": "v4.10-rc1", "06e7e776ca4d36547e503279aeff996cbb292c16": "v4.15-rc8", + "0711f0d7050b9e07c44bc159bbc64ac0a1022c7f": "v5.13-rc5", + "07161b2416f740a2cb87faa5566873f401440a61": "v6.9-rc1", "0720a06a7518c9d0c0125bd5d1f3b6264c55c3dd": "v3.3-rc1", "073931017b49d9458aa351605b43a7e34598caef": "v4.9-rc1", "073c516ff73557a8f7315066856c04b50383ac34": "v4.11-rc8", @@ -113,22 +143,33 @@ "07f12b26e21ab359261bf75cfcb424fdc7daeb6d": "v5.0", "07f2c7ab6f8d0a7e7c5764c4e6cc9c52951b9d9c": "v4.16-rc1", "07f4d9d74a04aa7c72c5dae0ef97565f28f17b92": "v3.16-rc2", + "080b4e24852b1d5b66929f69344e6c3eeb963941": "v6.3-rc1", + "082cd4ec240b8734a82a89ffb890216ac98fec68": "v5.13-rc5", + "0846dd77c8349ec92ca0079c9c71d130f34cb192": "v6.8-rc5", + "0849a5441358cef02586fb2d60f707c0db195628": "v6.8-rc1", "086ba77a6db00ed858ff07451bedee197df868c9": "v3.18-rc3", "088aaf17aa79300cab14dbee2569c58cfafd7d6e": "v5.1-rc6", "0896b752302662909b52895bd7f601136001069d": "v2.6.15-rc1", "08999b2489b4c9b939d7483dbd03702ee4576d96": "v5.17-rc8", "089bc0143f489bd3a4578bdff5f4ca68fb26f341": "v4.12-rc7", + "08a100689d4baf296d6898c687ea8d005da8d234": "v5.6-rc1", + "08ac6f132dd77e40f786d8af51140c96c6d739c9": "v6.8-rc2", "08dff7b7d629807dbb1f398c68dd9cd58dd657a1": "v3.6-rc1", + "08e23d05fa6dc4fc13da0ccf09defdd4bbc92ff4": "v6.8-rc1", "08e50cf071847323414df0835109b6f3560d44f5": "v6.6-rc5", + "08ef1af4de5fe7de9c6d69f1e22e51b66e385d9b": "v5.13-rc1", "09184ae9b5756cc469db6fd1d1cfdcffbf627c2d": "v5.17-rc1", "091c12e1f50cce93b1af90e56cad88787ec86dfb": "v5.3-rc1", "0926f91083f34d047abc74f1ca4fa6a9c161f7db": "v2.6.37-rc1", "095f1fc4ebf36c64fddf9b6db29b1ab5517378e6": "v2.6.26-rc1", "096cdc6f52225835ff503f987a0d68ef770bb78e": "v4.7-rc7", "096fe9eaea40a17e125569f9e657e34cdb6d73bd": "v4.4-rc3", + "099f0af9d98231bb74956ce92508e87cbcb896be": "v6.6-rc3", + "09a3c1e46142199adcee372a420b024b4fc61051": "v6.8-rc7", "09ba3bc9dd150457c506e4661380a6183af651c1": "v5.1-rc1", "09cce60bddd6461a93a5bf434265a47827d1bc6f": "v6.4-rc5", "09ccfd238e5a0e670d8178cf50180ea81ae09ae1": "v4.4-rc6", + "09d23174402da0f10e98da2c61bb5ac8e7d79fdd": "v5.15-rc4", "0a0b98734479aa5b3c671d5190e86273372cab95": "v4.17-rc5", "0a14842f5a3c0e88a1e59fac5c3025db39721f74": "v3.0-rc1", "0a1d52994d440e21def1c2174932410b4f2a98a1": "v5.0", @@ -136,12 +177,14 @@ "0a27a14a62921b438bb6f33772690d345a089be6": "v2.6.22-rc1", "0a2f661b6c21815a7fa60e30babe975fee8e73c6": "v5.4-rc8", "0a38c17a21a0965b4853211afa1d3e85428e6170": "v4.8-rc1", + "0a3d898ee9a8303d5b3982b97ef0703919c3ea76": "v6.7", "0a515a06c5ebfa46fee3ac519e418f801e718da4": "v5.16-rc6", "0a54917c3fc295cb61f3fb52373c173fd3b69f48": "v2.6.37-rc6", "0a6e77784f490912d81b92cfd48424541c04691e": "v4.19-rc1", "0a771f7b266b02d262900c75f1e175c7fe76fec2": "v6.5-rc4", "0a944e8a6c66ca04c7afbaa17e22bf208a8b37f0": "v5.2-rc2", "0a9ab9bdb3e891762553f667066190c1d22ad62b": "v3.8-rc6", + "0a9bab391e336489169b95cb0d4553d921302189": "v6.8-rc3", "0a9cd0a80ac559357c6a90d26c55270ed752aa26": "v3.12-rc2", "0aaa81377c5a01f686bcdb8c7a6929a7bf330c68": "v5.0-rc3", "0aaba41b58bc5f3074c0c0a6136b9500b5e29e19": "v4.15-rc1", @@ -152,6 +195,7 @@ "0ae3eb7b4611207e140e9772398b9f88b72d6839": "v5.12-rc1-dontuse", "0aea86a2176c22647a5b683768f858d880d5e05b": "v3.7-rc1", "0aec4867dca149e2049e8439b76bd82ad9dac52c": "v2.6.14-rc5", + "0b0226be3a52dadd965644bc52a807961c2c26df": "v5.13-rc3", "0b0509508beff65c1d50541861bc0d4973487dc5": "v5.2-rc1", "0b074ab7fc0d575247b9cc9f93bb7e007ca38840": "v5.2-rc3", "0b29669c065f60501e7289e1950fa2a618962358": "v2.6.24-rc6", @@ -163,6 +207,7 @@ "0b99d58902dd82fa51216eb8e0d6ddd8c43e90e4": "v3.12-rc1", "0b9f6c4615c993d2b552e0d2bd1ade49b56e5beb": "v4.10-rc1", "0ba002bc4393dcfae031fc707b11c094b46a5048": "v4.16-rc1", + "0ba9e3a13c6adfa99e32b2576d20820ab10ad48a": "v6.4-rc1", "0baa57d8dc32db78369d8b5176ef56c5e2e18ab3": "v4.4-rc1", "0bd82f5f6355775fbaf7d3c664432ce1b862be1e": "v2.6.38-rc1", "0bf54fcd95042bd178cb25368422cf4474fc8492": "v4.8-rc1", @@ -177,15 +222,20 @@ "0c5dc070ff3d6246d22ddd931f23a6266249e3db": "v5.14-rc1", "0c692d07842a67d9aa6b8266a80e4ac460a5c1a2": "v3.14-rc1", "0c7aecd4bde4b7302cd41986d3a29e4f0b0ed218": "v4.0-rc1", + "0c8bd174f0fc131bc9dfab35cd8784f59045da87": "v5.13-rc2", "0c9acb1af77a3cb8707e43f45b72c95266903cee": "v5.5-rc1", "0c9ae0b8605078eafc3bea053cc78791e97ba2e2": "v6.8-rc1", + "0cab687205986491302cd2e440ef1d253031c221": "v6.8-rc6", "0cada33241d9de205522e3858b18e506ca5cce2c": "v5.7", "0cdfa9e6f0915e3d243e2393bfa8a22e12d553b0": "v6.1-rc8", + "0ce20dd840897b12ae70869c69f1ba34d6d16965": "v5.12-rc1-dontuse", "0d01da6afc5402f60325c5da31b22f7d56689b49": "v5.3-rc1", "0d07c0ec4381f630c801539c79ad8dcc627f6e4a": "v5.10", "0d0826019e529f21c84687521d03f60cd241ca7d": "v3.18-rc1", "0d0e2d032811280b927650ff3c15fe5020e82533": "v6.1-rc4", "0d0e57697f162da4aa218b5feafe614fb666db07": "v4.12-rc1", + "0d0ea309357dea0d85a82815f02157eb7fcda39f": "v5.13-rc4", + "0d3c703a9d1723c7707e0680019ac8ff5922db42": "v4.7-rc1", "0d46748c3f874defbbbf98bcf40c7b18964abbc0": "v2.6.28-rc1", "0d4837fdb796f99369cf7691d33de1b856bcaf1f": "v5.19-rc1", "0d62e9dd6da45bbf0f33a8617afc5fe774c8f45f": "v4.3-rc1", @@ -204,6 +254,7 @@ "0e5d5ae837c8ce04d2ddb874ec5f920118bd9d31": "v6.1-rc1", "0e62395da2bd5166d7c9e14cbc7503b256a34cb0": "v5.5-rc1", "0e8235d28f3a0e9eda9f02ff67ee566d5f42b66b": "v6.2-rc1", + "0e859faf8670a78ce206977dcf1a31a0231e9ca5": "v6.7-rc1", "0e881c0a4b6146b7e856735226208f48251facd8": "v6.5-rc2", "0e8d2444168dd519fea501599d150e62718ed2fe": "v6.8-rc1", "0e94682b73bfa6c44c98af7a26771c9c08c055d5": "v5.2-rc1", @@ -211,7 +262,10 @@ "0ea1ec713f04bdfac343c9702b21cd3a7c711826": "v3.13-rc1", "0eab121ef8750a5c8637d51534d5e9143fb0633f": "v4.9", "0ebc1064e4874d5987722a2ddbc18f94aa53b211": "v6.5-rc4", + "0ecc1c70dcd32c0f081b173a1a5d89952686f271": "v5.13-rc1", "0ed554fd769a19ea8464bb83e9ac201002ef74ad": "v6.2-rc1", + "0ed6389c483dc77cdbdd48de0ca7ce41723dd667": "v4.9-rc1", + "0ee74d5a48635c848c20f152d0d488bf84641304": "v5.13-rc4", "0efe125cfb99e6773a7434f3463f7c2fa28f3a43": "v6.0-rc5", "0f00cd322d22d4441de51aa80bcce5bb6a8cbb44": "v6.3-rc1", "0f12156dff2862ac54235fc72703f18770769042": "v5.15-rc1", @@ -221,15 +275,23 @@ "0f2ff82e11c86c05d051cae32b58226392d33bbf": "v4.10-rc6", "0f3912fd934cdfd03d93f2dc6f064099795bf638": "v4.8-rc1", "0f4f199443faca715523b0659aa536251d8b978f": "v5.4-rc4", + "0f7352557a35ab7888bc7831411ec8a3cbe20d78": "v6.9-rc1", + "0f7d9b31ce7abdbb29bf018131ac920c9f698518": "v5.16-rc7", "0f886ca12765d20124bd06291c82951fd49a33be": "v4.6-rc1", "0f8ab89e825f8c9f1c84c558ad7e2e4006aee0d3": "v2.6.21-rc2", + "0f8ca019544a252d1afb468ce840c6dcbac73af4": "v6.8-rc7", "0f923e07124df069ba68d8bb12324398f4b6b709": "v5.14-rc7", "0fa3ecd87848c9c93c2c828ef4c3a8ca36ce46c7": "v4.18-rc4", "0fae3bf018d97b210051c8797a49d66d31071847": "v4.1-rc8", "0fb375fb9b93b7d822debc6a734052337ccfdb1f": "v2.6.14-rc3", "0fb6bd06e06792469acc15bbe427361b56ada528": "v3.12-rc2", "0fc1a726f897acfa774b17eeb62b38480d1c9ea0": "v5.10-rc1", + "0fccbf0a3b690b162f53b13ed8bc442ea33437dc": "v5.13-rc1", "0fd08a34e8e3b67ec9bd8287ac0facf8374b844a": "v5.16-rc7", + "0ffd71bcc3a03ebb3551661a36052488369c4de9": "v5.3-rc1", + "0fff71c5a311e1264988179f7dcc217fda15fadd": "v5.12-rc8", + "1001db6c42e4012b55e5ee19405490f23e033b5a": "v6.8-rc6", + "10048689def7e40a4405acda16fdc6477d4ecc5c": "v6.8-rc7", "1033990ac5b2ab6cee93734cb6d301aa3a35bcaa": "v5.2-rc1", "103f6112f253017d7062cd74d17f4a514ed4485c": "v4.6-rc5", "1045ba77a5962a22bce7777678ef46714107ea63": "v4.11-rc1", @@ -237,28 +299,40 @@ "105cd17a866017b45f3c45901b394c711c97bf40": "v5.14-rc2", "107866a8eb0b664675a260f1ba0655010fac1e08": "v5.13-rc6", "109f6e39fa07c48f580125f531f46cb7c245b528": "v2.6.36-rc1", + "10b17004a74c384c6f410af355b0d6d7a168f613": "v5.6-rc1", "10bf4e83167cc68595b85fd73bb91e8f2c086e36": "v5.13-rc1", + "10c02aad111df02088d1a81792a709f6a7eca6cc": "v6.8-rc5", "10d2bb2e6b1d8c4576c56a748f697dbeb8388899": "v5.12-rc5", "10d91611f426d4bafd2a83d966c36da811b2f7ad": "v5.2-rc1", "10db10d144c0248f285242f79daf6b9de6b00a62": "v2.6.28-rc1", "10eec60ce79187686e052092e5383c99b4420a20": "v4.8-rc1", "1109c00547fc66df45b9ff923544be4c1e1bec13": "v3.18-rc1", + "110e70fccce4f22b53986ae797d665ffb1950aa6": "v6.6-rc1", "112e66017bff7f2837030f34c2bc19501e9212d5": "v6.3-rc3", "113630b581d6d423998d2113a8e892ed6e6af6f9": "v4.10-rc1", "1137b5e2529a8f5ca8ee709288ecba3e68044df2": "v4.14-rc7", + "115726c5d312b462c9d9931ea42becdfa838a076": "v5.13-rc3", "115bb1ffa54c3934f3617bdd4e4dfc68b11e1e69": "v2.6.37-rc1", "1165affd484889d4986cf3b724318935a0b120d8": "v5.12-rc7", "117166efb1ee8f13c38f9e96b258f16d4923f888": "v4.18-rc1", "118a8cf504d7dfa519562d000f423ee3ca75d2c4": "v6.8-rc1", + "11958528161731c58e105b501ed60b83a91ea941": "v6.6-rc1", "11980c2ac4ccfad21a5f8ee9e12059f1e687bb40": "v3.3-rc1", "11eeef41d5f63c7d2f7fdfcc733eb7fb137cc384": "v2.6.31-rc1", "11f3710417d026ea2f4fcf362d866342c5274185": "v4.6-rc1", "1202cdd665315c525b5237e96e0bedc76d7e754f": "v6.1-rc1", + "121354b2eceb2669ebdffa76b105ad6c03413966": "v5.0-rc1", "12176503366885edd542389eed3aaf94be163fdb": "v3.7-rc3", + "121c33b07b3127f501b366bc23d2a590e2f2b8ef": "v5.9-rc1", + "122e6c79efe1c25816118aca9cfabe54e99c2432": "v5.13-rc1", "1240eb93f0616b21c675416516ff3d74798fdc97": "v6.4-rc7", "124751d5e63c823092060074bd0abaae61aaa9c4": "v4.14-rc5", "124d3b7041f9a0ca7c43a6293e1cae4576c32fd5": "v2.6.25-rc1", + "126bdb606fd2802454e6048caef1be3e25dd121e": "v5.13-rc1", "126f40298446a82116e1f92a1aaf72b8c8228fae": "v4.8-rc1", + "12783c0b9e2c7915a50d5ec829630ff2da50472c": "v6.8-rc3", + "1279f9d9dec2d7462823a18c29ad61359e0a007d": "v6.8-rc4", + "12804793b17c0e19115a90d98f2f3df0cb79e233": "v5.10-rc1", "1280c27f8e29acf4af2da914e80ec27c3dbd5c01": "v3.8-rc1", "128394eff343fc6d2f32172f03e24829539c5835": "v4.10-rc1", "128c66429247add5128c03dc1e144ca56f05a4e2": "v5.5-rc1", @@ -276,25 +350,37 @@ "130056275ade730e7a79c110212c8815202773ee": "v4.5-rc6", "13054abbaa4f1fd4e6f3b4b63439ec033b4c8035": "v5.0-rc6", "13100a72f40f5748a04017e0ab3df4cf27c809ef": "v4.7-rc1", + "13114dc5543069f7b97991e3b79937b6da05f5b0": "v6.8-rc7", + "133466c3bbe171f826294161db203f7670bb30c8": "v6.6-rc1", "134fca9063ad4851de767d1768180e5dede9a881": "v5.2-rc1", + "136cfaca22567a03bbb3bf53a43d8cb5748b80ec": "v6.8-rc6", "137f7df8cead00688524c82360930845396b8a21": "v3.15-rc1", + "1382d8b55129875b2e07c4d2a7ebc790183769ee": "v6.8-rc7", + "1389358bb008e7625942846e9f03554319b7fecc": "v6.8-rc3", "1399c59fa92984836db90538cf92397fe7caaa57": "v5.4-rc4", + "139ad1143151a07be93bf741d4ea7c89e59f89ce": "v6.6-rc6", + "13a779de4175df602366d129e41782ad7168cef0": "v5.13-rc1", "13ac695e7ea16cb27b804fadf2ff569dbcab6af1": "v4.5-rc1", "13bf9fbff0e5e099e2b6f003a0ab8ae145436309": "v4.11", "13c4a90119d28cfcb6b5bdd820c233b86c2b0237": "v4.3-rc1", "13d2b4d11d69a92574a55bfd985cfb0ca77aebdc": "v3.8", "13d518074a952d33d47c428419693f63389547e9": "v3.4-rc5", + "13d6eb20fc79a1e606307256dad4098375539a09": "v4.16-rc1", + "13ddaf26be324a7f951891ecd9ccd04466d27458": "v6.8-rc6", + "13dfc0540a575b47b2d640b093ac16e9e09474f6": "v4.13-rc1", "13e788deb7348cc88df34bed736c3b3b9927ea52": "v6.8-rc2", "13ec7f10b87f5fc04c4ccbd491c94c7980236a74": "v5.2-rc6", "140623410536905fa6ab737b625decfde6c64a72": "v4.8-rc1", "14431aa0c5a443d13d24e6f865a8838f97dab973": "v2.6.29-rc1", "14452ca3b5ce304fb2fea96dbc9ca1e4e7978551": "v4.17-rc1", + "145cb2f7177d94bc54563ed26027e952ee0ae03c": "v5.7-rc3", "146aa8b1453bd8f1ff2304ffb71b4ee0eb9acdcc": "v4.4-rc1", "146cc8a17a3b4996f6805ee5c080e7101277c410": "v4.10-rc4", "14abdfae508228a7307f7491b5c4215ae70c6542": "v6.5", "14fbbc8297728e880070f7b077b3301a8c698ef9": "v5.12-rc3", "15122ee2c515a253b0c66a3e618bc7ebe35105eb": "v4.16-rc3", "15133f6e67d8d646d0744336b4daa3135452cb0d": "v2.6.37-rc1", + "1526d9f10c6184031e42afad0adbdde1213e8ad1": "v5.11-rc1", "15303ba5d1cd9b28d03a980456c0978c0ea3b208": "v4.16-rc1", "15342f930ebebcfe36f2415049736a77d7d2e045": "v5.19-rc1", "153695d36ead0ccc4d0256953c751cabf673e621": "v6.1-rc3", @@ -308,35 +394,47 @@ "15bdab959c9bb909c0317480dd9b35748a8f7887": "v2.6.17-rc1", "15cf0b82271b1823fb02ab8c377badba614d95d5": "v5.18-rc5", "15d3042a937c13f5d9244241c7a9c8416ff6e82a": "v4.13-rc1", + "15ef92e9c41124ee9d88b01208364f3fe1f45f84": "v6.8-rc1", + "15faa1f67ab405d47789d4702f587ec7df7ef03e": "v6.8-rc5", "15fab63e1e57be9fdb5eec1bbc5916e9825e9acb": "v5.1-rc5", "15fe076edea787807a7cdc168df832544b58eba6": "v4.15-rc2", "161f873b89136eb1e69477c847d5a5033239d9ba": "v4.1-rc7", + "16287397ec5c08aa58db6acf7dbc55470d78087d": "v5.18", "162a7e7500f9664636e649ba59defe541b7c2c60": "v3.0-rc1", "162f98dea487206d9ab79fc12ed64700667a894d": "v4.6-rc5", "16306a61d3b7c433c7a127ec6224867b88ece687": "v5.0-rc1", "163ae1c6ad6299b19e22b4a35d5ab24a89791a98": "v4.8-rc6", "1642a3945e223a922312fab2401ecdf58b3825b9": "v6.1-rc1", "1651333b09743887bc2dd3d158a11853a2be3fe7": "v2.6.39-rc1", + "16603605b667b70da974bea8216c93e7db043bf1": "v6.8", "16615be18cadf53ee6f8a4f0bdd647f0753421b1": "v2.6.24-rc1", + "166c2c8a6a4dc2e4ceba9e10cfe81c3e469e3210": "v6.8-rc6", "1680939e9ecf7764fba8689cfb3429c2fe2bb23c": "v5.19-rc1", "168a2f776b9762f4021421008512dd7ab7474df1": "v5.18-rc3", "1692cf434ba13ee212495b5af795b6a07e986ce4": "v6.8-rc1", + "169410eba271afc9f0fb476d996795aa26770c6d": "v6.8-rc1", "16981742717b04644a41052570fb502682a315d2": "v5.5-rc2", "16ae16c6e5616c084168740990fc508bda6655d4": "v4.9-rc7", "16ae56d7e0528559bf8dc9070e3bfd8ba3de80df": "v6.1-rc7", "16b304f3404f8e0243d5ee2b70b68767b7b59b2b": "v3.12-rc1", + "16b374ca439fb406e46e071f75428f5b033056f8": "v2.6.37-rc1", "16c8d2df7ec0eed31b7d3b61cb13206a7fb930cc": "v5.15-rc2", "16ce101db85db694a91380aa4c89b25530871d33": "v6.1-rc1", "16d51a590a8ce3befb1308e0e7ab77f3b661af33": "v5.3-rc2", "16e5726269611b71c930054ffe9b858c1cea88eb": "v3.2-rc1", + "1710eb913bdcda3917f44d383c32de6bdabfc836": "v5.13-rc5", + "171f8a49f212e87a8b04087568e1b3d132e36a18": "v6.6-rc1", "17266ee939849cb095ed7dd9edbec4162172226b": "v4.19-rc1", "1728137b33c00d5a2b5110ed7aafb42e7c32e4a1": "v6.5-rc1", "1728ab54b4be94aed89276eeb8e750a345659765": "v5.11-rc1", + "17486960d79b900c45e0bb8fbcac0262848582ba": "v5.13-rc1", "174ab544e3bc0b0c944b8e642618203dd0c2ecdf": "v5.0-rc1", "1756d7994ad85c2479af6ae5a9750b92324685af": "v5.16", "175e476b8cdf2a4de7432583b49c871345e4f8a1": "v5.12-rc5", "17743798d81238ab13050e8e2833699b54e15467": "v5.9-rc4", "1775826ceec51187aa868406585799b7e76ffa7d": "v2.6.26-rc1", + "1775c7ddacfcea29051c67409087578f8f4d751b": "v5.13-rc1", + "177fbbcb4ed6b306c1626a277fac3fb1c495a4c7": "v6.8-rc4", "17839856fd588f4ab6b789f482ed3ffd7c403e1f": "v5.8-rc1", "17926a79320afa9b95df6b977b40cca6d8713cea": "v2.6.22-rc1", "179d1c5602997fef5a940c6ddcf31212cbfebd14": "v4.15-rc5", @@ -355,18 +453,24 @@ "18319498fdd4cdf8c1c2c48cd432863b1f915d6f": "v5.15-rc1", "183b9b592a622a7719ee38e275fd7ff3aaf74d0d": "v2.6.28-rc1", "184b89044fb6e2a74611dafa69b1dce0d98612c6": "v2.6.35-rc1", + "1853c949646005b5959c483becde86608f548f24": "v4.3-rc3", + "18549bf4b21c739a9def39f27dcac53e27286ab5": "v5.16-rc7", "18741986a4b1dc4b1f171634c4191abc3b0fa023": "v3.14-rc3", "1876bb923c98c605eca69f0bfe295f7b5f5eba28": "v2.6.31-rc1", + "1879445dfa7bbd6fe21b09c5cc72f4934798afed": "v4.7-rc1", "187fe84067bd377047cfcb7f2bbc7c9dc12d290c": "v4.2-rc1", "188c517a050ec5b123e72cab76ea213721e5bd9d": "v3.7-rc1", "189b0ddc245139af81198d1a3637cac74f96e13a": "v5.19-rc1", "189ff16722ee36ced4d2a2469d4ab65a8fee4198": "v6.7-rc6", + "18b683bff89d46ace55f12d00c0440d44d6160c4": "v5.7-rc1", "18bba1843fc7f264f58c9345d00827d082f9c558": "v6.2-rc4", "18cb261afd7bf50134e5ccacc5ec91ea16efadd4": "v5.9-rc1", "18dd6470c2d14d10f5a2dd926925dc80dbd3abfd": "v4.19-rc1", "18e2f61db3b708e0a22ccc403cb6ab2203d6faab": "v3.9-rc1", "18e3b739fdc826481c6a1335ce0c5b19b3d415da": "v4.3-rc1", "18ec54fdd6d18d92025af097cd042a75cf0ea24c": "v5.3-rc4", + "18f14afe281648e31ed35c9ad2fcb724c4838ad9": "v6.8-rc1", + "18f25dc399901426dff61e676ba603ff52c666f7": "v5.13-rc1", "18f39e7be0121317550d03e267e3ebd4dbfbb3ce": "v3.17-rc2", "18fc25c94eadc52a42c025125af24657a93638c0": "v3.13-rc4", "193e87143c290ec16838f5368adc0e0bc94eb931": "v4.10-rc1", @@ -375,6 +479,7 @@ "196d67593439b03088913227093e374235596e33": "v3.8-rc1", "197c949e7798fbf28cfadc69d9ca0c2abbf93191": "v4.5-rc1", "197e7e521384a23b9e585178f3f11c9fa08274b9": "v4.13-rc6", + "198bc90e0e734e5f98c3d2833e8390cac3df61b2": "v6.8-rc2", "1995266727fa8143897e89b55f5d3c79aa828420": "v4.15", "1998cc048901109a29924380b8e91bc049b32951": "v3.9-rc1", "19b61392c5a852b4e8a0bf35aecb969983c5932d": "v5.5-rc6", @@ -386,17 +491,23 @@ "19fad20d15a6494f47f85d869f00b11343ee5c78": "v5.1-rc7", "1a0b9d89c62ddf0aed12798686fe452e7e97de42": "v2.6.33-rc1", "1a1a143daf84db95dd7212086042004a3abb7bc2": "v3.19-rc1", + "1a258e670434f404a4500b65ba1afea2c2b29bba": "v4.15-rc1", "1a48e2ac034d47ed843081c4523b63c46b46888b": "v3.5-rc1", "1a5d5e5d51e75a5bca67dadbcea8c841934b7b85": "v4.19-rc1", + "1a73e427b824133940c2dd95ebe26b6dce1cbf10": "v5.12-rc8", "1a7b12f69a9434a766e77c43d113826f0413b032": "v4.19-rc1", "1a87334239757b69eb9885979c32bbf871b3ec88": "v3.7-rc1", "1aa561b1a4c0ae2a9a9b9c21a84b5ca66b4775d8": "v5.9-rc1", "1aa7a5735a41418d8e01fa7c9565eb2657e2ea3f": "v4.17-rc7", + "1ab53a77b772bf7369464a0e4fa6fd6499acf8f1": "v4.10-rc1", "1acb8f2a7a9f10543868ddd737e37424d5c36cf4": "v5.4-rc2", "1acfc104cdf8a3408f0e83b4115d4419c6315005": "v4.14-rc1", + "1ad55cecf22f05f1c884adf63cc09d3c3e609ebf": "v6.8-rc4", "1afc56794e03229fa53cfa3c5012704d226e1dec": "v3.6-rc1", + "1b05ece0c931536c0a38a9385e243a7962e933f6": "v6.0-rc1", "1b1499a817c90fd1ce9453a2c98d2a01cca0e775": "v5.15-rc6", "1b15d2e5b8077670b1e6a33250a0d9577efff4a5": "v3.16-rc1", + "1b28cb81dab7c1eedc6034206f4e8d644046ad31": "v6.6-rc1", "1b2b03f8e514e4f68e293846ba511a948b80243c": "v2.6.27-rc1", "1b42f017415b46c317e71d41c34ec088417a1883": "v5.4-rc8", "1b50b8a371e90a5e110f466e4ac02cf6b5f681de": "v2.6.23-rc1", @@ -405,21 +516,30 @@ "1b66e94e6b9995323190f31c51d8e1a6f516627e": "v3.16-rc1", "1b93a88431470ea0b943157999084d9c7e6e3bd3": "v5.7-rc1", "1b976fc6d684e3282914cdbe7a8d68fdce19095c": "v5.5-rc1", + "1b9dadba502234eea7244879b8d5d126bfaf9f0c": "v5.16-rc8", "1ba5bf993c6a3142e18e68ea6452b347f9cb5635": "v4.8-rc7", + "1baae052cccd08daf9a9d64c3f959d8cdb689757": "v6.8-rc6", "1bb57e940e1958e40d51f2078f50c3a96a9b2d75": "v3.4-rc6", + "1bcad8e510b27ad843315ab2c27ccf459e3acded": "v5.14-rc1", "1bdc76aea1159a750846c2fc98e404403eb7d51c": "v4.8-rc1", "1be7107fbe18eed3e319a6c3e83c78254b693acb": "v4.12-rc6", "1be7f75d1668d6296b80bf35dcf6762393530afc": "v4.4-rc1", "1be9a950c646c9092fb3618197f7b6bfb50e82aa": "v3.16", "1bfad99ab42569807d0ca1698449cae5e8c0334a": "v4.3-rc1", "1bff51ea59a9afb67d2dd78518ab0582a54a472c": "v5.16-rc1", + "1c099ab44727c8e42fe4de4d91b53cec3ef02860": "v5.12-rc1-dontuse", + "1c0cf6d19690141002889d72622b90fc01562ce4": "v6.8-rc7", "1c0edc3633b56000e18d82fc241e3995ca18a69e": "v4.14-rc6", "1c109fabbd51863475cd12ac206bdd249aee35af": "v4.8-rc7", "1c1bcf2d3ea061613119b534f57507c377df20f9": "v6.4-rc6", "1c22e0295a5eb571c27b53c7371f95699ef705ff": "v6.7-rc3", + "1c26372e5aa9e53391a1f8fe0dc7cd93a7e5ba9e": "v5.10-rc1", + "1c29fc4989bc2a3838b2837adc12b8aeb0feeede": "v2.6.17-rc4", + "1c357a1e86a4227a6b6059f2de118ae47659cebc": "v4.6-rc1", "1c668e1c0a0f74472469cd514f40c9012b324c31": "v5.12-rc4", "1c728719a4da6e654afb9cc047164755072ed7c9": "v5.11-rc1", "1c885808e45601b2b6f68b30ac1d999e10b6f606": "v4.10-rc1", + "1c9be13846c0b2abc2480602f8ef421360e1ad9e": "v6.8-rc6", "1c9e8def43a3452e7af658b340f5f4f4ecde5c38": "v4.11-rc1", "1cb3db1cf383a3c7dbda1aa0ce748b0958759947": "v5.14-rc2", "1cc5ef91d2ff94d2bf2de3b3585423e8a1051cb6": "v5.9-rc7", @@ -428,13 +548,17 @@ "1d0f3ce83200edc5d43723c77c62b09ad6560294": "v2.6.33-rc1", "1d10eb2f156f5fc83cf6c7ce60441592e66eadb3": "v4.0-rc1", "1d147bfa64293b2723c4fec50922168658e613ba": "v3.14-rc6", + "1d1d1a767206fbe5d4c69493b7e6d2a8d08cc0a0": "v3.9-rc1", "1d24eb4815d1e0e8b451ecc546645f8ef1176d4f": "v2.6.38-rc1", + "1d3173a3bae7039b765a0956e3e4bf846dbaacb8": "v5.7-rc1", "1d3ff0950e2b40dc861b1739029649d03f591820": "v5.1-rc4", "1d5d48523900a4b0f25d6b52f1a93c84bd671186": "v4.3-rc1", "1d605416fb7175e1adf094251466caa52093b413": "v5.7", + "1d72d9f960ccf1052a0630a68c3d358791dbdaaa": "v5.16-rc7", "1d85a299c4db57c55e0229615132c964d17aa765": "v5.4-rc8", "1d8d80b4e4ff641eefa5250cba324dfa5861a9f1": "v5.3-rc1", "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2": "v2.6.12-rc2", + "1dbc6a1e25be8575d6c4114d1d2b841a796507f7": "v5.13-rc1", "1df2ae31c724e57be9d7ac00d78db8a5dabdd050": "v3.5-rc5", "1df79cb3bae754e4a42240f9851ed82549a44f1a": "v4.14-rc6", "1e08ec4a130e2745d96df169e67c58df98a07311": "v3.7-rc1", @@ -443,23 +567,31 @@ "1e2bd517c108816220f262d7954b697af03b5f9c": "v3.10-rc5", "1e38da300e1e395a15048b0af1e5305bd91402f6": "v4.11-rc1", "1e3921471354244f70fe268586ff94a97a6dd4df": "v4.14-rc8", + "1e560864159d002b453da42bd2c13a1805515a20": "v6.8-rc3", "1e58252e334dc3f3756f424a157d1b7484464c40": "v5.5-rc3", + "1e5c37385097c35911b0f8a0c67ffd10ee1af9a2": "v5.13-rc3", "1e65b81a90df50bf450193065cc9073b706b8dda": "v3.18-rc1", "1e6fa5216a0e59ef02e8b6b40d553238a3b81d49": "v5.10-rc1", "1e7126b4a86ad69e870099fb6b922a3b6e29598b": "v4.15-rc1", "1e7417c188d0a83fb385ba2dbe35fd2563f2b6f3": "v6.5-rc5", + "1e777f39b4d75e599a3aac8e0f67d739474f198c": "v6.2-rc1", "1e866afd4bcdd01a70a5eddb4371158d3035ce03": "v6.1-rc1", "1e87a2456b0227ca4ab881e19a11bb99d164e792": "v3.12-rc1", + "1e97743fd180981bef5f01402342bb54bf1c6366": "v5.13-rc1", "1e98ffea5a8935ec040ab72299e349cb44b8defd": "v4.16-rc1", "1e9ac114c4428fdb7ff4635b45d4f46017e8916f": "v6.3-rc4", "1ebb71143758f45dc0fa76e2f48429e13b16d110": "v4.10-rc4", "1ebb7cc6a58321a4b22c4c9097b4651b0ab859d0": "v3.12-rc1", + "1ecd5b129252249b9bc03d7645a7bda512747277": "v5.13-rc1", "1ee0a224bc9aad1de496c795f96bc6ba2c394811": "v3.8-rc5", "1ef6f7c9390ff5308c940ff8d0a53533a4673ad9": "v5.10-rc1", + "1f11f4202caf5710204d334fe63392052783876d": "v6.6-rc1", "1f1ea6c2d9d8c0be9ec56454b05315273b5de8ce": "v3.6-rc6", "1f23a56a46b81de50eb8b898f06296ca06720a99": "v4.20-rc1", "1f3e2e97c003f80c4b087092b225c8787ff91e4d": "v5.15-rc6", "1f461dcdd296eecedaffffc6bae2bfa90bd7eb89": "v4.6-rc1", + "1f4642b72be79757f050924a9b9673b6a02034bc": "v5.13-rc2", + "1f4a08fed450db87fbb5ff5105354158bdbe1a22": "v6.5-rc1", "1f522509c77a5dea8dc384b735314f03908a6415": "v2.6.35-rc1", "1f65ea411cc7b6ff128d82a3493d7b5648054e6f": "v6.1-rc3", "1f7c51660034091dc134fcc534b7f1fa86a6e823": "v3.18-rc1", @@ -469,12 +601,15 @@ "1fc29bacedeabb278080e31bb9c1ecb49f143c3b": "v3.10-rc5", "1fd819ecb90cc9b822cd84d3056ddba315d3340f": "v3.14-rc7", "1ffb3c40ffb5c51bc39736409b11816c4260218e": "v4.9-rc7", + "1ffec389a6431782a8a28805830b6fae9bf00af1": "v5.13-rc1", "201f99f170df14ba52ea4c52847779042b7a623b": "v3.12", "20224d715a882210428ea62bba93f1bc4a0afe23": "v5.11-rc1", "20401d1058f3f841f35a594ac2fc1293710e55b9": "v5.15-rc1", "2056a782f8e7e65fd4bfd027506b4ce1c5e9ccd4": "v2.6.17-rc1", "206204a1162b995e2185275167b22468c00d6b36": "v3.16-rc3", + "206c857dd17d4d026de85866f1b5f0969f2a109e": "v6.8-rc1", "20714bfef84d3e690c9c6f8e9cd46543b5ae1eed": "v3.8-rc1", + "2087e85bb66ee3652dafe732bb9b9b896229eafc": "v6.4-rc1", "20aedafdf4926e7a957f8b302a18c8fb75c7e332": "v5.1-rc1", "20b2aff4bc15bda809f994761d5719827d66c0b4": "v5.17-rc1", "20c40794eb85ea29852d7bc37c55713802a543d6": "v5.12-rc3", @@ -492,21 +627,27 @@ "219ca39427bf6c46c4e1473493e33bc00635e99b": "v3.18-rc1", "21a87d88c2253350e115029f14fe2a10a7e6c856": "v6.1-rc1", "21b5944350052d2583e82dd59b19a9ba94a007f0": "v4.15-rc5", + "21d808405fe49028036932dd969920f4fee4f481": "v5.0-rc1", "21da57a23125a072e6ab2bb6c9bea5e02e01d1f5": "v4.19-rc1", "21e726c4a3625a1038e97795b7aad97109ba7e19": "v3.17-rc1", "21f8aaee0c62708654988ce092838aa7df4d25d8": "v3.14-rc6", "22076557b07c12086eeb16b8ce2b0b735f7a27e7": "v4.17-rc6", "221c5eb2338232f7340386de1c43decc32682e58": "v5.1-rc1", + "22207fd5c80177b860279653d017474b2812af5e": "v6.9-rc1", "2225e79b9b0370bc179f44756bee809b5e7b4d06": "v4.1-rc1", + "223125e37af8a641ea4a09747a6a52172fc4b903": "v5.13-rc1", "223b02d923ecd7c84cf9780bb3686f455d279279": "v3.15-rc1", + "2251334dcac9eb337575d8767e2a6a7e81848f7f": "v5.3-rc1", "2256c1c51e98d4eb2063a7f84f9ea783fda95f7f": "v3.12-rc1", "226fae124b2dac217ea5436060d623ff3385bc34": "v6.2-rc7", "2287a51ba822384834dafc1c798453375d1107c7": "v5.15-rc1", "2289adbfa559050d2a38bcd9caac1c18b800e928": "v5.5-rc1", + "229007e02d697b0662f85378aae53531b0dfea05": "v5.8-rc1", "22a677661f5624539d394f681276171f92d714df": "v4.11-rc1", "22c7652cdaa8cd33ce78bacceb4e826a3f795873": "v5.2-rc1", "22c7fa171a02d310e3a3f6ed46a698ca8a0060ed": "v6.8-rc1", "22cf8419f1319ff87ec759d0ebdff4cbafaee832": "v5.8-rc4", + "22e4ebb975822833b083533035233d128b30e98f": "v4.14-rc1", "22ed903eee23a5b174e240f1cdfa9acf393a5210": "v6.4-rc1", "22f6b4d34fcf039c63a94e7670e0da24f8575a5a": "v4.8-rc7", "22fe5b0439dd53643fd6f4c582c46c6dba0fde53": "v5.5-rc1", @@ -515,6 +656,7 @@ "233295130e53c8dfe6dbef3f52634c3f7e44cd6a": "v5.10-rc1", "234f3ce485d54017f15cf5e0699cff4100121601": "v3.18-rc2", "23528bb21ee2c9b27f3feddd77a2a3351a8df148": "v4.8-rc1", + "23529049c68423820487304f244144e0d576e85a": "v5.10-rc7", "23567fd052a9abb6d67fe8e7a9ccdd9800a540f2": "v4.5-rc1", "236db47c2b3b69464d50c695ab2ddd516cf64520": "v2.6.35-rc1", "237bbd29f7a049d310d907f4b2716a7feef9abf3": "v4.14-rc3", @@ -524,6 +666,7 @@ "23b133bdc452aa441fcb9b82cbf6dd05cfd342d0": "v4.0-rc1", "23c20ecd44750dd42e5fd53285a17ca8d8a9b0a3": "v3.7-rc1", "23c8a812dc3c621009e4f0e5342aa4e2ede1ceaa": "v4.6", + "23ceb8462dc6f4b4decdb5536a7e5fc477cdf0b6": "v5.13-rc1", "23d05d563b7e7b0314e65c8e882bc27eac2da8e7": "v6.7-rc6", "23d2b94043ca8835bd1e67749020e839f396a1c2": "v5.15-rc1", "23da9588037ecdd4901db76a5b79a42b529c4ec3": "v5.1-rc3", @@ -533,32 +676,42 @@ "2406a307ac7ddfd7effeeaff6947149ec6a95b4e": "v5.6-rc1", "24138933b97b055d486e8064b4a1721702442a9b": "v6.5-rc6", "241699cd72a8489c9446ae3910ddd243e9b9061b": "v4.9-rc1", + "2417b9869b81882ab90fd5ed1081a1cb2d4db1dd": "v5.13-rc1", "2423496af35d94a87156b063ea5cedffc10a70a1": "v4.12-rc2", "2433c8f094a008895e66f25bd1773cdb01c91d01": "v3.12-rc4", + "243aad830e8a4cdda261626fbaeddde16b08d04a": "v2.6.34-rc3", + "2449007d3f73b2842c9734f45f0aadb522daf592": "v6.8-rc7", "244d00b5dd4755f8df892c86cab35fb2cfd4f14b": "v5.17-rc8", "245500d853e9f20036cec7df4f6984ece4c6bf26": "v5.10-rc1", "24669e58477e2752c1fbca9c1c988e9dd0d79d15": "v3.6-rc1", "246c320a8cfe0b11d81a4af38fa9985ef0cc9a4c": "v5.8-rc7", + "246f80a0b17f8f582b2c0996db02998239057c65": "v6.6-rc1", "24b9bf43e93e0edd89072da51cf1fab95fc69dec": "v3.14-rc7", "24d7275ce2791829953ed4e72f68277ceb2571c6": "v5.17-rc4", "24e227896bbf003165e006732dccb3516f87f88e": "v6.4-rc6", "24e5c40130c29bed0fbfbcc9c23613ae6ffc4c0a": "v2.6.27-rc1", "24e90b9e34f9e039f56b5f25f6e6eb92cdd8f4b3": "v6.7-rc6", + "24ea50127ecf0efe819c1f6230add27abc6ca9d9": "v6.6-rc1", "24f6008564183aa120d07c03d9289519c2fe02af": "v5.17-rc3", "2507e6ab7a9a440773be476141a255934468c5ef": "v5.3", "250c6c49e3b68756b14983c076183568636e2bde": "v4.16-rc5", "251e22abde21833b3d29577e4d8c7aaccd650eee": "v4.7-rc1", + "25236c91b5ab4a26a56ba2e79b8060cf4e047839": "v6.8-rc5", + "2535b848fa0f42ddff3e5255cf5e742c9b77bb26": "v6.8-rc7", "253f4911f297b83745938b7f2c5649b94730b002": "v4.7-rc1", "2555283eb40df89945557273121e9393ef9b542b": "v6.0-rc4", + "25563b581ba3a1f263a00e8c9a97f5e7363be6fd": "v6.6-rc5", "2568a7e0832ee30b0a351016d03062ab4e0e0a3f": "v6.1-rc1", "256a90ed9e46b270bbc4e15ef05216ff049c3721": "v4.20-rc1", "256df2f3879efdb2e9808bdb1b54b16fbb11fa38": "v2.6.36-rc1", "257b5358b32f17e0603b6ff57b13610b0e02348f": "v2.6.36-rc1", "25c150ac103a4ebeed0319994c742a90634ddf18": "v6.4-rc1", + "25c6ffb249f612c56a48ce48a3887adf57b8f4bd": "v4.7-rc1", "25fdd5933e4c0f5fe2ea5cd59994f8ac5fbe90ef": "v4.19-rc1", "2638fd0f92d4397884fd991d8f4925cb3f081901": "v4.11-rc7", "263b4509ec4d47e0da3e753f85a39ea12d1eff24": "v3.14-rc1", "265b4da82dbf5df04bee5a5d46b7474b1aaf326a": "v6.3-rc1", + "265c3491c4bc8d40587996d6ee2f447a7ccfb4f3": "v5.5-rc1", "265e60a170d0a0ecfc2d20490134ed2c48dd45ab": "v4.14-rc5", "26634c4b1868323f49f8cd24c3493b57819867fd": "v3.10-rc1", "2665abfd757fb35a241c6f0b1ebf620e3ffb36fb": "v5.5-rc1", @@ -566,6 +719,7 @@ "2677d20677314101293e6da0094ede7b5526d2b1": "v4.17-rc7", "26896f01467a28651f7a536143fe5ac8449d4041": "v5.9-rc1", "2690d97ade05c5325cbf7c72b94b90d265659886": "v3.13-rc8", + "26a8b09437804fabfb1db080d676b96c0de68e7c": "v5.16-rc7", "26b5b874aff5659a7e26e5b1997e3df2c41fa7fd": "v4.18-rc4", "26b87c7881006311828bb0ab271a551a62dcceb4": "v3.18-rc1", "26bef1318adc1b3a530ecc807ef99346db2aa8b0": "v3.13", @@ -580,9 +734,15 @@ "273ec51dd7ceaa76e038875d85061ec856d8905e": "v2.6.30-rc1", "27463ad99f738ed93c7c8b3e2e5bc8c4853a2ff2": "v4.13-rc1", "276bdb82dedb290511467a5a4fdbe9f0b52dce6f": "v3.6-rc3", + "2774f256e7c0219e2b0a0894af1c76bdabc4f974": "v6.8-rc7", "2777e654371dd4207a3a7f4fb5fa39550053a080": "v5.2-rc1", + "27876a29de221186c9d5883e5fe5f6da18ef9a45": "v3.0-rc1", + "278e5bbdb9a94fa063c0f9bcde2479d0b8042462": "v5.13-rc1", "27ae357fa82be5ab73b2ef8d39dcb8ca2563483a": "v4.17-rc5", "27d461333459d282ffa4a2bdb6b215a59d493a8f": "v5.5-rc1", + "27d5c528a7ca08dcd44877fdd9fc08b76630bf77": "v5.10-rc1", + "27e56f59bab5ddafbcfe69ad7a4a6ea1279c1b16": "v6.8-rc1", + "28044fc1d4953b07acec0da4d2fc4784c57ea6fb": "v6.1-rc1", "280a8ab81733da8bc442253c700a52c4c0886ffd": "v6.4-rc3", "2811ebac2521ceac84f2bdae402455baa6a7fb47": "v3.12-rc4", "282a4b71816b6076029017a7bab3a9dcee12a920": "v6.2-rc1", @@ -592,14 +752,19 @@ "2896900e22f8212606a1837d89a6bbce314ceeda": "v5.12", "2896c93811e39d63a4d9b63ccf12a8fbc226e5e4": "v5.11-rc4", "28a1295795d85a25f2e7dd391c43969e95fcb341": "v6.6-rc1", + "28ac8e03c43dfc6a703aa420d18222540b801120": "v5.13-rc1", "28d76df18f0ad5bcf5fa48510b225f0ed262a99b": "v5.5-rc7", "28d82dc1c4edbc352129f97f4ca22624d1fe61de": "v3.3-rc1", + "28dd788382c43b330480f57cd34cde0840896743": "v6.8-rc1", "28ebeb8db77035e058a510ce9bd17c2b9a009dba": "v5.8-rc3", "28f5a8a7c033cbf3e32277f4cc9c6afd74f05300": "v4.15-rc1", "28fb4e59a47d7f1f0c7a26d2ed3a671c26158536": "v4.18-rc1", "2908d778ab3e244900c310974e1fc1c69066e450": "v2.6.19-rc1", "291bd20d5d88814a73d43b55b9428feab2f28094": "v5.11-rc1", + "29249eac5225429b898f278230a6ca2baa1ae154": "v5.13-rc4", + "29346e217b8ab8a52889b88f00b268278d6b7668": "v6.6-rc4", "294f2fc6da27620a506e6c050241655459ccd6bd": "v5.7-rc1", + "295b02c4be74bebf988593b8322369513fcecf68": "v5.10-rc1", "295dc39d941dc2ae53d5c170365af4c9d5c16212": "v3.16-rc7", "297502abb32e225fb23801fcdb0e4f6f8e17099a": "v3.12-rc2", "297a6961ffb8ff4dc66c9fbf53b924bd1dda05d5": "v4.16-rc1", @@ -608,32 +773,43 @@ "299d7572e46f98534033a9e65973f13ad1ce9047": "v4.14-rc5", "29b0589a865b6f66d141d79b2dd1373e4e50fe17": "v6.3-rc1", "29bc22ac5e5bc63275e850f0c8fc549e3d0e306b": "v5.16-rc1", + "29bcff787a2593b2126cfaff612c0b4e560022e9": "v5.10-rc1", + "29c2680fd2bf3862ff5cf2957f198512493156f9": "v5.10-rc3", "29cd13cfd7624726d9e6becbae9aa419ef35af7f": "v5.4-rc6", "29cd8ae0e1a39e239a3a7b67da1986add1199fc0": "v3.9-rc3", "29d3c1c8dfe752c01b7115ecd5a3142b232a38e1": "v5.4-rc1", "29eb31542787e1019208a2e1047bb7c76c069536": "v5.17-rc2", "29fa6825463c97e5157284db80107d1bfac5d77b": "v3.19-rc1", "2a017fd82c5402b3c8df5e3d6e5165d9e6147dc1": "v5.3-rc1", + "2a15ba82fa6ca3f35502b3060f22118a938d2889": "v5.11-rc1", "2a2336f8228292b8197f4187e54b0748903e6645": "v2.6.28-rc1", "2a285686c109816ba71a00b9278262cf02648258": "v3.15-rc1", "2a2f11c227bdf292b3a2900ad04139d301b56ac4": "v2.6.20-rc5", "2a3f7221acddfe1caa9ff09b3a8158c39b2fdeac": "v5.1-rc6", + "2a427b49d02995ea4a6ff93a1432c40fa4d36821": "v6.8-rc4", + "2a57d83c78f889bf3f54eede908d0643c40d5418": "v5.16-rc7", "2a69c450083db164596c75c0f5b4d9c4c0e18eba": "v6.5-rc1", "2a8859f373b0a86f0ece8ec8312607eacf12485d": "v5.18-rc1", + "2a9de42e8d3c82c6990d226198602be44f43f340": "v6.8-rc1", "2aa362c49c314a98fb9aebbd7760a461667bac05": "v3.7-rc1", "2ac061ce97f413bfbbdd768f7d2e0fda2e8170df": "v5.5-rc1", "2ac863719e518ae1a8f328849e64ea26a222f079": "v3.2-rc1", + "2acc59dd88d27ad69b66ded80df16c042b04eeec": "v6.8-rc1", "2acf923e38fb6a4ce0c57115decbb38d334902ac": "v2.6.36-rc1", "2ad3e17ebf94b7b7f3f64c050ff168f9915345eb": "v5.6-rc4", + "2ad5692db72874f02b9ad551d26345437ea4f7f3": "v5.13-rc1", "2ad7bf3638411cb547f2823df08166c13ab04269": "v3.19-rc1", + "2adc886244dff60f948497b59affb6c6ebb3c348": "v6.8-rc1", "2add87a95068d6457d4e5824d0417d39007665a4": "v2.6.12-rc5", "2ae0f17df1cd52aafd1ab0415ea1f1dd56dc0e2a": "v4.10-rc1", + "2ae50ad68cd79224198b525f7bd645c9da98b6ff": "v5.5-rc1", "2b09d5d364986f724f17001ccfe4126b9b43a0be": "v6.2-rc7", "2b0a576d15e0e14751f00f9c87e46bad27f217e7": "v3.9-rc1", "2b1299322016731d56807aa49254a5ea3080b6b3": "v6.0-rc1", "2b13d06c9584b4eb773f1e80bbaedab9a1c344e1": "v3.12-rc7", "2b17c400aeb44daf041627722581ade527bb3c1d": "v5.13-rc4", "2b188cc1bb857a9d4701ae59aa7768b5124e262e": "v5.1-rc1", + "2b44760609e9eaafc9d234a6883d042fc21132a7": "v6.8-rc2", "2b6867c2ce76c596676bec7d2d525af525fdc6e2": "v4.11-rc6", "2b7e8665b4ff51c034c55df3cff76518d1a9ee3a": "v4.13-rc7", "2b82032c34ec40515d3c45c36cd1961f37977de8": "v2.6.29-rc1", @@ -646,29 +822,36 @@ "2bbe6ab2be53858507f11f99f856846d04765ae3": "v6.8-rc1", "2bc780499aa33311ec0f3e42624dfaa7be0ade5e": "v2.6.26-rc1", "2c02d41d71f90a5168391b6a5f2954112ba2307c": "v6.2-rc3", + "2c04c5b8eef797dca99699cfb55ff42dd3c12c23": "v5.1-rc1", "2c10b61421a28e95a46ab489fd56c0f442ff6952": "v6.2", "2c1f6951a8a82e6de0d82b1158b5e493fc6c54ab": "v4.6-rc6", "2c212e1baedcd782b2535a3f86bc491977677c0e": "v5.17-rc4", "2c2bf01136971c33e3b3fabce23925f372c1017e": "v3.10-rc1", "2c4306f719b083d17df2963bc761777576b8ad1b": "v4.17-rc4", "2c5816b4beccc8ba709144539f6fdd764f8fa49c": "v4.4-rc5", + "2c58c3931ede7cd08cbecf1f1a4acaf0a04a41a9": "v6.6-rc2", "2c653d0ee2ae78ff3a174cc877a057c8afac7069": "v4.13-rc1", + "2c662660ce2bd3b09dae21a9a9ac9395e1e6c00b": "v5.13-rc1", "2ca13a4cc56c920a6c9fc8ee45d02bccacd7f46c": "v5.11-rc1", "2ca39528c01a933f6689cd6505ce65bd6d68a530": "v3.9-rc3", "2ca492e22cb70a001749377506bd22eb06f60ecc": "v4.9-rc1", "2cb33cac622afde897aa02d3dcd9fbba8bae839e": "v3.11-rc1", "2cb80187ba065d7decad7c6614e35e07aec8a974": "v4.14", + "2ce156482a6fef349d2eba98e5070c412d3af662": "v6.8-rc1", "2ceb76f734e37833824b7fab6af17c999eb48d2b": "v6.3-rc6", "2d07dc79fe04a43d82a346ced6bbf07bdb523f1b": "v4.2-rc1", "2d2699d984924890f6dac8cf51c3b6311f56816c": "v2.6.22-rc1", "2d281d8196e38dd3a4ee9af26621ddde8329f269": "v3.13-rc1", "2d3916f3189172d5c69d33065c3c21119fe539fc": "v5.17-rc7", "2d3a8e2deddea6c89961c422ec0c5b851e648c14": "v5.8-rc2", + "2d4238f5569722197612656163d824098208519c": "v5.5-rc1", "2d45a02d0166caf2627fe91897c6ffc3b19514c4": "v4.2-rc1", "2d53139f31626bad6f8983d8e519ddde2cbba921": "v3.16-rc1", + "2d5446da5acecf9c67db1c9d55ae2c3e5de01f8d": "v5.16-rc7", "2d6a0e9de03ee658a9adc3bfb2f0ca55dff1e478": "v4.10-rc8", "2d6fbfe733f35c6b355c216644e08e149c61b271": "v3.9-rc7", "2d8a041b7bfe1097af21441cb77d6af95f4f4680": "v3.6-rc3", + "2d9a93b4902be6a5504b5941dd15e9cd776aadca": "v5.13-rc1", "2da424b0773cea3db47e1e81db71eeebde8269d4": "v3.4-rc1", "2dc705a9930b4806250fbf5a76e55266e59389f2": "v4.10-rc6", "2dcab598484185dea7ec22219c76dcdd59e3cb90": "v4.10-rc8", @@ -686,12 +869,17 @@ "2e4e6a17af35be359cc8f1c924f8f198fbd478cc": "v2.6.16-rc1", "2e54154b9f27262efd0cb4f903cc7d5ad1fe9628": "v6.5-rc1", "2e7682ebfc750177a4944eeb56e97a3f05734528": "v5.2-rc1", + "2e7d3b67630dfd8f178c41fa2217aa00e79a5887": "v6.8-rc4", "2e7eab81425ad6c875f2ed47c0ce01e78afc38a5": "v6.2-rc1", + "2e7ef287f07c74985f1bf2858bedc62bd9ebf155": "v6.8-rc1", "2e83b79b2d6c78bf1b4aa227938a214dcbddc83f": "v4.6-rc1", "2e90ca68b0d2f5548804f22f0dd61145516171e3": "v5.6-rc4", "2ec220e27f5040aec1e88901c1b6ea3d135787ad": "v2.6.29-rc1", + "2ee3757424be7c1cd1d0bbfa6db29a7edd82a250": "v5.13-rc1", "2ee52ae94baabf7ee09cf2a8d854b990dac5d0e4": "v6.6-rc1", "2ee824026288eb7068e6327c5f34b8ddbea74094": "v4.19-rc1", + "2efc2256febf214e7b2bdaa21fe6c3c3146acdcb": "v5.16-rc7", + "2f03fc340cac9ea1dc63cbf8c93dd2eb0f227815": "v6.8-rc7", "2f1a6be12ab6c8470d5776e68644726c94257c54": "v6.3-rc5", "2f2aa13724d56829d910b2fa8e80c502d388f106": "v5.7-rc1", "2f2d0088eb93db5c649d2a5e34a3800a8a935fc5": "v4.15-rc4", @@ -704,11 +892,13 @@ "2fcf4876ada8a293d3b92a1033b8b990a7c613d3": "v5.10-rc1", "2fd36558f02c0606768929fc77671716680d01c2": "v4.2-rc1", "2febc839133280d5a5e8e1179c94ea674489dae2": "v3.18-rc2", + "2ff25985ea9ccc6c9af2c77b0b49045adcc62e0e": "v5.13-rc1", "2ff4bed7fee72ba1abfcff5f11ae8f8e570353f2": "v6.2-rc1", "3010a0663fd949d122eca0561b06b0a9453f7866": "v4.16-rc4", "3015f3d2a3cd9614294025849d3ed89fd2f3a7f5": "v3.7-rc5", "30210947a343b6b3ca13adc9bfc88e1543e16dd5": "v6.4-rc1", "3021ad9a4f009265e6063e617fb91306980af16c": "v4.5-rc1", + "3027e7b15b02d2d37e3f82d6b8404f6d37e3b8cf": "v6.8-rc1", "302d3deb20682a076e1ab551821cacfdc81c5e4f": "v4.7-rc1", "3037933448f60f9acb705997eae62013ecb81e0d": "v6.3", "303911cfc5b95d33687d9046133ff184cf5043ff": "v5.3-rc5", @@ -716,6 +906,7 @@ "30572418b445d85fcfe6c8fe84c947d2606767d8": "v4.11-rc2", "307c8de2b02344805ebead3440d8feed28f2f010": "v5.19-rc6", "307f2fb95e9b96b3577916e73d92e104f8f26494": "v3.11-rc1", + "3093ee182f01689b89e9f8797b321603e5de4f63": "v5.13-rc1", "309795f4bec2d69cd507a631f82065c2198a0825": "v2.6.35-rc1", "30a46a4647fd1df9cf52e43bf467f0d9265096ca": "v4.7-rc7", "30a61ddf8117c26ac5b295e1233eaa9629a94ca3": "v4.12-rc1", @@ -724,7 +915,10 @@ "30b678d844af3305cda5953467005cebb5d7b687": "v3.6-rc2", "30cf57da176cca80f11df0d9b7f71581fe601389": "v6.4-rc1", "30e29a9a2bc6a4888335a6ede968b75cd329657a": "v5.15-rc5", + "30e3b4f256b4e366a61658c294f6a21b8626dda7": "v5.12-rc8", "30f7ea1c2b5f5fb7462c5ae44fe2e40cb2d6a474": "v4.4-rc1", + "30fdfb929e82450bbf3d0e0aba56efbc29b52b52": "v4.13-rc1", + "31166efb1cee348eb6314e9c0095d84cbeb66b9d": "v5.12-rc8", "31185df7e2b1d2fa1de4900247a12d7b9c7087eb": "v5.17-rc8", "3118a4f652c7b12c752f3222af0447008f9b2368": "v3.9-rc4", "314001f0bf927015e459c9d387d62a231fe93af3": "v5.15-rc1", @@ -732,14 +926,20 @@ "3148bf041d169a083aa31bd69bedd5bfb7ffe215": "v3.2-rc1", "3151527ee007b73a0ebd296010f1c0454a919c7d": "v3.9-rc5", "315409b0098fb2651d86553f0436b70502b29bb2": "v4.19-rc1", + "315552310c7de92baea4e570967066569937a843": "v6.8-rc1", "315cd67c9453": "v5.3-rc1", + "31651c607151f1034cfb57e5a78678bea54c362b": "v4.19-rc1", "316ec154810960052d4586b634156c54d0778f74": "v5.7-rc4", "317eb9685095678f2c9f5a8189de698c5354316a": "v6.7-rc5", "318aaf34f1179b39fa9c30fa0f3288b645beee39": "v4.16-rc7", "3194c6870158e305dac2af52f83681e9cb67280f": "v4.4-rc1", "31978b5cc66b8ba8a7e8eef60b12395d41b7b890": "v3.13-rc4", "31ad169148df2252a774c73c504aff43bfa4b656": "v3.16-rc1", + "31b62908693c90d4d07db597e685d9f25a120073": "v6.8-rc1", + "31c07dffafce914c1d1543c135382a11ff058d93": "v6.6-rc6", + "31db78a4923ef5e2008f2eed321811ca79e7f71b": "v6.6-rc5", "31e0456de5be379b10fea0fa94a681057114a96e": "v5.2-rc3", + "31fe34a0118e0acc958c802e830ad5d37ef6b1d3": "v5.13-rc1", "32021982a324dce93b4ae00c06213bf45fb319c8": "v5.1-rc1", "320b2b8de12698082609ebbc1a17165727f4c893": "v2.6.36-rc1", "321027c1fe77f892f4ea07846aeae08cefbbb290": "v4.10-rc4", @@ -754,11 +954,17 @@ "32a4f5ecd7381f30ae3bb36dea77a150ba68af2e": "v4.19-rc1", "32b55c5ff9103b8508c1e04bfa5a08c64e7a925f": "v6.8-rc5", "32c231164b762dddefa13af5a0101032c70b50ef": "v4.9-rc7", + "32ce3bb57b6b402de2aec1012511e7ac4e7449dc": "v6.8-rc7", "32d43cd391bacb5f0814c2624399a5dad3501d09": "v4.16-rc7", "32e9f56a96d8d0f23cb2aeb2a3cd18d40393e787": "v5.16-rc1", "32ecc75ded72e0425713a7ffe2050fef6e54e564": "v4.12-rc1", + "32f0a6ddc8c98a1aade2bf3d07c79d5d2c6ceb9a": "v5.5-rc1", + "32f2a0afa95fae0d1ceec2ff06e0e816939964b8": "v6.8-rc2", + "333980481b99edb24ebd5d1a53af70a15d9146de": "v5.13-rc1", "3347acc6fcd4ee71ad18a9ff9d9dac176b517329": "v5.10-rc4", "335178d5429c4cee61b58f4ac80688f556630818": "v5.5-rc7", + "335a127548081322bd2b294d715418648912f20c": "v4.9-rc1", + "337cebbd850f94147cee05252778f8f78b8c337f": "v6.8-rc5", "33842cedfc33ee907b2a702f321a26f7c0bf0aaa": "v3.1-rc1", "338c7dbadd2671189cec7faf64c84d01071b3f96": "v3.13-rc4", "338f977f4eb441e69bb9a46eaa0ac715c931a67f": "v3.14-rc3", @@ -772,18 +978,27 @@ "3450121997ce872eb7f1248417225827ea249710": "v5.2", "345023b0db315648ccc3c1a36aee88304a8b4d91": "v5.12-rc1-dontuse", "345c0dbf3a30872d9b204db96b5857cd00808cae": "v5.2-rc1", + "34796417964b8d0aef45a99cf6c2d20cebe33733": "v5.16-rc7", + "349d43127dac00c15231e8ffbcaabd70f7b0e544": "v5.16-rc8", + "34ab17cc6c2c1ac93d7e5d53bb972df9a968f085": "v5.13-rc1", "34b2cef20f19c87999fff3da4071e66937db9644": "v4.10-rc8", "34b3be18a04ecdc610aae4c48e5d1b799d8689f6": "v5.4-rc3", "34b88a68f26a75e4fded796f1a49c40f82234b7d": "v4.6-rc1", "34beb21594519ce64a55a498c2fe7d567bc1ca20": "v5.9-rc7", + "34cf99c250d5cd2530b93a57b0de31d3aaf8685b": "v6.6-rc3", "34d2f9bf189c36ef8642cf6b64e80dfb756d888f": "v2.6.34-rc1", + "34e37b4c432cd0f1842b352fde4b8878b4166888": "v5.19-rc1", "34e5b01186858b36c4d7c87e1a025071e8e2401f": "v5.13-rc1", + "34f35f8f14bc406efc06ee4ff73202c6fd245d15": "v5.16-rc7", "350a5c4dd2452ea999cc5e1d4a8dbf12de2f97ef": "v5.12-rc5", "350b8bdd689cd2ab2c67c8a86a0be86cfa0751a7": "v3.17-rc2", "353050be4c19e102178ccc05988101887c25ae53": "v5.16-rc2", "35306eb23814444bd4021f8a1c3047d3cb0c8b2b": "v5.15-rc4", + "3536169f8531c2c5b153921dc7d1ac9fd570cda7": "v5.13-rc1", "353c0956a618a07ba4bbe7ad00ff29fe70e8412a": "v5.0-rc6", + "353d321f63f7dbfc9ef58498cc732c9fe886a596": "v6.8-rc4", "353f7988dd8413c47718f7ca79c030b6fb62cfe5": "v5.19-rc8", + "354a6e707e29cb0c007176ee5b8db8be7bd2dee0": "v6.6-rc6", "35538d7822e86cb38015c21bb708a433f8814af0": "v4.9-rc1", "35556bed836f8dc07ac55f69c8d17dce3e7f0e25": "v5.9-rc4", "3557baabf28088f49bdf72a048fd33ab62e205b1": "v2.6.23-rc1", @@ -795,14 +1010,19 @@ "3573e22cfecaac83f82ef4f6847d90e466fc8e10": "v3.16-rc1", "357b40a18b04c699da1d45608436e9b76b50e251": "v2.6.12-rc3", "3592aaeb80290bda0f2cf0b5456c97bfc638b192": "v3.6-rc3", + "359e54a93ab43d32ee1bff3c2f9f10cb9f6b6e79": "v6.8-rc6", "35a79a63517981a8aea395497c548776347deda8": "v5.4-rc5", + "35b4f24415c854cd718ccdf38dbea6297f010aae": "v5.13-rc1", "35c55c9877f8de0ab129fa1a309271d0ecc868b9": "v4.8-rc1", "35c55fc156d85a396a975fc17636f560fc02fd65": "v4.14", "35d2969ea3c7d32aee78066b1f3cf61a0d935a4e": "v5.16-rc1", + "35d8b10a25884050bb3b0149b62c3818ec59f77c": "v5.13-rc1", + "35e2385dbe787936c793d70755a5177d267a40aa": "v6.8-rc4", "35fc4cd34426c242ab015ef280853b7bff101f48": "v5.11-rc4", "36274ab8c596f1240c606bb514da329add2a1bcd": "v4.11-rc6", "362bca57f5d78220f8b5907b875961af9436e229": "v4.15-rc3", "362e4e49abe53e89d87455dfcd7c1bbaf08a839d": "v3.1-rc8", + "3630901933afba1d16c462b04d569b7576339223": "v5.13-rc1", "363a5328f4b0517e59572118ccfb7c626d81dca9": "v6.1-rc4", "363b02dab09b3226f3bd1420dad9c72b79a42a76": "v4.14-rc6", "364dbdf3b6c31a4a5fb7a6d479e7aafb4a7a10b6": "v2.6.38-rc1", @@ -813,6 +1033,7 @@ "36a6503feddadbbad415fb3891e80f94c10a9b21": "v4.9-rc1", "36a87385e31c9343af9a4756598e704741250a67": "v6.8-rc1", "36cf515b9bbe298e1ce7384620f0d4ec45ad3328": "v4.12-rc1", + "36d503ad547d1c75758a6fcdbec2806f1b6aeb41": "v6.9-rc1", "36d5fe6a000790f56039afe26834265db0a3ad4c": "v3.14", "36e4ad0316c017d5b271378ed9a1c9a4b77fab5f": "v4.8-rc1", "3701cd390fd731ee7ae8b8006246c8db82c72bea": "v6.7-rc5", @@ -820,6 +1041,7 @@ "3703f53b99e4a7c373ce3568dd3f91f175ebb626": "v4.9-rc1", "37086bfdc737ea6f66bf68dcf16757004d68e1e1": "v5.12-rc1-dontuse", "3712b42d4b1bec29a4232a6673bf2e6dcc5faa68": "v2.6.27-rc1", + "371a3bc79c11b707d7a1b7a2c938dc3cc042fffb": "v5.8-rc4", "372e3147df7016ebeaa372939e8774a1292db558": "v4.14-rc1", "373c4557d2aa362702c4c2d41288fb1e54990b7c": "v4.15-rc1", "375637bc524952f1122ea22caf5a8f1fecad8228": "v4.7-rc1", @@ -833,49 +1055,75 @@ "37bd22420f856fcd976989f1d4f1f7ad28e1fcac": "v5.8", "37cb11acf1f72a007a85894a6dd2ec93932bde46": "v4.16-rc1", "37cb28ec7d3a36a5bace7063a3dba633ab110f8b": "v5.15-rc4", + "37d1e2e3642e2380750d7f35279180826f29660e": "v5.12-rc1-dontuse", + "37e8c97e539015637cb920d3e6f1e404f707a06e": "v6.8-rc3", "3812c8c8f3953921ef18544110dafc3505c1ac62": "v3.12-rc1", + "38134ada0ceea3e848fe993263c0ff6207fd46e7": "v5.13-rc1", + "38296afe3c6ee07319e01bb249aa4bb47c07b534": "v6.8-rc4", "382c27f4ed28f803b1f1473ac2d8db0afc795a1b": "v6.7-rc5", + "38318f23a7ef86a8b1862e5e8078c4de121960c3": "v5.13-rc1", "38327424b40bcebe2de92d07312c89360ac9229a": "v4.7-rc4", "3840c5b78803b2b6cc1ff820100a74a092c40cbb": "v5.4-rc3", "384632e67e0829deb8015ee6ad916b180049d252": "v4.14-rc4", "385097a3675749cbc9e97c085c0e5dfe4269ca51": "v5.2-rc6", "385aee965b4e4c36551c362a334378d2985b722a": "v4.12-rc1", + "385f287f9853da402d94278e59f594501c1d1dad": "v5.16-rc7", "3864d33943b4a76c6e64616280e98d2410b1190f": "v5.2-rc3", "386e4fb6962b9f248a80f8870aea0870ca603e89": "v5.19-rc4", + "3871aa01e1a779d866fa9dfdd5a836f342f4eb87": "v6.8-rc4", "38740a5b87d53ceb89eb2c970150f6e94e00373a": "v4.6-rc5", + "3876638b2c7ebb2c9d181de1191db0de8cac143a": "v6.8-rc2", "38907e124088b2f5b176acdf3d89926c09d3206a": "v5.10-rc1", "389305b2aa68723c754f88d9dbd268a400e10664": "v4.19-rc1", "38ab012f109caf10f471db1adf284e620dd8d701": "v4.20-rc5", + "38cc3c6dcc09dc3a1800b5ec22aef643ca11eab8": "v6.8-rc4", "38d20c62903d669693a1869aa68c4dd5674e2544": "v6.8-rc1", "38ea1eac7d88072bbffb630e2b3db83ca649b826": "v5.17-rc4", "38fa5479b41376dc9d7f57e71c83514285a25ca0": "v5.19-rc6", "390031c942116d4733310f0684beb8db19885fe6": "v5.18-rc1", + "39126abc5e20611579602f03b66627d7cd1422f0": "v6.8-rc3", "391d8a2da787257aeaf952c974405b53926e3fb3": "v3.11-rc1", "3921120e757f9167f3fcd3a1781239824471b14d": "v2.6.37-rc1", "39279cc3d2704cfbf9c35dcb5bdd392159ae4625": "v2.6.29-rc1", "3935ccc14d2c68488bd96448fc073da48eaeebf0": "v4.9-rc1", "394f56fe480140877304d342dec46d50dc823d46": "v3.19-rc4", + "3953c46c3ac7eef31a9935427371c6f54a22f1ba": "v4.8-rc1", "395cacb5f1a0a290f1ae9ca4692c400d2b57a705": "v4.16-rc1", "39675f7a7c7e7702f7d5341f1e0d01db746543a0": "v4.18-rc6", "3971442870713de527684398416970cf025b4f89": "v6.6-rc6", "39a0526fb3f7d93433d146304278477eb463f8af": "v4.6-rc1", + "39a2a6eb5c9b66ea7c8055026303b3aa681b49a5": "v5.13-rc1", + "39a8fc4971a00d22536aeb7d446ee4a97810611b": "v5.16-rc7", + "39ab9555c24110671f8dc671311a26e5c985b592": "v4.11-rc1", + "39cdb68c64d84e71a4a717000b6e5de208ee60cc": "v5.19-rc7", "39d170b3cb62ba98567f5c4f40c27b5864b304e5": "v5.4-rc1", + "39d42fa96ba1b7d2544db3f8ed5da8fb0d5cb877": "v5.9-rc1", "39d637af5aa7577f655c58b9e55587566c63a0af": "v4.7-rc1", "39e72bf96f5847ba87cc5bd7a3ce0fed813dc9ad": "v5.5-rc1", "39facfa01c9fc64f90233d1734882f0a0cafe36a": "v4.19-rc1", + "3a00c04212d1cfe1426338b78f4ead623508c874": "v5.12-rc1-dontuse", + "3a0152b219523227c2a62a0a122cf99608287176": "v5.16-rc8", "3a07327d10a09379315c844c63f27941f5081e0a": "v6.2-rc1", + "3a0f64de479cae75effb630a2e0a237ca0d0623c": "v5.16-rc7", "3a22e9ac71585bcb7667e44641f1bbb25295f0ce": "v5.10-rc1", "3a359798b176183ef09efb7a3dc59abad1cc7104": "v5.4-rc1", + "3a3e0fad16d40a2aa68ddf7eea4acdf48b22dd44": "v5.13-rc1", "3a4b77cd47bb837b8557595ec7425f281f2ca1fe": "v4.10-rc1", "3a4d44b6162555070194e486ff6b3799a8d323a2": "v4.13-rc1", "3a4d5c94e959359ece6d6b55045c3f046677f55c": "v2.6.34-rc1", + "3a4f326463117cee3adcb72999ca34a9aaafda93": "v5.13-rc1", "3a50597de8635cd05133bd12c95681c82fe7b878": "v3.8-rc1", + "3a53587423d25c87af4b4126a806a0575104b45e": "v5.13-rc3", "3a732b46736cd8a29092e4b0b1a9ba83e672bf89": "v6.1-rc1", + "3a75cb05d53f4a6823a32deb078de1366954a804": "v6.8-rc7", + "3a83e4e64bb1522ddac67ffc787d1c38291e1a65": "v5.11-rc1", + "3a85a5de29ea779634ddfd768059e06196687aba": "v4.8-rc1", "3a87177eb14113bbe8cd95a276af2c412eced6ac": "v4.16-rc1", "3a8b0677fc6180a467e26cc32ce6b0c09a32f9bb": "v4.14-rc1", "3a9b153c5591548612c3955c9600a98150c81875": "v5.6-rc1", "3a9b557f44ea8f216aab515a7db20e23f0eb51b9": "v6.3-rc6", "3aa02cb664c5fb1042958c8d1aa8c35055a2ebc4": "v4.7-rc1", + "3ab0598e6d860ef49d029943ba80f627c15c15d6": "v5.13-rc1", "3ab7b6ac5d829e60c3b89d415811ff1c9f358c8e": "v5.17-rc1", "3ac00a2ab69b34189942afa9e862d5170cdcb018": "v6.4-rc1", "3ac6487e584a1eb54071dbe1212e05b884136704": "v5.18", @@ -892,10 +1140,14 @@ "3b56496865f9f7d9bcb2f93b44c63f274f08e3b6": "v3.14-rc1", "3b82a4db8eaccce735dffd50b4d4e1578099b8e8": "v4.16-rc7", "3b8cc6298724021da845f2f9fd7dd4b6829a6817": "v6.2-rc1", + "3b8e19a0aa3933a785be9f1541afd8d398c4ec69": "v5.16-rc7", "3ba880a12df5aa4488c18281701b5b1bc3d4531a": "v5.17-rc1", "3bb2a01caa813d3a1845d378bbe4169ef280d394": "v6.3-rc1", + "3bb9b1f958c3d986ed90a3ff009f1e77e9553207": "v6.8-rc1", "3bcd6c7eaa53b56c3f584da46a1f7652e759d0e5": "v6.1-rc7", + "3be0b3ed1d76c6703b9ee482b55f7e01c369cc68": "v6.8-rc2", "3c0c5cfdcd4d69ffc4b9c0907cec99039f30a50a": "v3.6-rc3", + "3c12466b6b7bf1e56f9b32c366a3d83d87afb4de": "v6.8-rc1", "3c4287f62044a90e73a561aa05fc46e62da173da": "v5.6-rc1", "3c4d7559159bfe1e3b94df3a657b2cda3a34e218": "v4.13-rc1", "3c4e0dff2095c579b142d5a0693257f1c58b4804": "v5.10-rc3", @@ -904,6 +1156,7 @@ "3c9fa24ca7c9c47605672916491f79e8ccacb9e6": "v4.18-rc1", "3ca44c16b0dcc764b641ee4ac226909f5c421aa3": "v5.8-rc1", "3ca8138f014a913f98e6ef40e939868e1e9ea876": "v4.4-rc5", + "3ca8fbabcceb8bfe44f7f50640092fd8f1de375c": "v6.8-rc5", "3cb989501c2688cacbb7dc4b0d353faf838f53a1": "v3.13-rc1", "3ccdcee28415c4226de05438b4d89eb5514edf73": "v5.17-rc1", "3ce424e45411cf5a13105e0386b6ecf6eeb4f66f": "v4.7-rc1", @@ -918,13 +1171,18 @@ "3d32aaa7e66d5c1479a3c31d6c2c5d45dd0d3b89": "v6.4-rc1", "3d32e4dbe71374a6780eaf51d719d76f9a9bf22f": "v3.18-rc2", "3d3925ff6433f98992685a9679613a2cc97f3ce2": "v5.18-rc1", + "3d3c95046742e4eebaa4b891b0b01cbbed94ebbd": "v5.13-rc1", + "3d439b1a2ad36c8b4ea151c8de25309d60d17407": "v6.4-rc1", "3d4405226d27b3a215e4d03cfa51f536244e5de7": "v3.15-rc7", + "3d5048cc54bd250cfbb358c37fcc011135977887": "v5.14-rc1", "3d6368ef580a4dff012960834bba4e28d3c1430c": "v2.6.30-rc1", "3d713e0e382e6fcfb4bba1501645b66c129ad60b": "v3.17-rc1", "3d932ee27e852e4904647f15b64dedca51187ad7": "v4.16-rc1", "3d94a4a8373bf5f45cf5f939e88b8354dbf2311b": "v5.5-rc3", + "3da9b71563cbb7281875adab1d7c4132679da987": "v6.3-rc1", "3db09e762dc79584a69c10d74a6b98f89a9979f8": "v5.18-rc4", "3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2": "v6.8-rc1", + "3de7d4f25a7438f09fef4e71ef111f1805cd8e7c": "v5.11-rc5", "3de81b758853f0b29c61e246679d20b513c4cfec": "v4.9-rc8", "3dec89b14d37ee635e772636dad3f09f78f1ab87": "v6.6-rc1", "3df0411e132ee74a87aa13142dfd2b190275332e": "v6.5-rc4", @@ -936,16 +1194,21 @@ "3e256b8f8dfa309a80b5dece388d85d9a9801a29": "v3.1-rc1", "3e30148c3d524a9c1c63ca28261bc24c457eb07a": "v2.6.13-rc1", "3e337087c3b5805fe0b8a46ba622a962880b5d64": "v6.5-rc2", + "3e3eabe26dc88692d34cf76ca0e0dd331481cc15": "v6.7-rc1", "3e493173b7841259a08c5c8e5cbe90adb349da7e": "v5.3", "3e4c56d41eef5595035872a2ec5a483f42e8917f": "v4.15-rc1", "3e4f574857eebce60bb56d7524f3f9eaa2a126d0": "v3.8-rc1", "3e5048495c8569bfdd552750e0315973c61e7c93": "v2.6.30-rc1", "3e8b9bfa110896f95d602d8c98d5f9d67e41d78c": "v5.4-rc1", + "3e9bf43f7f7a46f21ec071cb47be92d0874c48da": "v5.13-rc1", "3e9e0c5c764704218c0960ffdb139de075afaadf": "v5.6-rc1", "3eb450367d0823226515ee24712ed08eccb33eb9": "v5.1-rc1", "3ebba796fa251d042be42b929a2d916ee5c34a49": "v5.12-rc2", + "3ee098f96b8b6c1a98f7f97915f8873164e6af9d": "v5.13-rc3", "3ef0eb0db4bf92c6d2510fe5c4dc51852746f206": "v3.9-rc1", + "3f14b377d01d8357eba032b4cabc8c1149b458b6": "v6.8-rc1", "3f190e3aec212fc8c61e202c51400afa7384d4bc": "v4.11-rc1", + "3f1f3234bc2db1c16b9818b9a15a5d58ad45251c": "v5.1-rc1", "3f3b442b5ad2455507c9bfdacf39a3792eb3a6d0": "v5.15-rc1", "3f3c8b8c4b2a34776c3470142a7c8baafcda6eb0": "v3.3-rc1", "3f4093e2bf4673f218c0bf17d8362337c400e77b": "v6.0-rc1", @@ -961,11 +1224,13 @@ "4017eb91a9e79bbb5d14868c207436f4a6a0af50": "v5.10-rc1", "401ca24fb34aee0cedf9c4fef361e533224f15a1": "v3.7-rc1", "401e7e88d4ef80188ffa07095ac00456f901b8c4": "v5.1-rc1", + "402be8a101190969fc7ff122d07e262df86e132b": "v5.13-rc2", "40413955ee265a5e42f710940ec78f5450d49149": "v4.13-rc5", "4071bf121d59944d5cd2238de0642f3d7995a997": "v5.18-rc6", "407ecd1bd726f240123f704620d46e285ff30dd9": "v5.16-rc6", "408fb0e5aa7fda0059db282ff58c3b2a4278baa0": "v4.4-rc6", "409353cbe9fe48f6bc196114c442b1cff05a39bc": "v5.18-rc1", + "4094445229760d0d31a4190dfe88fe815c9fc34e": "v5.7-rc1", "40a82917b1d3a8aecedee6b64949795b75359731": "v3.12-rc1", "40d8abdee806d496a60ee607a6d01b1cd7fabaf0": "v4.7-rc1", "41003396f932d7f027725c7acebb6a7caa41dc3e": "v4.12-rc1", @@ -977,16 +1242,21 @@ "414ee50b3a111983056b1a828fac08f9e8fbc7e9": "v3.2-rc1", "415e3d3e90ce9e18727e8843ae343eda5a58fad6": "v4.5-rc4", "41672c0c24a62699d20aab53b98d843b16483053": "v5.2-rc1", + "41673c66b3d0c09915698fec5c13b24336f18dd1": "v6.8-rc1", "4172385b0c9ac366dcab78eda48c26814b87ed1a": "v6.4-rc3", "4180bf1b655a791a0a6ef93a2ffffc762722c782": "v4.19-rc1", "41bdc78544b8a93a9c6814b8bbbfef966272abbe": "v3.19-rc1", + "41ca9caaae0bfc959b22dbcd59d88a7107707e17": "v5.14-rc1", + "41ce1456e1dbbc7355d0fcc10cf7c337c13def24": "v4.12-rc1", "41df7f6d43723deb7364340b44bc5d94bf717456": "v3.12-rc2", + "41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb": "v6.6-rc3", "41ef4eb8eef8d06bc1399e7b00c940d771554711": "v3.10-rc1", "41fd1cb6151439b205ac7611883d85ae14250172": "v6.1-rc2", "4206d3aa1978e44f58bfa4e1c9d8d35cbf19c187": "v2.6.25-rc1", "421221234ada41b4a9f0beeb08e30b07388bd4bd": "v5.15-rc1", "42288cb44c4b5fff7653bc392b583a2b8bd6a8c0": "v5.16-rc5", "423400e64d377c0d8a2459795420681177e51e74": "v4.11-rc1", + "423815bf02e257091d5337be5c63b57fc29e4254": "v5.12-rc1-dontuse", "423ce8caab7ea2b13f4a29ce0839369528aafaeb": "v3.4-rc1", "425aa0e1d01513437668fa3d4a971168bbaa8515": "v5.2-rc3", "425f53aaf76cce77b3bedd8ed4902bc94ed254ff": "v3.15-rc1", @@ -1001,13 +1271,17 @@ "42d84c8490f9f0931786f1623191fcab397c3d64": "v5.6-rc4", "42dbaa5a057736bf8b5c22aa42dbe975bf1080e5": "v2.6.30-rc1", "42dceae2819b5ac6fc9a0d414ae05a8960e2a1d9": "v3.3-rc1", + "43262178c043032e7c42d00de44c818ba05f9967": "v5.13-rc1", "433f4ba1904100da65a311033f17a9bf586b287e": "v5.5-rc1", "433fc58e6bf2c8bd97e57153ed28e64fd78207b8": "v4.8-rc1", "4342306f0f0d5ff4315a204d315c1b51b914fca5": "v5.15-rc1", + "4354994f097d068a894aa1a0860da54571df3582": "v4.20-rc1", "43622021d2e2b82ea03d883926605bdd0525e1d1": "v3.12-rc1", + "4373534a9850627a2695317944898eb1283a2db0": "v6.8-rc3", "4374f256ce8182019353c0c639bb8d0695b4c941": "v4.15-rc5", "43761473c254b45883a64441dd0bc85a42f3645c": "v4.8-rc1", "4379bf8bd70b5de6bba7d53015b0c36c57a634ee": "v5.12-rc1-dontuse", + "437a310b22244d4e0b78665c3042e5d1c0f45306": "v6.8-rc2", "43838a23a05fbd13e47d750d3dfd77001536dd33": "v4.17-rc2", "4397f04575c44e1440ec2e49b6302785c95fd2f8": "v4.15-rc6", "43a6684519ab0a6c52024b5e253224": "v4.11-rc6", @@ -1016,27 +1290,39 @@ "43ec16f1450f4936025a9bdf1a273affdb9732c1": "v6.4-rc1", "44234adcdce38f83c56e05f808ce656175b4beeb": "v2.6.33-rc1", "443064cb0b1fb4569fe0a71209da7625129fb760": "v4.15-rc8", + "4430f7fd09ecb037570119e0aacbf0c17b8f98b2": "v5.11-rc1", "443c1228d50518f3c550e1fef490a2c9d9246ce7": "v2.6.32-rc1", "443d61d1fa9faa60ef925513d83742902390100f": "v6.4-rc3", "4442dc8a92b8f9ad8ee9e7f8438f4c04c03a22dc": "v3.14-rc1", "4447bb33f09444920a8f1d89e1540137429351b6": "v2.6.33-rc1", + "444d7be9532dcfda8e0385226c862fd7e986f607": "v5.13-rc4", "44526bedc2ff8fcd58552e3c5bae928524b6f13c": "v5.12-rc1-dontuse", "445409602c09219767c06497c0dc2285eac244ed": "v2.6.33-rc1", "4463523bef98ff827a89cf8219db7dfac4350241": "v3.7-rc1", + "446fda4f26822b2d42ab3396aafcedf38a9ff2b6": "v2.6.19-rc1", "4473710df1f8779c59b33737eeaa151596907761": "v4.12-rc1", + "447c19f3b5074409c794b350b10306e1da1ef4ba": "v5.13-rc2", "4491001c2e0fa69efbb748c96ec96b100a5cdb7e": "v5.19-rc6", + "44bdb313da57322c9b3c108eb66981c6ec6509f4": "v6.6-rc3", "44efc269db7929f6275a1fa927ef082e533ecde0": "v5.4-rc3", + "45120b15743fa7c0aa53d5db6dfb4c8f87be4abd": "v6.6-rc4", "451a2886b6bf90e2fb378f7c46c655450fb96e81": "v4.1-rc1", + "45284ff733e4caf6c118aae5131eb7e7cf3eea5a": "v6.8-rc1", + "4530b3660d396a646aad91a787b6ab37cf604b53": "v6.8-rc3", "453393369dc9806d2455151e329c599684762428": "v5.1-rc6", "454d5d882c7e412b840e3c99010fe81a9862f6fb": "v4.4-rc6", + "4551b30525cf3d2f026b92401ffe241eb04dfebe": "v6.8-rc4", "4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c": "v4.15-rc1", + "4569cce43bc61e4cdd76597a1cf9b608846c18cc": "v6.4-rc1", "457b9a6f09f011ebcb9b52cc203a6331a6fc2de7": "v2.6.29-rc1", "457f44363a8894135c85b7a9afd2bd8196db24ab": "v5.8-rc1", "458e279f861d3f61796894cd158b780765a1569f": "v6.2-rc6", + "459aa660eb1d8ce67080da1983bb81d716aa5a69": "v4.7-rc1", "45a2966fd64147518dc5bca25f447bd0fb5359ac": "v5.15-rc1", "45af1d7aae7d5520d2858f8517a1342646f015db": "v6.2-rc1", "45bf39f8df7f05efb83b302c65ae3b9bc92b7065": "v6.3-rc1", "45c1380358b12bf2d1db20a5874e9544f56b34ab": "v5.4-rc7", + "45c8b7b175ceb2d542e0fe15247377bf3bce29ec": "v4.3", "45e093ae2830cd1264677d47ff9a95a71f5d9f9c": "v4.7-rc1", "45f05def5c44c806f094709f1c9b03dcecdd54f0": "v4.19-rc1", "45f6fad84cc305103b28d73482b344d7f5b76f39": "v4.4-rc4", @@ -1045,17 +1331,26 @@ "462dbc9101acd38e92eda93c0726857517a24bbd": "v3.8-rc1", "46612b751c4941c5c0472ddf04027e877ae5990f": "v5.1-rc1", "467fa15356acfb7b2efa38839c3e76caa4e6e0ea": "v4.3-rc1", + "46806e59a87790760870d216f54951a5b4d545bc": "v6.8-rc5", "4683f42fde3977bdb4e8a09622788cc8b5313778": "v3.9-rc7", "468f6eafa6c44cb2c5d8aad35e12f06c240a812a": "v4.15-rc5", + "46a8b29c6306d8bbfd92b614ef65a47c900d8e70": "v5.13-rc4", + "46a9ea6681907a3be6b6b0d43776dccc62cad6cf": "v6.6-rc4", + "46b723dd867d599420fb640c0eaf2a866ef721d4": "v4.20-rc1", "46c116b920ebec58031f0a78c5ea9599b0d2a371": "v5.19-rc1", "46e624b95c36d729bdf24010fff11d16f6fe94fa": "v2.6.33-rc1", + "46eba193d04f8bd717e525eb4110f3c46c12aec3": "v6.8-rc4", "46f8a29272e51b6df7393d58fc5cb8967397ef2b": "v6.0", "470502de5bdb1ed0def643a4458593a40b8f6b66": "v5.1-rc1", "47057abde515155a4fee53038e7772d6b387e0aa": "v4.10-rc1", "470ee20e069a6d05ae549f7d0ef2bdbcee6a81b2": "v6.0-rc1", + "471470bc7052d28ce125901877dd10e4c048e513": "v6.6-rc5", "4738c1db1593687713869fa69e733eebc7b0d6d8": "v2.6.26-rc1", + "474a2ddaa192777522a7499784f1d60691cd831a": "v5.13-rc4", + "474ac4a875ca6fea3fc5183d3ad22ef7523dca53": "v5.9-rc1", "475c58e1a471e9b873e3e39958c64a2d278275c8": "v6.8-rc1", "47677e51e2a4040c204d7971a5103592600185b1": "v3.15-rc1", + "47a017f33943278570c072bc71681809b2567b3a": "v5.13-rc1", "47abea041f897d64dbd5777f0cf7745148f85d75": "v6.0-rc3", "47b0c2e4c220f2251fd8dcfbb44479819c715e15": "v6.1-rc7", "47bb117911b051bbc90764a8bff96543cbd2005f": "v5.1-rc1", @@ -1064,33 +1359,47 @@ "47d902b90a32a42a3d33aef3a02170fc6f70aa23": "v4.12-rc1", "47f2d97d38816aaca94c9b6961c6eff1cfcd0bd6": "v3.6-rc1", "47f86834bbd4193139d61d659bebf9ab9d691e37": "v2.6.26-rc1", + "47ff617217ca6a13194fcb35c6c3a0c57c080693": "v5.13-rc1", "481221775d53d6215a6e5e9ce1cce6d2b4ab9a46": "v5.16-rc6", "483ae90d8f976f8339cf81066312e1329f2d3706": "v6.8-rc1", + "484730e5862f6b872dca13840bed40fd7c60fa26": "v5.16-rc7", "485b06aadb933190f4bc44e006076bc27a23f205": "v5.7-rc1", "485e71e8fb6356c08c7fc6bcce4bf02c9a9a663f": "v4.7-rc5", + "4860abb91f3d7fbaf8147d54782149bb1fc45892": "v6.8-rc5", + "488ef44c068e79752dba8eda0b75f524f111a695": "v6.6-rc4", "48900cb6af4282fa0fb6ff4d72a81aa3dadb5c39": "v4.2-rc7", "4898e640caf03fdbaf2122d5a33949bf3e4a5b34": "v3.11-rc1", "48a4ff1c7bb5a32d2e396b03132d20d552c0eca7": "v4.15-rc4", "48a992727d82cb7db076fa15d372178743b1f4cd": "v4.9", "48b0ae046ee96eac999839f6d26c624b8c93ed66": "v5.11-rc1", "48bd024b8a40d73ad6b086de2615738da0c7004f": "v5.8-rc1", + "48cae940c31d2407d860d87c41d5f9871c0521db": "v6.0-rc1", + "48cff270b037022e37835d93361646205ca25101": "v5.13-rc1", "48e876a20e79566f1736413d4f42dc66f3ab2f16": "v4.15-rc1", + "48f17f96a81763c7c8bf5500460a359b9939359f": "v5.13-rc1", "4910280503f3af2857d5aa77e35b22d93a8960a8": "v4.17-rc1", + "492032760127251e5540a5716a70996bacf2a3fd": "v6.6-rc3", "492855939bdb59c6f947b0b5b44af9ad82b7e38c": "v5.1-rc4", "4943ba16bbc2db05115707b3ff7b4874e9e3c560": "v3.19-rc1", "49499c3e6e18b7677a63316f3ff54a16533dc28f": "v4.1-rc1", + "4961acdd65c956e97c1a000c82d91a8c1cdbe44b": "v6.8-rc1", "4969c06a0d83c9c3dc50b8efcdc8eeedfce896f6": "v5.3-rc1", + "496fd0a26bbf73b6b12407ee4fbe5ff49d659a6d": "v6.7-rc1", "4971613c1639d8e5f102c4e797c3bf8f83a5a69e": "v4.14-rc4", "497de07d89c1410d76a15bec2bb41f24a2a89f31": "v4.10-rc4", "499350a5a6e7512d9ed369ed63a4244b6536f4f8": "v4.12-rc3", "49c47cc21b5b7a3d8deb18fc57b0aa2ab1286962": "v6.3-rc2", + "49cc85059a2cb656f96ff3693f891e8fe8f669a9": "v5.13-rc1", "49d31c2f389acfe83417083e1208422b4091cd9e": "v4.13-rc1", + "49db9b1b86a82448dfaf3fcfefcf678dee56c8ed": "v6.8-rc1", "49f4d8b93ccf9454284b6f524b96c66d8d7fbccc": "v3.8-rc1", + "49f9637aafa6e63ba686c13cb8549bf5e6920402": "v6.8-rc1", "4a184233f21645cf0b719366210ed445d1024d72": "v3.9-rc7", "4a2b5fddd53b80efcb3266ee36e23b8de28e761a": "v2.6.28-rc1", "4a491b1ab11ca0556d2fda1ff1301e862a2d44c4": "v4.16-rc1", "4a61648af68f5ba4884f0e3b494ee1cabc4b6620": "v6.2-rc3", "4a625ceee8a0ab0273534cb6b432ce6b331db5ee": "v6.2-rc1", + "4a7aee96200ad281a5cc4cf5c7a2e2a49d2b97b0": "v6.8-rc5", "4a90f09b20f4622dcbff1f0e1e6bae1704f8ad8c": "v2.6.28-rc1", "4a9800c81d2f34afb66b4b42e0330ae8298019a2": "v5.19-rc1", "4a9d46a9fe14401f21df69cea97c62396d5fb053": "v5.4-rc1", @@ -1107,10 +1416,12 @@ "4afa5f9617927453ac04b24b584f6c718dfb4f45": "v4.4-rc1", "4b081ce0d830b684fdf967abc3696d1261387254": "v6.6-rc1", "4b08a8f1bd8cb4541c93ec170027b4d0782dab52": "v3.11-rc7", + "4b1b7d3b30a6d32ac1a1dcede284e76ef8a8542d": "v4.19-rc1", "4b2c53d93a4bc9d52cc0ec354629cfc9dc217f93": "v5.11-rc1", "4b380c42f7d00a395feede754f0bc2292eebe6e5": "v4.15-rc4", "4b394a232df78414442778b02ca4a388d947d059": "v4.9-rc1", "4b41a9d0fe3db5f91078a380f62f0572c3ecf2dd": "v5.18-rc1", + "4b4f6cecca446abcb686c6e6c451d4f1ec1a7497": "v5.13-rc5", "4b51dae96731c9d82f5634e75ac7ffd3b9c1b060": "v3.6-rc1", "4b5db93e7f2afbdfe3b78e37879a85290187e6f1": "v5.12-rc7", "4b6184336ebb5c8dc1eae7f7ab46ee608a748b05": "v4.4-rc1", @@ -1119,7 +1430,9 @@ "4b855078601fc422dbac3059f2215e776f49780f": "v3.16-rc1", "4b8feff251da3d7058b5779e21b33a85c686b974": "v3.17-rc1", "4ba66093bdc6316cd2fe48e74a54bfc29599322f": "v4.12-rc1", + "4bc05954d0076655cfaf6f0135585bdc20cd6b11": "v5.15-rc1", "4bdab43323b459900578b200a4b8cf9713ac8fab": "v2.6.36-rc5", + "4be5341026246870818e28b53202b001426a5aec": "v5.5-rc1", "4becb7ee5b3d2829ed7b9261a245a77d5b7de902": "v5.7-rc5", "4bedf9eee016286c835e3d8fa981ddece5338795": "v6.4", "4c03b862b12f980456f9de92db6d508a4999b788": "v4.10", @@ -1135,6 +1448,10 @@ "4c8cf31885f69e86be0b5b9e6677a26797365e1d": "v5.7-rc1", "4c905f6740a365464e91467aa50916555b28213d": "v5.18-rc1", "4caae58406f8ceb741603eee460d79bacca9b1b5": "v5.19-rc1", + "4cb47a8644cc9eb8ec81190a50e79e6530d0297f": "v5.9-rc1", + "4cc7faa406975b460aa674606291dea197c1210c": "v5.13-rc1", + "4cccb6221cae6d020270606b9e52b1678fc8b71a": "v6.8-rc1", + "4cd12c6065dfcdeba10f49949bffcf383b3952d8": "v6.8-rc6", "4cdf507d54525842dfd9f6313fdafba039084046": "v3.18-rc1", "4ce001abafafe77e5dd943d1480fc9f87894e96f": "v2.6.32-rc1", "4cf46b67eb6de94532c1bea11d2479d085229d0e": "v2.6.33-rc1", @@ -1146,10 +1463,13 @@ "4d56304e5827c8cc8cc18c75343d283af7c4825c": "v6.4-rc5", "4d63adfe12dd9cb61ed8badb4d798955399048c2": "v4.15-rc1", "4d6636498c41891d0482a914dd570343a838ad79": "v5.4-rc7", + "4d6a38da8e79e94cbd1344aa90876f0f805db705": "v5.13-rc1", "4d6fa57b4dab0d77f4d8e9d9c73d1e63f6fe8fee": "v4.11", "4d7ea8ee90e42fc75995f6fb24032d3233314528": "v5.12-rc1-dontuse", "4d8df0f5f79f747d75a7d356d9b9ea40a4e4c8a9": "v6.4-rc6", "4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf": "v5.8-rc1", + "4d8f9065830e526c83199186c5f56a6514f457d2": "v5.12-rc8", + "4d906839d321c2efbf3fed4bc31ffd9ff55b75c0": "v5.13-rc1", "4d97f7d53da7dc830dbf416a3d2a6778d267ae68": "v4.19-rc1", "4db66499df91b9398435e2dbee0e42cd6df0bc27": "v4.14-rc1", "4db67e808640e3934d82ce61ee8e2e89fd877ba8": "v3.7-rc1", @@ -1165,6 +1485,7 @@ "4e19d6b65fb4fc42e352ce9883649e049da14743": "v5.3-rc1", "4e2024624e678f0ebb916e6192bd23c1f9fdf696": "v3.19-rc3", "4e3c51f4e805291b057d12f5dda5aeb50a538dc4": "v6.1-rc7", + "4e440abc894585a34c2904a32cd54af1742311b3": "v6.8-rc4", "4e484b3e969b52effd95c17f7a86f39208b2ccf4": "v5.17-rc1", "4e6c3df4d729f85997cbf276bfa8ffd8579b8e77": "v4.8-rc1", "4e70c7e71c5f9cf11013628ab5a0ced449b1c7b2": "v3.13-rc1", @@ -1180,18 +1501,23 @@ "4edbe133f851c9e3a2f2a1db367e826b01e72594": "v5.3-rc1", "4edbe1d7bcffcd6269f3b5eb63f710393ff2ec7a": "v5.12-rc5", "4ef1b2869447411ad3ef91ad7d4891a83c1a509a": "v4.11-rc4", + "4ef9ad19e17676b9ef071309bc62020e2373705d": "v6.8-rc3", "4efbc454ba68def5ef285b26ebfcfdb605b52755": "v3.14-rc4", "4f0414e54e4d1893c6f08260693f8ef84c929293": "v4.5-rc1", "4f04351888a83e595571de672e0a4a8b74f4fb31": "v6.4-rc2", "4f11ada10d0ad3fd53e2bd67806351de63a4f9c3": "v6.2-rc6", "4f134b89a24b965991e7c345b9a4591821f7c2a6": "v5.10-rc7", "4f16f7ff3bc02f6e1845677235fea157bdc0e59c": "v4.16-rc1", + "4f1cc51f34886d645cd3e8fc2915cc9b7a55c3b6": "v5.12-rc1-dontuse", "4f1dc7d9756e66f3f876839ea174df2e656b7f79": "v6.2-rc1", + "4f2629ea67e7225c3fd292c7fe4f5b3c9d6392de": "v5.13-rc4", + "4f32504a2f85a7b40fe149436881381f48e9c0c0": "v6.8-rc1", "4f3882177240a1f55e45a3d241d3121341bead78": "v5.5-rc6", "4f4853dc1c9c1994f6f756eabdcc25374ff271d9": "v4.10-rc1", "4f57f06ce2186c31c3da52386125dc57b1cd6f96": "v5.18-rc1", "4f5d33f4f798b1c6d92b613f0087f639d9836971": "v6.0-rc1", "4f7019c7eb33967eb87766e0e4602b5576873680": "v5.15", + "4f973e211b3b1c6d36f7c6a19239d258856749f9": "v6.8-rc1", "4f98186848707f530669238d90e0562d92a78aab": "v5.17-rc3", "4f996e234dad488e5d9ba0858bc1bae12eff82c3": "v4.7-rc4", "4fb8b5aa2a1126783ae00bae544d6f3c519408ef": "v5.7-rc1", @@ -1201,17 +1527,22 @@ "5005bcb4219156f1bf7587b185080ec1da08518e": "v6.4", "500a373d731ac506612db12631ec21295c1ff360": "v5.10-rc1", "50145474f6ef4a9c19205b173da6264a644c7489": "v5.9-rc6", + "501ef3066c89d7f9045315e1be58749cf9e6814d": "v5.10-rc1", "50220dead1650609206efe91f0cc116132d59b3f": "v4.6-rc1", "5023b14cf4df4d22e1a80738167f3438c9e62e5f": "v5.2-rc1", + "50274b01ac1689b1a3f6bc4b5b3dbf361a55dd3a": "v5.13-rc1", "502e95c6678505474f1056480310cd9382bacbac": "v4.1-rc1", "504a10d9e46bc37b23d0a1ae2f28973c8516e636": "v6.4-rc2", "50535249f624d0072cd885bcdce4e4b6fb770160": "v5.12-rc5", "505ce0630ad5d31185695f8a29dde8d29f28faa7": "v6.6-rc7", "505d9dcb0f7ddf9d075e729523a33d38642ae680": "v5.15-rc4", + "5093bbfc10ab6636b32728e35813cbd79feb063c": "v6.6-rc6", + "50c70240097ce41fe6bce6478b80478281e4d0f7": "v6.8-rc6", "50d0a7aea4809cef87979d4669911276aa23b71f": "v6.4-rc1", "50d5c8d8e938e3c4c0d21db9fc7d64282dc7be20": "v3.12-rc1", "50d88758a3f9787cbdbdbc030560b815721eab4b": "v2.6.30-rc1", "50e7044535537b2a54c7ab798cd34c7f6d900bd2": "v4.17-rc1", + "5104d7ffcf24749939bea7fdb5378d186473f890": "v5.13-rc2", "5106dd6e74ab6c94daac1c357094f11e6934b36f": "v5.18-rc2", "51093254bf879bc9ce96590400a87897c7498463": "v4.6-rc1", "511885d7061eda3eb1faf3f57dcc936ff75863f1": "v5.4-rc1", @@ -1222,6 +1553,7 @@ "5146f95df782b0ac61abde36567e718692725c89": "v4.20", "514c7dca85a0bf40be984dab0b477403a6db901f": "v4.19-rc1", "515ad530795c118f012539ed76d02bacfd426d89": "v6.5-rc2", + "5160a5a53c0c4ae3708959d9465ea43ad5d90542": "v5.10-rc1", "517a281338322ff8293f988771c98aaa7205e457": "v6.4-rc3", "5191955d6fc65e6d4efe8f4f10a6028298f57281": "v5.11-rc1", "51925fb3c5c9": "v4.1-rc1", @@ -1236,12 +1568,19 @@ "51f3baad7de943780ce0c17bd7975df567dd6e14": "v4.12-rc1", "51f6b410fc220d8a5a4fae00ebfd8243b6c11d4e": "v4.20-rc1", "520778042ccca019f3ffa136dd0ca565c486cedd": "v5.19-rc1", + "520a1c396d1966b64884d8e0176a580150d5a09e": "v5.10-rc1", + "5218e919c8d06279884aa0baf76778a6817d5b93": "v5.13-rc4", + "52202be1cd996cde6e8969a128dc27ee45a7cb5e": "v5.13-rc3", "522b1d69219d8f083173819fde04f994aa051a98": "v6.5-rc4", "5233252fce714053f0151680933571a2da9cbfb4": "v4.4-rc6", "52400ba946759af28442dee6265c5c0180ac7122": "v2.6.31-rc1", + "52526ca7fdb905a768a93f8faa418e9b988fc34b": "v6.7-rc1", + "5266caaf5660529e3da53004b8b7174cab6374ed": "v6.8-rc1", + "528ab3e605cabf2f9c9bd5944d3bfe15f6e94f81": "v6.6-rc5", "52c479697c9b73f628140dcdfcd39ea302d05482": "v5.9-rc2", "52e8c38001d8ef0ca07ef428e480cd4a35e46abf": "v4.18-rc1", "52ebea749aaed195245701a8f90a23d672c7a933": "v4.2-rc1", + "52f671db18823089a02f07efc04efdb2272ddc17": "v6.8-rc6", "52feb444a90304eb13c03115bb9758101dbb9254": "v3.8-rc1", "5320918b9a87865223fd6b228e530bf30bc64d9d": "v3.4-rc1", "5329722057d41aebc31e391907a501feaa42f7d9": "v5.11-rc1", @@ -1252,9 +1591,13 @@ "53592b3640019f2834701093e38272fdfd367ad8": "v4.10-rc1", "536bb492d39bb6c080c92f31e8a55fe9934f452b": "v6.5-rc4", "537a50574175a2b68b0612ffb48cb044a394c7b4": "v4.13-rc1", + "53a3f777049771496f791504e7dc8ef017cba590": "v6.6-rc5", "53a712bae5dd919521a58d7bad773b949358add0": "v5.2-rc1", + "53b1119a6e5028b125f431a0116ba73510d82a72": "v5.16-rc7", "53b381b3abeb86f12787a6c40fee9b2f71edc23b": "v3.9-rc1", + "53c0441dd2c44ee93fddb5473885fd41e4bc2361": "v6.8-rc5", "53edb549565f55ccd0bdf43be3d66ce4c2d48b28": "v6.8-rc1", + "53ff5cf89142b978b1a5ca8dc4d4425e6a09745f": "v6.6-rc5", "53ffa6a9f83b2170c60591da1ead8791d5a42e81": "v6.2-rc1", "5429c9dbc9025f9a166f64e22e3a69c94fd5b29b": "v5.16-rc1", "542db01579fbb7ea7d1f7bb9ddcef1559df660b2": "v3.11-rc1", @@ -1265,26 +1608,36 @@ "548acf19234dbda5a52d5a8e7e205af46e9da840": "v4.6-rc1", "54a20552e1eae07aa240fa370a0293e006b5faed": "v4.4-rc1", "54a217887a7b658e2650c3feff22756ab80c7339": "v3.15", + "54a40fc3a1da21b52dbf19f72fdc27a2ec740760": "v5.13-rc3", "54a611b605901c7d5d05b6b8f5d04a6ceb0962aa": "v6.1-rc1", "54c9de89895e0a36047fcc4ae754ea5b8655fb9d": "v5.10-rc1", "54d198d5019dd98b9bcb9099a389608d7e2cccad": "v5.2-rc1", "54d5ca871e72f2bb172ec9323497f01cd5091ec7": "v4.6", "54d83fc74aa9ec72794373cb47432c5f7fb1a309": "v4.6-rc2", + "54d87913f147a983589923c7f651f97de9af5be1": "v5.13-rc3", "54dbc15172375641ef03399e8f911d7165eb90fb": "v4.5-rc1", "54e200ab40fc14c863bcc80a51e20b7906608fce": "v5.8-rc1", "54e45702b648b7c0000e90b3e9b890e367e16ea8": "v6.2-rc1", "54ffccbf053b5b6ca4f6e45094b942fab92a25fc": "v5.10-rc7", "5519541d5a5f19893546883547e2f0f2e5934df7": "v3.0-rc1", + "552705a3650bbf46a22b1adedc1b04181490fc36": "v6.8", "5535be3099717646781ce1540cf725965d680e7b": "v6.0-rc3", "554086d85e71f30abe46fc014fea31929a7c6a8a": "v3.16-rc3", "55484c45dbeca2eec7642932ec3f60f8a2d4bdbf": "v2.6.33-rc1", + "55583e899a5357308274601364741a83e78d6ac4": "v6.8-rc3", + "5559cea2d5aa3018a5f00dd2aca3427ba09b386b": "v6.8-rc6", "55667441c84fa5e0911a0aac44fb059c15ba6da2": "v5.4-rc6", + "556857aa1d0855aba02b1c63bc52b91ec63fc2cc": "v6.8-rc2", + "5571e41ec6e56e35f34ae9f5b3a335ef510e0ade": "v6.8-rc5", "55749769fe608fa3f4a075e42e89d237c8e37637": "v5.17-rc1", + "5578de4834fe0f2a34fedc7374be691443396d1f": "v5.0", "557c0c6e7df8e14a46bd7560d193fa5bbc00a858": "v4.6-rc1", "557d19675a470bb0a98beccec38c5dc3735c20fa": "v6.2-rc1", + "55840b9eae5367b5d5b29619dc2fb7e4596dba46": "v5.16-rc7", "5593473a1e6c743764b08e3b6071cb43b5cfa6c4": "v5.18-rc3", "5593523f968bc86d42a035c6df47d5e0979b5ace": "v4.10-rc8", "559c36c5a8d730c49ef805a72b213d3bba155cc8": "v6.0-rc7", + "55a48ad2db64737f7ffc0407634218cc6e4c513b": "v6.8-rc6", "55a8210c9e7d21ff2644809699765796d4bfb200": "v6.8-rc1", "55dd6f93076bb82aa8911191125418dcfcbf2c9b": "v3.16-rc1", "55e8c8eb2c7b6bf30e99423ccfe7ca032f498f59": "v5.7-rc1", @@ -1294,6 +1647,8 @@ "5615968a70845157adaffc11062c997d045339ee": "v2.6.31-rc1", "56441f3c8e5bd45aab10dd9f8c505dd4bec03b0d": "v4.4-rc6", "5649645d725c73df4302428ee4e02c869248b4c5": "v4.12-rc5", + "56517ab958b7c11030e626250c00b9b1a24b41eb": "v5.13-rc4", + "56667da7399eb19af857e30f41bea89aa6fa812c": "v6.8-rc6", "567320c46a60a3c39b69aa1df802d753817a3f86": "v6.7-rc7", "5678de3f15010b9022ee45673f33bcfc71d47b60": "v3.15-rc2", "56897b217a1d0a91c9920cb418d6b3fe922f590a": "v5.1-rc1", @@ -1303,10 +1658,14 @@ "56c5812623f95313f6a46fbf0beee7fa17c68bbf": "v5.13-rc1", "56cd26b618855c9af48c8301aa6754ced8dd0beb": "v5.2-rc1", "56e449603f0ac580700621a356d35d5716a62ce5": "v6.7-rc1", + "56e58d6c8a5640eb708e85866e9d243d0357ee54": "v5.4-rc1", "570d0176296f0d17c4b5ab206ad4a4bc027b863b": "v4.7-rc1", "5738a09d58d5ad2871f1f9a42bf6a3aa9ece5b3c": "v4.4-rc4", "574823bfab82d9d8fa47f422778043fbb4b4f50e": "v5.0-rc1", + "5761eb9761d2d5fe8248a9b719efc4d8baf1f24a": "v6.8-rc6", + "577e4432f3ac810049cb7e6b71f4d96ec7c6e894": "v6.8-rc3", "57861b432bda77f8bfafda2fb6f5a922d5f3aef1": "v2.6.22-rc1", + "57974a55d995468a9a476e24693eb741c649b25f": "v6.4-rc1", "579db9d45cb4e8e7cedff9e6079331a1e2ea9f5d": "v4.16-rc1", "57b8015e07a70301e9ec9f324db1a8b73b5a1e2b": "v3.10-rc1", "57bc3d3ae8c14df3ceb4e17d26ddf9eeab304581": "v5.17-rc4", @@ -1327,19 +1686,26 @@ "5872331b3d91820e14716632ebb56b1399b34fe1": "v5.9-rc2", "588afcc1c0e45358159090d95bf7b246fb67565f": "v4.5-rc1", "588f7d39b3592a36fb7702ae3b8bdd9be4621e2f": "v5.2-rc6", + "58956317c8de52009d1a38a721474c24aef74fe7": "v5.0-rc1", "58990d1ff3f7896ee341030e9a7c2e4002570683": "v4.18-rc1", "58bdd544e2933a21a51eecf17c3f5f94038261b5": "v5.0", "58ccd2d31e502c37e108b285bf3d343eb00c235b": "v5.1-rc4", "58d19b19cd99b438541eea4cdbf5c171900b25e5": "v4.6-rc1", + "58fca355ad37dcb5f785d9095db5f748b79c5dc2": "v6.8-rc4", "58fd55e838276a0c13d1dc7c387f90f25063cbf3": "v4.15-rc1", "5901b6be885e2c9a30fd94803b846b3d33e351dd": "v3.7-rc1", "590232a7150674b2036291eaefce085f3f9659c8": "v2.6.14-rc3", + "5913320eb0b3ec88158cfcb0fa5e996bf4ef681b": "v6.8-rc2", "592acbf16821288ecdc4192c47e3774a4c48bb64": "v5.2-rc1", "594cc251fdd0d231d342d88b2fdff4bc42fb0690": "v5.0-rc1", "59643d1535eb220668692a5359de22545af579f6": "v4.7-rc1", "597cfe48212a3f110ab0f918bf59791f453e65b7": "v5.10-rc1", "59c4bd853abcea95eccc167a7d7fd5f1a5f47b98": "v5.5-rc1", "59c816c1f24df0204e01851431d3bab3eb76719c": "v4.0-rc1", + "59ca6c93387d325e96577d8bd4c23c78c1491c11": "v5.18-rc1", + "59d0f746564495c7f54526674deabfcf101236a1": "v3.18-rc1", + "59df44bfb0ca4c3ee1f1c3c5d0ee8e314844799e": "v6.6-rc5", + "59e27d7c94aa02da039b000d33c304c179395801": "v5.13-rc1", "59e5791f59dd83e8aa72a4e74217eabb6e8cfd90": "v6.8-rc1", "59f8b0bf3c12598cf4a5b333b0287774dbbdbe1f": "v2.6.37-rc1", "5a07975ad0a36708c6b0a5b9fea1ff811d0b0c1f": "v4.6-rc3", @@ -1347,43 +1713,62 @@ "5a25ba1677ab8d63890016a8c1bca68a3e0fbc7d": "v2.6.19-rc1", "5a264285ed1cd32e26d9de4f3c8c6855e467fd63": "v5.12-rc1", "5a281062af1d43d3f3956a6b429c2d727bc92603": "v5.7-rc1", + "5a465c5391a856a0c1e9554964d660676c35d1b2": "v5.13-rc1", + "5a4b9fe7fece62ecab6fb28fe92362f83b41c33e": "v5.7-rc1", "5a52a7acf7e2a812d2852342992cee3dc22ad25d": "v4.12-rc1", + "5a6eb676d3bc4d7a6feab200a92437b62ad298da": "v2.6.23-rc1", "5a7203947a1d9b6f3a00a39fda08c2466489555f": "v3.11-rc1", + "5a7f555904671c0737819fe4d19bd6143de3f6c0": "v5.10-rc1", "5abda7a16698d4d1f47af1168d8fa2c640116b4a": "v6.4-rc1", + "5ad755fd2b326aa2bc8910b0eb351ee6aece21b1": "v5.13-rc5", + "5ae1e9922bbdbaeb9cfbe91085ab75927488ac0f": "v6.8-rc7", "5ae94c0d2f0bed41d6718be743985d61b7f5c47d": "v3.9-rc7", "5af08640795b2b9a940c9266c0260455377ae262": "v5.9", "5af10dfd0afc559bb4b0f7e3e8227a1578333995": "v4.13-rc5", "5afa7898ab7a0ec9c28556a91df714bf3c2f725e": "v5.15", "5b029a32cfe4600f5e10e36b41778506b90fd4de": "v5.14", "5b0bbee4732cbd58aa98213d4c11a366356bba3d": "v5.7-rc4", + "5b1faa92289b53cad654123ed2bc8e10f6ddd4ac": "v5.13-rc1", "5b423f6a40a0327f9d40bc8b97ce9be266f74368": "v3.6-rc5", "5b435de0d786869c95d1962121af0d7df2542009": "v3.2-rc1", + "5b4cdd9c5676559b8a7c944ac5269b914b8c0bb8": "v6.9-rc2", "5b6698b0e4a37053de35cc24ee695b98a7eb712b": "v3.19-rc3", "5b6c7e5c44349b29c614e1b61f80c6849fc72ccf": "v5.19-rc1", + "5b78ed24e8ec48602c1d6f5a188e58d000c81e2b": "v5.15-rc1", "5b9fbeb75b6a98955f628e205ac26689bcb1383e": "v5.9", + "5ba4e6d5863c53e937f49932dee0ecb004c65928": "v6.8-rc6", "5bbbbe32a43199c2b9ea5ea66fab6241c64beb51": "v4.15-rc1", + "5bc09b397cbf1221f8a8aacb1152650c9195b02b": "v6.8-rc4", "5bfbe3ad5840d941b89bcac54b821ba14f50a0ba": "v4.20-rc5", "5bfea2d9b17f1034a68147a8b03b9789af5700f9": "v5.8-rc1", "5c099c4fdc438014d5893629e70a8ba934433ee8": "v6.2-rc1", + "5c14a5f944b91371961548b1907802f74a4d2e5c": "v5.12-rc1-dontuse", + "5c15c60e7be615f05a45cd905093a54b11f461bc": "v6.6-rc6", "5c17c861a357e9458001f021a7afa7aab9937439": "v4.5-rc2", + "5c2a64252c5dc4cfe78e5b2a531c118894e3d155": "v6.1-rc1", "5c3462cfd123b341c9d3c947c1a2bab373f1697f": "v5.10-rc1", "5c36b99add5c3212b6cdb97cc206e1e3e0fa1e3c": "v3.8-rc1", "5c3c48ac6bf56367c4e89f6453cd2d61e50375bd": "v3.12-rc1", "5c455c5ab332773464d02ba17015acdca198f03d": "v5.11-rc1", "5c4c8c9544099bb9043a10a5318130a943e32fc3": "v5.13-rc1", + "5c54fcac9a9de559b444ac63ec3cd82f1d157a0b": "v4.19-rc6", "5c6e5b60aae4347223f176966455010a5715b863": "v4.8-rc1", "5c7fb56e5e3f7035dd798a8e1adee639f87043e5": "v4.5-rc1", "5c835bb142d4013c2ab24bff5ae9f6709a39cbcf": "v5.19-rc7", + "5c8a47a5a91d4d6e185f758d61997613d9c5d6ac": "v5.7-rc1", "5c911beff20aa8639e7a1f28988736c13e03ed54": "v5.8-rc1", "5c919412fe61c35947816fdbd5f7bd09fe0dd073": "v4.5-rc1", "5cadd4bb1d7fc9ab201ac14620d1a478357e4ebd": "v5.17-rc8", "5cec2d2e5839f9c0fec319c523a911e0a7fd299f": "v5.1-rc3", "5d069dbe8aaf2a197142558b6fb2978189ba3454": "v5.11-rc1", + "5d0a8d2fba50e9c07cde4aad7fba28c008b07a5b": "v6.5-rc7", "5d176f751ee3c6eededd984ad409bff201f436a7": "v4.9-rc1", + "5d1935ac02ca5aee364a449a35e2977ea84509b0": "v6.8-rc1", "5d26a105b5a73e5635eae0629b42fa0a90e07b7b": "v3.19-rc1", "5d2bd7009f306c82afddd1ca4d9763ad8473c216": "v3.7-rc1", "5d2be1422e02ccd697ccfcd45c85b4a26e6178e2": "v4.7-rc3", "5d2e73a5f80a5b5aff3caf1ec6d39b5b3f54b26e": "v5.3-rc1", + "5d3c4c79384af06e3c8e25b7770b6247496b4417": "v5.13-rc1", "5d407b071dc369c26a38398326ee2be53651cfe4": "v4.19-rc4", "5d41ce29e3b91ef305f88d23f72b3359de329cec": "v4.9-rc6", "5d4f98a28c7d334091c1b7744f48a1acdd2a4ae0": "v2.6.31-rc1", @@ -1394,9 +1779,12 @@ "5dc7d23e167e2882ef118456ceccd57873e876d8": "v6.3-rc7", "5dd0a57cf38eeb8b6be1d9c3df9add2f5756d974": "v4.16-rc1", "5de5b6ecf97a021f29403aa272cb4e03318ef586": "v5.9-rc1", + "5df16caada3fba3b21cb09b85cdedf99507f4ec1": "v5.12-rc1-dontuse", "5e2424708da7207087934c5c75211e8584d553a0": "v6.5-rc7", "5e2f30b756a37bd80c5b0471d0e10d769ab2eb9a": "v4.14-rc1", "5e31275cc997f8ec5d9e8d65fe9840ebed89db19": "v6.4-rc1", + "5e31b3df86ec6fbb925eee77fe2c450099c61dff": "v6.4-rc1", + "5e33f6fdf735cda1d4580fe6f1878da05718fe73": "v4.0-rc1", "5e3ca0ec76fce92daa4eed0d02de9c79b1fe3920": "v2.6.27-rc1", "5e3cc1ee1405a7eb3487ed24f786dec01b4cbe1f": "v5.1-rc1", "5e3dd157d7e70f0e3cea3f2573ed69fb156a19d5": "v3.11-rc1", @@ -1408,10 +1796,13 @@ "5eaf563e53294d6696e651466697eb9d491f3946": "v3.8-rc1", "5ec0811d30378ae104f250bfc9b3640242d81e3f": "v4.6-rc7", "5ec7d18d1813a5bead0b495045606c93873aecbb": "v5.16-rc8", + "5ec8e8ea8b7783fab150cf86404fc38cb4db8800": "v6.8-rc1", "5eda3550a3cc1987a495e9f85e5998a76d15a0aa": "v3.9-rc1", "5edabca9d4cff7f1f2b68f0bac55ef99d9798ba4": "v4.10", "5eeb2ca02a2f6084fc57ae5c244a38baab07033a": "v4.16-rc3", "5f00110f7273f9ff04ac69a5f85bb535a4fd0987": "v3.9-rc1", + "5f08318f617b05b6ee389d8bd174c7af921ebf19": "v4.11-rc1", + "5f29458b77d51c104554575b73184c243930aa87": "v5.7-rc1", "5f2f97656ada8d811d3c1bef503ced266fcd53a0": "v4.12-rc7", "5f3e2bf008c2221478101ee72f5cb4654b9fc363": "v5.2-rc6", "5f409e20b794565e2d60ad333e79334630a6c798": "v5.2-rc1", @@ -1423,6 +1814,7 @@ "5f936e19cc0ef97dbe3a56e9498922ad5ba1edef": "v4.19-rc1", "5f94c1741bdc7a336553122036e8a779e616ccbf": "v2.6.27-rc1", "5f9562ebe710c307adc5f666bf1a2162ee7977c0": "v5.16-rc6", + "5fd9e45f1ebcd57181358af28506e8a661a260b3": "v6.8-rc6", "5fe7f7b78290638806211046a99f031ff26164e1": "v6.4", "60085c3d009b0df252547adb336d1ccca5ce52ec": "v3.9-rc7", "600ddd6825543962fb807884169e57b580dba208": "v3.19-rc7", @@ -1432,6 +1824,7 @@ "602adf400201636e95c3fed9f31fba54a3d7e844": "v2.6.37-rc1", "6032046ec4b70176d247a71836186d47b25d1684": "v5.16-rc7", "604326b41a6fb9b4a78b6179335decee0365cd8c": "v4.20-rc1", + "6045b01dd0e3cd3759eafe7f290ed04c957500b1": "v5.13-rc1", "604c499cbbcc3d5fe5fb8d53306aa0fae1990109": "v3.11-rc3", "60545d0d4610b02e55f65d141c95b18ccf855b6e": "v3.11-rc1", "606142af57dad981b78707234cfbd15f9f7b7125": "v4.11-rc2", @@ -1446,17 +1839,27 @@ "610bfc6bc99bc83680d190ebc69359a05fc7f605": "v3.13-rc1", "610f8f5a7baf998e70a61c63e53869b676d9b04c": "v5.15-rc6", "611792920925fb088ddccbe2783c7f92fdfb6b64": "v6.2-rc7", + "611e12ea0f121a31d9e9c4ce2a18a77abc2f28d6": "v4.3-rc1", "613317bd212c585c20796c10afe5daaa95d4b0a1": "v4.5-rc4", "6134041bef0aeb9cb7c8a8daf045b44513cd8396": "v3.15-rc1", + "61461fc921b756ae16e64243f72af2bfc2e620db": "v5.13-rc1", "6160968cee8b90a5dd95318d716e31d7775c4ef3": "v3.11-rc5", + "616cf23b6cf40ad6f03ffbddfa1b6c4eb68d8ae1": "v5.13-rc1", + "616d82c3cfa2a2146dd7e3ae47bda7e877ee549e": "v6.8-rc7", + "619fee9eb13b5d29e4267cb394645608088c28a8": "v5.13-rc4", + "61a348857e869432e6a920ad8ea9132e8d44c316": "v6.8-rc3", + "61a7e26028b94805fd686a6dc9dbd9941f8f19b0": "v2.6.27-rc1", "61a96113de51e1f8f43ac98cbeadb54e60045905": "v3.6-rc1", "61b91eb33a69c3be11b259c5ea484505cd79f883": "v6.1-rc1", "61c1b44a21d70d4783db02198fbf68b132f4953c": "v5.19-rc1", "61c9fed41638249f8b6ca5345064eb1beb50179f": "v2.6.17-rc5", "61cf93700fe6359552848ed5e3becba6cd760efa": "v5.12-rc3", + "61cfac6f267dabcf2740a7ec8a0295833b28b5f5": "v4.11-rc1", + "61d8658b4a435eac729966cc94cdda077a8df5cd": "v4.11-rc1", "61ea0c0ba904a55f55317d850c1072ff7835ac92": "v3.13-rc1", "61f5d698cc97600e813ca5cf8e449b1ea1c11492": "v4.5-rc1", "61fad6816fc10fb8793a925d5c1256d1c3db0cd2": "v5.6", + "62094060cf3acaf52e277457d807ea753269b89e": "v6.2-rc1", "6217e5ede23285ddfee10d2e4ba0cc2d4c046205": "v3.17-rc1", "621b5060e823301d0cba4cb52a7ee3491922d291": "v3.14-rc6", "62229de19ff2b7f3e0ebf4d48ad99061127d0281": "v4.15-rc1", @@ -1477,6 +1880,7 @@ "635682a14427d241bab7bbdeebb48a7d7b91638e": "v4.3-rc4", "635d9398178659d8ddba79dd061f9451cec0b4d1": "v5.7-rc7", "635f545a7e8be7596b9b2b6a43cab6bbd5a88e43": "v4.15-rc4", + "636752bcb5177a301d0266270661581de8624828": "v3.6-rc1", "6377f787aeb945cae7abbb6474798de129e1f3ac": "v5.1-rc1", "638164a2718f337ea224b747cf5977ef143166a4": "v4.14-rc5", "6397fac4915ab3002dc15aae751455da1a852f25": "v4.15-rc1", @@ -1488,21 +1892,28 @@ "63e44bc52047f182601e7817da969a105aa1f721": "v6.6-rc7", "63ed1aab3d40aa61aaa66819bdce9377ac7f40fa": "v5.18-rc1", "6402939ec86eaf226c8b8ae00ed983936b164908": "v5.4-rc2", + "640d1930bef4f87ec8d8d2b05f0f6edc1dfcf662": "v5.17-rc1", + "643001b47adc844ae33510c4bb93c236667008a3": "v5.13-rc1", "643a16a0eb1d6ac23744bb6e90a00fc21148a9dc": "v6.2-rc1", "644595f89620ba8446cc555be336d24a34464950": "v3.4-rc1", "645a3c40ca3d40cc32b4b5972bf2620f2eb5dba6": "v5.17-rc1", "647bf3d8a8e5777319da92af672289b2a6c4dc66": "v4.10-rc8", "649c15c7691e9b13cbe9bf6c65c365350e056067": "v6.3-rc2", "64b875f7ac8a5d60a4e191479299e931ee949b67": "v4.10-rc1", + "64b9cea7a0afe579dd2682f1f1c04f2e4e72fd25": "v5.12-rc1-dontuse", "64beba0558fce7b59e9a8a7afd77290e82a22163": "v5.0-rc1", "64c70b1cf43de158282bc1675918d503e5b15cc1": "v2.6.23-rc1", + "64c8902ed4418317cd416c566f896bd4a92b2efc": "v6.3-rc1", "64d4ce892383b2ad6d782e080d25502f91bf2a38": "v5.5-rc3", + "64d6b281ba4db044c946158387c74e1149b9487e": "v5.12-rc1-dontuse", "64dd153c83743af81f20924c6343652d731eeecb": "v3.2-rc1", "64e6bbfff52db4bf6785fab9cffab850b2de6870": "v5.11-rc3", "65038428b2c6c5be79d3f78a6b79c0cdc3a58a41": "v5.7-rc1", "65117f1aa1b2d145fd5ca376bde642794d0aae1b": "v4.7-rc1", + "65371a3f14e73979958aea0db1e3bb456a296149": "v6.4-rc1", "654b404f2a222f918af9b0cd18ad469d0c941a8e": "v4.11-rc2", "657831ffc38e30092a2d5f03d385d710eb88b09a": "v4.12-rc1", + "657b306a7bdfca4ae1514b533a0e7c3c6d26dbc6": "v3.7-rc1", "657b5146955eba331e01b9a6ae89ce2e716ba306": "v6.5-rc4", "657eb17d87852c42b55c4b06d5425baa08b2ddb3": "v3.13-rc7", "659643f7d81432189c2c87230e2feee4c75c14c1": "v4.10-rc1", @@ -1513,10 +1924,20 @@ "65d8fc777f6dcfee12785c057a6b57f679641c90": "v4.6-rc1", "65eea8edc315589d6c993cf12dbb5d0e9ef1fe4e": "v4.19-rc5", "65f3324f4b6fed78b8761c3b74615ecf0ffa81fa": "v5.17", + "6613bc2301ba291a1c5a90e1dc24cf3edf223c03": "v5.13-rc1", "661412e301e2ca86799aa4f400d1cf0bd38c57c6": "v5.19-rc1", + "661779e1fcafe1b74b3f3fe8e980c1e207fea1fd": "v6.8-rc7", "662ca437e714caaab855b12415d6ffd815985bc0": "v3.12-rc2", + "6637e11e4ad22ff03183da0dbd36d65c98b81cf7": "v6.5-rc1", + "663c0c9496a69f80011205ba3194049bcafd681d": "v5.4-rc1", + "6641df81ab799f28a5d564f860233dd26cca0d93": "v5.13-rc1", "66450a21f99636af4fafac2afd33f1a40631bc3a": "v3.10-rc1", + "6657fca06e3ffab8d0b3f9d8b397f5ee498952d7": "v4.17-rc1", + "6670e152447732ba90626f36dfc015a13fbf150e": "v4.15-rc1", "667121ace9dbafb368618dbabcf07901c962ddac": "v4.9-rc4", + "668a84c1bfb2b3fd5a10847825a854d63fac7baa": "v5.13-rc5", + "66951d98d9bf45ba25acf37fe0747253fafdf298": "v6.8-rc4", + "66b60b0c8c4a163b022a9f0ad6769b0fd3dc662f": "v6.8-rc6", "66d42ed8b25b64eb63111a2b8582c5afc8bf1105": "v5.9-rc7", "66e3531b33ee51dad17c463b4d9c9f52e341503d": "v5.17-rc8", "6709d4b7bc2e079241fdef15d1160581c5261c10": "v6.5-rc1", @@ -1527,25 +1948,34 @@ "67a2e213e7e937c41c52ab5bc46bf3f4de469f6e": "v4.3-rc7", "67b0503db9c29b04eadfeede6bebbfe5ddad94ef": "v4.11-rc4", "67b67e365f07d6dc70f3bb266af3268bac0a4836": "v2.6.37-rc1", + "67b8bcbaed4777871bb0dcc888fb02a614a98ab1": "v6.8-rc4", "67d7d8ad99beccd9fe92d585b87f1760dc9018e3": "v6.0-rc1", "67de956ff5dc1d4f321e16cfbd63f5be3b691b43": "v3.5-rc6", "67f0d6d9883c13174669f88adac4f0ee656cc16a": "v5.14-rc3", "67f1aee6f45059fd6b0f5b0ecb2c97ad0451f6b3": "v4.5-rc1", + "67f29896fdc83298eed5a6576ff8f9873f709228": "v5.13-rc3", "67f93df79aeefc3add4e4b31a752600f834236e2": "v4.16-rc7", "68035c80e129c4cfec659aac4180354530b26527": "v5.6-rc1", "680d04e0ba7e926233e3b9cee59125ce181f66ba": "v3.9-rc7", + "680ec0549a055eb464dce6ffb4bfb736ef87236e": "v5.13-rc4", + "6815f479ca90ee7fd2e28b2a420f796b974155fe": "v5.8-rc1", "6817ae225cd650fb1c3295d769298c38b1eba818": "v3.17-rc3", "681c1615f8914451cfd432ad30e2f307b6490542": "v5.14-rc1", "681fef8380eb818c0b845fca5d2ab1dcbab114ee": "v4.7-rc1", "6829e274a623187c24f7cfc0e3d35f25d087fcc5": "v4.1-rc2", + "682dc133f83e0194796e6ea72eb642df1c03dfbe": "v6.8-rc7", + "683313993dbe1651c7aa00bb42a041d70e914925": "v5.13-rc1", "683412ccf61294d727ead4a73d97397396e69a6b": "v5.18-rc4", "6845667146a28c09b5dfc401c1ad112374087944": "v5.17-rc1", "68501df92d116b760777a2cfda314789f926476f": "v5.4-rc2", "6859d49475d4f32abe640372117e4b687906e6b6": "v2.6.25-rc1", + "687125b5799cd5120437fa455cfccbe8537916ff": "v6.3-rc1", "687cb0884a714ff484d038e9190edc874edcf146": "v4.15-rc2", "688078e7f36c293dae25b338ddc9e0a2790f6e06": "v5.5-rc1", "6884c6c4bd09fb35b79a3967d15821cdfcbe77a3": "v5.0-rc1", + "68866e425be2ef2664aa5c691bb3ab789736acf5": "v3.0-rc4", "688e8128b7a92df982709a4137ea4588d16f24aa": "v5.12-rc2", + "68957303f44a501af5cf37913208a2acaa6bcdf1": "v3.16-rc1", "68a81291ff6650f3ff409ebfc58ef97dfe85a2e4": "v3.8-rc1", "68ab61084de3220e2fb0a698c890ba91decddc85": "v3.19-rc1", "68c0bdff7ac903421f224e080499c51cd5287f97": "v2.6.33-rc1", @@ -1558,6 +1988,7 @@ "6934da9238da947628be83635e365df41064b09b": "v4.4-rc1", "69664cf16af4f31cd54d77948a4baf9c7e0ca7b9": "v2.6.26-rc1", "696e1a48b1a1b01edad542a1ef293665864a4dd0": "v6.2-rc5", + "69842cba9ace84849bb9b8edcdf2cefccd97901c": "v5.3-rc1", "6994eefb0053799d2e07cd140df6c2ea106c41ee": "v5.2", "69ae4f6aac1578575126319d3f55550e7e440449": "v5.2-rc6", "69c433ed2ecd2d3264efd7afec4439524b319121": "v3.18-rc2", @@ -1572,14 +2003,18 @@ "6a53b7593233ab9e4f96873ebacc0f653a55c3e1": "v4.15-rc6", "6a7228d90d42bcacfe38786756ba62762b91c20a": "v4.17-rc3", "6a76f8c0ab19f215af2a3442870eeb5f0e81998d": "v3.9-rc7", + "6a98d71daea186247005099758af549e6afdd244": "v5.8-rc1", "6ab55ec0a938c7f943a4edba3d6514f775983887": "v6.0-rc4", + "6ac07883dbb5f60f7bc56a13b7a84a382aa9c1ab": "v6.7-rc1", "6ac93117ab009d3901ed5d3d0f79056eb5fc0afd": "v4.11-rc1", "6acb47d1a318e5b3b7115354ebc4ea060c59d3a1": "v4.20-rc1", "6ae746711263bd6da45f709fdb9f12e4f57e22bd": "v4.19-rc1", "6aeb75e6adfaed16e58780309613a578fe1ee90b": "v4.12-rc2", + "6af289746a636f71f4c0535a9801774118486c7a": "v6.6-rc3", "6af3aa57a0984e061f61308fe181a9a12359fecc": "v5.4-rc4", "6b06314c47e141031be043539900d80d2c7ba10f": "v5.1-rc1", "6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a": "v5.17-rc8", + "6b1ba3f9040be5efc4396d86c9752cdc564730be": "v6.8-rc7", "6b1e6cc7855b09a0a9bfa1d9f30172ba366f161c": "v4.8-rc1", "6b4a64bafd107e521c01eec3453ce94a3fb38529": "v6.8-rc1", "6b4afdd794783fe515b50838aa36591e3feea990": "v3.15-rc1", @@ -1594,7 +2029,10 @@ "6b8d9117ccb4f81b1244aafa7bc70ef8fa45fc49": "v3.19-rc7", "6b9ad1c742bf227b1005a41d8baa315b747e3e8d": "v4.13-rc1", "6bb69c9b69c315200ddc2bc79aee14c0184cf5b2": "v4.6-rc1", + "6bba4471f0cc1296fe3c2089b9e52442d3074b2e": "v5.13-rc5", "6bc235a2e24a5ef677daee3fd4f74f6cd643e23c": "v2.6.37-rc1", + "6bd97bf273bdb4944904e57480f6545bca48ad77": "v5.11-rc1", + "6be388f4a35d2ce5ef7dbf635a8964a5da7f799f": "v5.13-rc5", "6bf92d70e690b7ff12b24f4bfff5e5434d019b82": "v5.18-rc2", "6bf9e4bd6a277840d3fe8c5d5d530a1fbd3db592": "v5.2-rc1", "6c21e066f9256ea1df6f88768f6ae1080b7cf509": "v6.5-rc4", @@ -1605,6 +2043,7 @@ "6c4841c2b6c32a134f9f36e5e08857138cc12b10": "v2.6.19-rc3", "6c493f8b28c6744995e92801a20dca192635dd22": "v3.5-rc1", "6c4e976785011dfbe461821d0bfc58cfd60eac56": "v4.12-rc1", + "6c52fdc244b5ccc468006fd65a504d4ee33743c7": "v5.3-rc1", "6c5aa6fc4defc2a0977a2c59e4710d50fa1e834c": "v5.9-rc1", "6c85501f2fabcfc4fc6ed976543d252c4eaf4be9": "v4.14-rc3", "6c8991f41546c3c472503dff1ea9daaddf9331c2": "v5.5-rc1", @@ -1612,6 +2051,7 @@ "6cc03e8aa36c51f3b26a0d21a3c4ce2809c842ac": "v5.4-rc1", "6cd1ed50efd88261298577cd92a14f2768eddeeb": "v5.6-rc3", "6cd88243c7e03845a450795e134b488fc2afb736": "v5.19-rc2", + "6cdedc18ba7b9dacc36466e27e3267d201948c8d": "v6.8-rc5", "6ce59025f1182125e75c8d121daf44056b65dd1f": "v5.1-rc2", "6cf97230cd5f36b7665099083272595c55d72be7": "v5.3-rc1", "6cffd79504ce040f460831030d3069fa1c99bb71": "v5.1-rc1", @@ -1622,38 +2062,50 @@ "6d19628f539fccf899298ff02ee4c73e4bf6df3f": "v5.13-rc1", "6d1c0f3d28f98ea2736128ed3e46821496dc3a8c": "v5.14-rc1", "6d2e21dc4db3933db65293552ecc1ede26febeca": "v6.2-rc1", + "6d2f8909a5fabb73fe2a63918117943986c39b6c": "v5.13-rc1", "6d390e4b5d48ec03bb87e63cf0a2bff5f4e116da": "v5.6-rc5", "6d4472d7bec39917b54e4e80245784ea5d60ce49": "v5.3-rc4", "6d5c9e79b726cc473d40e9cb60976dbe8e669624": "v6.2-rc1", + "6d5f26f2e045f2377b524516194657c00efbbce8": "v5.2-rc1", "6d67b0290b4b84c477e6a2fc6e005e174d3c7786": "v5.6-rc3", + "6d72e7c767acbbdd44ebc7d89c6690b405b32b57": "v5.13-rc1", "6d816e088c359866f9867057e04f244c608c42fe": "v5.9-rc1", "6d8c50dcb029872b298eea68cc6209c866fd3e14": "v4.18-rc1", "6daca13d2e72bedaaacfc08f873114c9307d5aea": "v4.19-rc1", "6db7199407ca56f55bc0832fb124e1ad216ea57b": "v3.1-rc1", "6dcd5d7a7a29c1e4b8016a06aed78cd650cd8c27": "v5.5-rc1", "6dee930f6f6776d1e5a7edf542c6863b47d9f078": "v5.18-rc1", + "6df0e6c57dfc064af330071f372f11aa8c584997": "v5.12-rc8", + "6df7f764cd3cf5a03a4a47b23be47e57e41fcd85": "v6.4-rc4", "6e1acfa387b9ff82cfc7db8cc3b6959221a95851": "v5.18-rc1", + "6e2276203ac9ff10fc76917ec9813c660f627369": "v6.8-rc3", "6e2f90d31fe09f2b852de25125ca875aabd81367": "v6.8-rc5", "6e41e2257f1094acc37618bf6c856115374c6922": "v5.3-rc1", "6e601a53566d84e1ffd25e7b6fe0b6894ffd79c0": "v3.9-rc1", "6e6fddc78323533be570873abb728b7e0ba7e024": "v4.18-rc6", + "6e728f321393b1fce9e1c2c3e55f9f7c15991321": "v5.8-rc1", "6e8280b958c5d7edc514cf347a800b23b7732b2b": "v6.2-rc1", "6e8ab72a812396996035a37e5ca4b3b99b5d214b": "v4.18-rc4", "6e977eaa8280e957b87904b536661550f2a6b3e8": "v5.18-rc1", + "6ea38e2aeb72349cad50e38899b0ba6fbcb2af3d": "v6.8-rc6", "6ea8d958a2c95a1d514015d4e29ba21a8c0a1a91": "v4.15-rc2", "6eaf41e87a223ae6f8e7a28d6e78384ad7e407f8": "v6.5-rc3", "6ec82562ffc6f297d0de36d65776cff8e5704867": "v2.6.34", "6ee50c8e262a0f0693dad264c3c99e30e6442a56": "v5.10-rc7", + "6ef5d5b92f7117b324efaac72b3db27ae8bb3082": "v6.8-rc5", "6f092343855a71e03b8d209815d8c45bf3a27fcd": "v3.13-rc1", "6f23ee1fefdc1f80bd8a3ab04a1c41ab2dec14c9": "v2.6.21-rc1", "6f24f892871acc47b40dd594c63606a17c714f77": "v3.4-rc6", + "6f3d791f300618caf82a2be0c27456edd76d5164": "v4.14-rc1", "6f3ef5c25cc762687a7341c18cbea5af54461407": "v5.4-rc6", "6f442be2fb22be02cafa606f1769fa1e6f894441": "v3.18-rc6", "6f489a966fbeb0da63d45c2c66a8957eab604bf6": "v6.5-rc1", "6f49f46b187df34539f1e5df2469b8a541897700": "v3.7-rc1", "6f64f866aa1ae6975c95d805ed51d7e9433a0016": "v6.8-rc1", + "6f76a01173ccaa363739f913394d4e138d92d718": "v5.12-rc1-dontuse", "6f78193ee9ea5575180d4462f0f7273a22dd5057": "v4.4-rc1", "6f7b0a2a5c0fb03be7c25bd1745baa50582348ef": "v3.6-rc2", + "6f82b25587354ce7c9c42e0b53d8b0770b900847": "v5.9-rc1", "6fb05e0dd32e566facb96ea61a48c7488daa5ac3": "v4.13-rc1", "6fb392b1a63ae36c31f62bc3fc8630b49d602b62": "v3.13-rc1", "6fcca0fa48118e6d63733eb4644c6cd880c15b8f": "v5.6-rc2", @@ -1668,12 +2120,18 @@ "705318a99a138c29a512a72c3e0043b3cd7f55f4": "v6.7-rc5", "7053aee26a3548ebaba046ae2e52396ccf56ac6c": "v3.14-rc1", "705c7091262d02b09eb686c24491de61bf42fdb2": "v4.14-rc1", + "7073934f5d73f8b53308963cee36f0d389ea857c": "v6.8-rc1", "70789d7052239992824628db8133de08dc78e593": "v2.6.36-rc4", + "7081929ab2572920e94d70be3d332e5c9f97095a": "v6.8-rc2", "70834d3070c3f3015ab5c05176d54bd4a0100546": "v3.4-rc1", "70aacfe66136809d7f080f89c492c278298719f4": "v5.12-rc2", + "70ca3c57ff914113f681e657634f7fbfa68e1ad1": "v5.13-rc4", "70cd94e60c733e3afc18b0e6aab789c13b5571da": "v4.16-rc1", "70f3aac964ae2bc9a0a1d5d65a62e258591ade18": "v4.12-rc1", + "70fac8088cfad9f3b379c9082832b4d7532c16c2": "v5.13-rc1", "70feee0e1ef331b22cc51f383d532a0d043fbdcc": "v4.12-rc4", + "7104ba0f1958adb250319e68a15eff89ec4fd36d": "v6.8-rc3", + "710c69dbaccdac312e32931abcb8499c1525d397": "v6.8-rc3", "71105998845fb012937332fe2e806d443c09e026": "v4.14-rc5", "71171ac8eb34ce7fe6b3267dce27c313ab3cb3ac": "v5.17-rc8", "711bdde6a884354ddae8da2fcb495b2a9364cc90": "v4.2-rc1", @@ -1709,9 +2167,12 @@ "72dba584b695d8bc8c1a50ed54ad4cba7c62314d": "v2.6.23-rc1", "72dc1c096c7051a48ab1dbb12f71976656b55eb5": "v2.6.27-rc1", "7315dc1e122c85ffdfc8defffbb8f8b616c2eb1a": "v6.7", + "731ab1f9828800df871c5a7ab9ffe965317d3f15": "v6.8-rc4", "73223e4e2e3867ebf033a5a8eb2e5df0158ccc99": "v4.13-rc6", "732d41c545bb359cbb8c94698bdc1f8bcf82279c": "v5.10-rc1", + "734551df6f9bedfbefcd113ede665945e9de0b99": "v5.13-rc1", "734942cc4ea6478eed125af258da1bdbb4afe578": "v4.13-rc1", + "73578af92a0fae6609b955fcc9113e50e413c80f": "v5.13-rc3", "736bb9577407d3556d81c3c3cd57581cd3ae10ea": "v4.0-rc1", "737223fbca3b1c91feb947c7f571b35749b743b6": "v3.10-rc1", "739790605705ddcf18f21782b9c99ad7d53a8c11": "v6.2-rc5", @@ -1721,9 +2182,12 @@ "73e487fdb75f8abf230968dbf73a3dc3b16808d3": "v2.6.18-rc1", "73f156a6e8c1074ac6327e0abd1169e95eb66463": "v3.16-rc1", "73fa0d10d077d9521ee2dace2307ae2c9a965336": "v3.6-rc1", + "7400b063969bdca4a06cd97f1294d765c8eecbe1": "v5.7-rc1", "742ab6df974ae8384a2dd213db1a3a06cf6d8936": "v5.19-rc7", + "74310e06be4d74dcf67cd108366710dee5c576d5": "v4.14-rc1", "7433b6d2afd512d04398c73aa984d1e285be125b": "v6.6-rc3", "744692dc059845b2a3022119871846e74d4f6e11": "v2.6.34-rc1", + "744e1885922a9943458954cfea917b31064b4131": "v6.8-rc1", "74675a58507e769beee7d949dbed788af3c4139d": "v2.6.31-rc1", "7490b008d123f9bd781f51ad86b543aed49f6200": "v4.2-rc1", "749494b6bdbbaf0899aa1c62a1ad74cd747bce47": "v4.11-rc1", @@ -1731,23 +2195,34 @@ "74e19ef0ff8061ef55957c3abd71614ef0f42f47": "v6.3-rc1", "74e7e1efdad45580cc3839f2a155174cf158f9b5": "v6.1", "74e98eb085889b0d2d4908f59f6e00026063014f": "v4.3-rc1", + "74ecdda68242b174920fe7c6133a856fb7d8559b": "v6.8-rc1", "74f75a0cb7033918eb0fa4a50df25091ac75c16e": "v2.6.37-rc1", + "7529b90d051e4629884771ba2b1d3a87d2c6a9d7": "v5.2-rc1", "75333d48f92256a0dec91dbf07835e804fc411c0": "v6.2-rc1", "7549ae3e81cc45908cbeee54a52b24f247fb0a2d": "v2.6.32-rc1", "756d17ee7ee4fbc8238bdf97100af63e6ac441ef": "v2.6.33-rc1", "7574fcdbdcb335763b6b322f6928dc0fd5730451": "v5.12-rc7", + "757cc3e9ff1d72d014096399d6e2bf03974d9da1": "v5.6-rc1", "7588dbcebcbf0193ab5b76987396d0254270b04a": "v6.5-rc6", "759c01142a5d0f364a462346168a56de28a80f52": "v4.5-rc1", + "75a2f31520095600f650597c0ac41f48b5ba0068": "v5.16-rc7", "75a493e60ac4bbe2e977e7129d6d8cbb0dd236be": "v3.11-rc1", + "75a5221630fe5aa3fedba7a06be618db0f79ba1e": "v6.6-rc5", + "75ad80ed88a182ab2ad5513e448cf07b403af5c3": "v6.6-rc3", "75b0cea7bf307f362057cc778efe89af4c615354": "v5.8-rc3", "75e5b4849b81e19e9efe1654b30d7f3151c33c2c": "v5.17-rc4", "75ff39ccc1bd5d3c455b6822ab09e533c551f758": "v4.7", + "7601df8031fd67310af891897ef6cc0df4209305": "v6.8-rc4", + "761da2935d6e18d178582dbdf315a3a458555505": "v4.1-rc1", "7625ee981af166ddb569e2e6c0006e2af471326f": "v4.13-rc1", "7644b1a1c9a7ae8ab99175989bfc8676055edb46": "v6.6", "764f4eb6846f5475f1244767d24d25dd86528a4a": "v5.18-rc1", + "7663d522099ecc464512164e660bc771b2ff7b64": "v6.6-rc7", + "767e97e1e0db0d0f3152cd2f3bd3403596aedbad": "v2.6.37-rc1", "768d612f79822d30a1e7d132a4d4b05337ce42ec": "v6.6-rc1", "7690aa1cdf7c4565ad6b013b324c28b685505e24": "v5.8-rc1", "7694a7de22c53a312ea98960fcafc6ec62046531": "v5.16", + "769b01ea68b6c49dc3cde6adf7e53927dacbd3a8": "v5.13-rc4", "76ca8da989c7d97a7f76c75d475fe95a584439d7": "v6.3-rc1", "76cc404bfdc0d419c720de4daaf2584542734f42": "v4.4-rc8", "76d56d4ab4f2a9e4f085c7d77172194ddaccf7d2": "v4.19-rc1", @@ -1760,6 +2235,7 @@ "772439717dbf703b39990be58d8d4e3e4ad0598a": "v4.17-rc7", "77245f1c3c6495521f6a3af082696ee2f8ce3921": "v6.5-rc6", "77260807d1170a8cf35dbb06e07461a655f67eee": "v4.18-rc4", + "7733f6c32e36ff9d7adadf40001039bf219b1cbe": "v5.4-rc1", "77377064c3a94911339f13ce113b3abf265e06da": "v5.10-rc1", "775c5033a0d164622d9d10dd0f0a5531639ed3ed": "v5.12-rc4", "776617db78c6d208780e7c69d4d68d1fa82913de": "v6.4-rc1", @@ -1780,19 +2256,27 @@ "7814b6ec6d0d63444abdb49554166c8cfcbd063e": "v4.3-rc1", "781fca5b104693bc9242199cc47c690dcaf6a4cb": "v4.19-rc1", "78214e81a1bf43740ce89bb5efda78eac2f8ef83": "v3.12-rc2", + "782b3e86ea970e899f8e723db9f64708a15ca30e": "v5.13-rc1", + "783807436f363e5b1ad4d43ba7debbedfcadbb99": "v5.5-rc1", + "7839d0078e0d5e6cc2fa0b0dfbee71de74f1e557": "v6.8-rc1", "786de92b3cb26012d3d0f00ee37adf14527f35c4": "v4.14-rc4", "7892032cfe67f4bde6fc2ee967e45a8fbaf33756": "v4.10-rc8", + "78996eee79ebdfe8b6f0e54cb6dcc792d5129291": "v6.8-rc1", "78a861b9495920f8609dee5b670dacbff09d359f": "v6.0-rc1", + "78aafb3884f6bc6636efcc1760c891c8500b9922": "v6.8-rc1", "78beef629fd95be4ed853b2d37b832f766bd96ca": "v5.4-rc1", "78c9c4dfbf8c04883941445a195276bb4bb92c76": "v4.19-rc1", "78d60dae9a0c9f09aa3d6477c94047df2fe6f7b0": "v6.8-rc1", + "78fbb92af27d0982634116c7a31065f24d092826": "v6.8-rc1", "791f3465c4afde02d7f16cf7424ca87070b69396": "v5.17-rc1", "792039c73cf176c8e39a6e8beef2c94ff46522ed": "v3.6-rc3", + "792595bab4925aa06532a14dd256db523eb4fa5e": "v6.8-rc5", "7926aff5c57b577ab0f43364ff0c59d968f6a414": "v4.10-rc8", "7932c0bd7740f4cd2aa168d3ce0199e7af7d72d5": "v4.2-rc5", "7937609cd387246aed994e81aa4fa951358fba41": "v6.6-rc7", "7938d61591d33394a21bdd7797a245b65428f44c": "v5.17-rc2", "79462ad02e861803b3840cc782248c7359451cd9": "v4.4-rc6", + "794aaf01444d4e765e2b067cba01cc69c1c68ed9": "v5.13-rc1", "794b4bc292f5d31739d89c0202c54e7dc9bc3add": "v4.12-rc5", "79549c6dfda0603dba9a70a53467ce62d9335c33": "v3.4-rc3", "7966f319c66d9468623c6a6a017ecbc0dd79be75": "v6.7-rc1", @@ -1802,22 +2286,28 @@ "7992c18810e568b95c869b227137a2215702a805": "v4.19-rc1", "79c9ce57eb2d5f1497546a3946b4ae21b6fdc438": "v4.6-rc6", "79d5b4c3cd809c770d4bf9812635647016c56011": "v3.6-rc1", + "79d72c68c58784a3e1cd2378669d51bfd0cb7498": "v6.8-rc4", "79dc7e3f1cd323be4c81aa1a94faa1b3ed987fb2": "v4.9-rc8", "79e1ad148c844f5c8b9d76b36b26e3886dca95ae": "v4.15-rc1", "79e48650320e6fba48369fccf13fd045315b19b8": "v4.6", + "79ebe9110fa458d58f1fceb078e2068d7ad37390": "v5.13-rc2", "7a0a48ddf63bc9944b9690c6fa043ea4305f7f79": "v4.15-rc1", + "7a2464fac80d42f6f8819fed97a553e9c2f43310": "v6.8-rc1", "7a2af766af15887754f7f7a0869b4603b390876a": "v4.14-rc1", "7a3e97b0dc4bbac2ba7803564ab0057722689921": "v3.4-rc1", "7a3ef208e662f4b63d43a23f61a64a129c525bbc": "v3.19-rc4", "7a62ed61367b8fd01bae1e18e30602c25060d824": "v6.1-rc1", + "7a6b1ab7475fd6478eeaf5c9d1163e7a18125c8f": "v5.13-rc7", "7a7b5df84b6b4e5d599c7289526eed96541a0654": "v4.10-rc7", "7a9cdebdcc17e426fb5287e4a82db1dfe86339b2": "v4.19-rc4", + "7ad65bf68d705b445ef10b77ab50dab22be185ee": "v3.3-rc1", "7ada876a8703f23befbb20a7465a702ee39b1704": "v2.6.37-rc1", "7aed44babc7f97e82b38e9a68515e699692cc100": "v6.6-rc5", "7af4cc3fa158ff1dda6e7451c7e6afa6b0bb85cb": "v2.6.14-rc1", "7b07f8eb75aa3097cdfd4f6eac3da49db787381d": "v3.6-rc3", "7b08cf62b1239a4322427d677ea9363f0ab677c6": "v5.14-rc1", "7b09c2d052db4b4ad0b27b97918b46a7746966fa": "v5.4-rc1", + "7b0b1a6d0ac983ce1928432285d0222d4fb7c38b": "v4.16-rc1", "7b0e827c6970e8ca77c60ae87592204c39e41245": "v4.18-rc1", "7b26e4e2119d0c5ede1282b22ce2af22835ff4b5": "v4.20-rc1", "7b2a64c96ad53c4299f7e6ddf8c2f99cb48940a9": "v2.6.39-rc1", @@ -1835,11 +2325,16 @@ "7bdb157cdebbf95a1cd94ed2e01b338714075d00": "v5.10-rc3", "7be3248f313930ff3d3436d4e9ddbe9fccc1f541": "v5.16-rc1", "7be74942f184fdfba34ddd19a0d995deb34d4a03": "v5.9-rc5", + "7be85676f1d13c77a7e0c72e04903bfd39580d4f": "v4.14-rc1", + "7bed6f3d08b7af27b7015da8dc3acf2b9c1f21d7": "v6.8-rc1", "7c00ffa314bf0fb0e23858bbebad33b48b6abbb9": "v2.6.13-rc1", "7c03e2cda4a584cadc398e8f6641ca9988a39d52": "v5.11-rc1", "7c051267931a9be9c6620cc17b362bc6ee6dedc8": "v4.7-rc1", + "7c0ea5930c1c211931819d83cfb157bff1539a4c": "v5.13-rc1", + "7c18d2205ea76eef9674e59e1ecae4f332a53e9e": "v3.3-rc1", "7c319d328505b7781b65238ae9f53293b5ee0ca8": "v3.6-rc1", "7c38a551bda1b7adea7e98e5c6786f5bee7100b8": "v5.18-rc1", + "7c4650ded49e5b88929ecbbb631efb8b0838e811": "v6.8-rc3", "7c4a5b89a0b5a57a64b601775b296abf77a9fe97": "v6.3-rc1", "7c657876b63cb1d8a2ec06f8fc6c37bb8412e66c": "v2.6.14-rc1", "7c693f54c873691a4b7da05c7e0f74e67745d144": "v5.19-rc7", @@ -1847,11 +2342,13 @@ "7c80f9e4a588f1925b07134bb2e3689335f6c6d8": "v4.14-rc5", "7c94e1c157a227837b04f02f5edeff8301410ba2": "v3.18-rc1", "7c9524d929648935bac2bbb4c20437df8f9c3f42": "v6.1-rc4", + "7c9631969287a5366bc8e39cd5abff154b35fb80": "v6.9-rc2", "7c9bc0983f890ed9782e755a0e070930cd979333": "v4.15-rc1", "7c9cbd0b5e38a1672fcd137894ace3b042dfbf69": "v5.1-rc1", "7caac62ed598a196d6ddf8d9c121e12e082cac3a": "v5.3", "7cc765a67d8e04ef7d772425ca5a2a1e2b894c15": "v4.20-rc5", "7cccf0725cf7402514e09c52b089430005798b7f": "v4.18-rc1", + "7cfc4ea78fc103ea51ecbacd9236abb5b1c490d2": "v5.13-rc4", "7d0a06586b2686ba80c4a2da5f91cb10ffbea736": "v5.3-rc7", "7d11f77f84b27cef452cee332f4e469503084737": "v4.15-rc8", "7d267278a9ece963d77eefec61630223fce08c6c": "v4.4-rc4", @@ -1859,6 +2356,7 @@ "7d3baf0afa3aa9102d6a521a8e4c41888bb79882": "v5.16-rc6", "7d3e91a89b7adbc2831334def9e494dd9892f9af": "v3.8-rc1", "7d5145d8eb2b9791533ffe4dc003b129b9696c48": "v3.8-rc7", + "7d5cb45655f2e9e37ef75d18f50c0072ef14a38b": "v4.15-rc1", "7d67af2c013402537385dae343a2d0f6a4cb3bfd": "v5.7-rc1", "7d7402642eaf385aef0772eff5a35e34fc4995d7": "v4.1-rc1", "7d928a2b14eede1f333db7b7b684c57f7fa7f456": "v2.6.19-rc1", @@ -1866,28 +2364,38 @@ "7da413a18583baaf35dd4a8eb414fa410367d7f2": "v5.5-rc1", "7dac4a1726a9c64a517d595c40e95e2d0d135f6f": "v4.17-rc1", "7dc40713618c884bf07c030d1ab1f47a9dc1f310": "v5.2-rc1", + "7dcf3c04f0aca746517a77433b33d40868ca4749": "v5.13-rc1", "7de249964f5578e67b99699c5f0b405738d820a2": "v4.8-rc2", "7df3e59c3d1df4f87fe874c7956ef7a3d2f4d5fb": "v4.9-rc3", "7e01e7ad746b": "v4.2-rc1", "7e0438f83dc769465ee663bb5dcf8cc154940712": "v5.18-rc1", "7e09f7d5c790278ab98e5f2c22307ebe8ad6e8ba": "v4.14-rc1", "7e24969022cbd61ddc586f14824fc205661bb124": "v5.9-rc4", + "7e51891a237f9ea319f53f9beb83afb0077d88e6": "v5.8-rc1", "7e5d7753956b374516530e156c5e8aa19652398d": "v3.19-rc1", "7e62a699aafbd97928f19a8356d719b71b0e151c": "v4.10-rc1", "7e6bc1f6cabcd30aba0b11219d8e01b952eacbb6": "v5.19-rc6", "7e70cb4978507cf31d76b90e4cfb4c28cad87f0c": "v2.6.38-rc1", + "7e82a8745b951b1e794cc780d46f3fbee5e93447": "v6.8-rc3", "7e84e1c7566a1df470a9e1f49d3db2ce311261a4": "v5.10-rc1", "7e97cfed9929eaabc41829c395eb0d1350fccb9d": "v6.0-rc1", "7ec02f5ac8a5be5a3f20611731243dc5e1d9ba10": "v5.17-rc4", "7ed9abfe8e9f62384f9b11c9fca19e551dbec5bd": "v5.11-rc1", + "7ed9d238c7dbb1fdb63ad96a6184985151b0171c": "v5.13-rc2", + "7ee29facd8a9c5a26079148e36bcf07141b3a6bc": "v6.6-rc4", "7f14c7227f342d9932f9b918893c8814f86d2a0d": "v5.17-rc6", + "7f3d03c48b1eb6bc45ab20ca98b8b11be25f9f52": "v6.8-rc4", "7f3dc0088b98533f17128058fac73cd8b2752ef1": "v4.15-rc6", + "7f42ec3941560f0902fe3671e36f2c20ffd3af0a": "v3.12-rc4", + "7f4a8592ff29f19c5a2ca549d0973821319afaad": "v5.13-rc1", "7f582b248d0a86bae5788c548d7bb5bca6f7691a": "v4.17-rc7", "7f5c6d4f665bb57a19a34ce1fb16cc708c04f219": "v3.0-rc1", + "7f5d86669fa4d485523ddb1d212e0a2d90bd62bb": "v5.13-rc5", "7f7ccc2ccc2e70c6054685f5e3522efa81556830": "v4.17-rc6", "7f821fc9c77a9b01fe7b1d6e72717b33d8d64142": "v4.4-rc3", "7f84ff68be05ec7a5d2acf8fdc734fe5897af48f": "v5.2-rc1", "7f98639def42a676998d734b381af6c0e64d7791": "v2.6.35-rc1", + "7fa32329ca03148fb2c07b4ef3247b8fc0488d6a": "v4.5-rc1", "7fafcfdf6377b18b2a726ea554d6e593ba44349f": "v4.17-rc1", "7fb57a019f94ea0c1290c39b8da753be155af41c": "v3.3-rc1", "7fc3b7c2981bbd1047916ade327beccb90994eee": "v5.17-rc2", @@ -1900,6 +2408,8 @@ "801c135ce73d5df1caf3eca35b66a10824ae0707": "v2.6.22-rc1", "801ebf1043ae7b182588554cc9b9ad3c14bc2ab5": "v5.3-rc1", "8033426e6bdb2690d302872ac1e1fadaec1a5581": "v3.12-rc1", + "8035b1a2a37a29d8c717ef84fca8fe7278bc9f03": "v5.16-rc7", + "8059918a1377f2f1fff06af4f5a4ed3d5acd6bc4": "v6.8-rc3", "80765597bc587feae8dbc8ce97a0f32e12a6e625": "v4.17-rc1", "80c802f3073e84c956846e921e8a0b02dfa3755f": "v2.6.35-rc1", "80c9abaabf4283f7cf4a0b3597cd302506635b7f": "v2.6.21-rc1", @@ -1911,10 +2421,12 @@ "8148a73c9901a8794a50f950083c00ccf97d43b3": "v4.6-rc7", "814fb7bb7db5433757d76f4c4502c96fc53b0b5e": "v4.14-rc3", "815f0ddb346c196018d4d8f8f55c12b83da1de3f": "v4.19-rc1", + "81732c3b2fede049a692e58a7ceabb6d18ffb18c": "v3.7-rc1", "8176cced706b5e5d15887584150764894e94e02f": "v3.9-rc8", "817b8b9c5396d2b2d92311b46719aad5d3339dbe": "v5.17-rc5", "8188a18ee2e48c9a7461139838048363bfce3fef": "v5.4-rc4", "819b23f1c501b17b9694325471789e6b5cc2d0d2": "v4.18-rc4", + "81a4362016e7d8b17031fe1aa43cdb58a7f0f163": "v5.12-rc1-dontuse", "81a6a5cdd2c5cd70874b88afe524ab09e9e869af": "v2.6.24-rc1", "81b74ac68c28fddb3589ad5d4d5e587baf4bb781": "v5.1-rc2", "81cdb259fb6d8c1c4ecfeea389ff5a73c07f5755": "v4.9-rc7", @@ -1924,6 +2436,7 @@ "8205d5d98ef7f155de211f5e2eb6ca03d95a5a60": "v5.3-rc8", "820d070feb668aab5bc9413c285a1dda2a70e076": "v6.7-rc4", "820f9f147dcce2602eefd9b575bbbd9ea14f0953": "v4.1-rc1", + "821bbf79fe46a8b1d18aa456e8ed0a3c208c3754": "v5.13-rc5", "82262a46627bebb0febcc26664746c25cef08563": "v3.16-rc2", "824d4f64c20093275f72fc8101394d75ff6a249e": "v6.0-rc1", "82727018b0d33d188e9916bcf76f18387484cb04": "v3.13-rc1", @@ -1933,31 +2446,42 @@ "82e61c3909db51d91b9d3e2071557b6435018b80": "v5.10-rc2", "82ed4db499b8598f16f8871261bff088d6b0597f": "v4.11-rc1", "82f2341c94d270421f383641b7cd670e474db56b": "v4.11-rc2", + "83026d83186bc48bb41ee4872f339b83f31dfc55": "v5.13-rc4", "8310b77b48c5558c140e7a57a702e7819e62f04e": "v5.12-rc2", "8310ca94075e784bbb06593cd6c068ee6b6e4ca6": "v5.18-rc1", "8310d48b125d19fcd9521d83b8293e63eb1646aa": "v4.10-rc6", + "832698373a25950942c04a512daa652c18a9b513": "v6.8-rc3", "832d11c5cd076abc0aa1eaf7be96c81d1a59ce41": "v2.6.29-rc1", + "832dd634bd1b4e3bbe9f10b9c9ba5db6f6f2b97f": "v6.8-rc1", + "83374e035b6286731c5aa617844c7b724294c2a7": "v5.2-rc1", "833b45de69a6016c4b0cebe6765d526a31a81580": "v5.4-rc2", "834328a8493079d15f30866ace42489463f52571": "v3.7-rc3", "834e772c8db0c6a275d75315d90aba4ebbb1e249": "v4.20-rc6", "8358b02bf67d3a5d8a825070e1aa73f25fb2e4c7": "v4.6-rc6", + "83728cbf366e334301091d5b808add468ab46b27": "v5.13-rc1", "837830a4b439bfeb86c70b0115c280377c84714b": "v5.9-rc1", "837f08fdecbe4b2ffc7725624342e73b886665a8": "v4.17-rc1", "83912d6d55be10d65b5268d1871168b9ebe1ec4b": "v5.16-rc7", + "8392df5d7e0b6a7d21440da1fc259f9938f4dec3": "v5.13-rc1", "839db3d10a5ba792d6533b8bb3380f52ac877344": "v3.8-rc1", + "83a775d5f9bfda95b1c295f95a3a041a40c7f321": "v5.13-rc2", + "83b09a1807415608b387c7bc748d329fefc5617e": "v5.13-rc1", "83c6f2390040f188cc25b270b4befeb5628c1aee": "v5.7-rc3", + "83cb2604f641cecadc275ca18adbba4bf262320f": "v6.5-rc1", "83eaddab4378db256d00d295bda6ca997cd13a52": "v4.12-rc2", "83f1b4ba917db5dc5a061a44b3403ddb6e783494": "v3.9-rc8", "83f40318dab00e3298a1f6d0b12ac025e84e478d": "v3.5-rc1", "8404663f81d212918ff85f493649a7991209fa04": "v3.6-rc6", "8409cca7056113bee3236cb6a8e4d8d4d1eef102": "v2.6.39-rc1", "8423f0b6d513b259fdab9c9bf4aaa6188d054c2d": "v6.0-rc5", + "8432b8114957235f42e070a16118a7f750de9d39": "v5.13-rc1", "844817e47eef14141cf59b8d5ac08dd11c0a9189": "v3.17-rc3", "844f104790bd69c2e4dbb9ee3eba46fde1fcea7b": "v6.8-rc1", "84823ff80f7403752b59e00bb198724100dc611c": "v5.6-rc4", "848440544b41fbe21f36072ee7dc7c3c59ce62e2": "v4.14-rc1", "849151dd5481bc8acb1d287a299b5d6a4ca9f1c3": "v3.17-rc4", "8494057ab5e40df590ef6ef7d66324d3ae33356b": "v4.0-rc7", + "84a24bf8c52e66b7ac89ada5e3cfbe72d65c1896": "v5.12", "84a53580c5d2138c7361c7c3eea5b31827e63b35": "v6.0-rc5", "84ac7260236a49c79eede91617700174c2c19b0c": "v4.9-rc8", "84c4e1f89fefe70554da0ab33be72c9be7994379": "v5.1-rc1", @@ -1967,24 +2491,32 @@ "84ecc2f6eb1cb12e6d44818f94fa49b50f06e6ac": "v5.3-rc1", "84fee97a026ca085f08381054513f9e24689a303": "v2.6.38-rc1", "850bb6f23b93c04ce1e4509a87fa607dc17d97c1": "v2.6.36-rc1", + "850fb7fa8c684a4c6bf0e4b6978f4ddcc5d43d11": "v6.8-rc1", "8520f38099ccfdac2147a0852f84ee7a8ee5e197": "v2.6.28-rc1", "852b6d57dc7fa378019786fa84727036e56839ea": "v3.10-rc1", "853acf7caf10b828102d92d05b5c101666a6142b": "v5.4-rc1", "853bc26a7ea39e354b9f8889ae7ad1492ffa28d2": "v4.15-rc1", "853eab68afc80f59f36bbdeb715e5c88c501e680": "v5.8-rc6", + "854b7737199848a91f6adfa0a03cf6f0c46c86e8": "v5.13-rc1", "854e8bb1aa06c578c2c9145fa6bfe3680ef63b23": "v3.18-rc2", "855b7717f44b13e0990aa5ad36bbf9aa35051516": "v6.2-rc1", "8572cea1461a006bce1d06c0c4b0575869125fa4": "v5.4-rc1", "857a26222ff75eecf7d701ef0e91e4fbf6efa663": "v4.19-rc1", + "857b46027d6f91150797295752581b7155b9d0e1": "v5.3-rc1", + "859051dd165ec6cc915f0f2114699021144fd249": "v6.7-rc1", "8590541473188741055d27b955db0777569438e3": "v6.8-rc5", "85ac30fa2e24f628e9f4f9344460f4015d33fd7d": "v5.4-rc6", "85cb73ff9b74785a7fc752875d7f0fe17ca3ea7c": "v4.12", "85dfb745ee40232876663ae206cba35f24ab2a40": "v3.9-rc6", + "85dfd816fabfc16e71786eda0a33a7046688b5b0": "v5.13-rc1", "85e4ea1049c70fb99de5c6057e835d151fb647da": "v5.19-rc6", + "85e985a4f46e462a37f1875cb74ed380e7c0c2e0": "v6.8-rc5", "85f02d6c856b9f3a0acf5219de6e32f58b9778eb": "v6.0-rc2", "85f1bd9a7b5a79d5baa8bf44af19658f7bf77bfa": "v4.13-rc5", + "8609f5cfdc872fc3a462efa6a3eca5cb1e2f6446": "v5.13-rc1", "8610c7c6e3bd647ff98d21c8bc0580e77bc2f8b3": "v5.7-rc1", "864745d291b5ba80ea0bd0edcbe67273de368836": "v3.6-rc7", + "8648aeb5d7b70e13264ff5f444f22081d37d4670": "v6.5-rc1", "864e5c090749448e879e86bec06ee396aa2c19c5": "v4.20-rc1", "86741ec25462": "v4.10-rc1", "86741ec25462e4c8cdce6df2f41ead05568c7d5e": "v4.10-rc1", @@ -1996,6 +2528,7 @@ "86f44fcec22ce2979507742bc53db8400e454f46": "v6.0-rc1", "8700af2cc18c919b2a83e74e0479038fd113c15d": "v5.17-rc6", "8700e3e7c4857d28ebaa824509934556da0b3e76": "v4.8-rc1", + "870565f063a58576e8a4529f122cac4325c6b395": "v6.8-rc1", "870aaff92e959e29d40f9cfdb5ed06ba2fc2dae0": "v5.17-rc1", "871997bc9e423f05c7da7c9178e62dde5df2a7f8": "v5.12-rc1", "872844ddb9e44a49b759ae3e34250fefbab656f2": "v3.8-rc1", @@ -2004,8 +2537,12 @@ "876673364161da50eed6b472d746ef88242b2368": "v6.8-rc1", "876f123b8956b455a89a172b905f9ecbb6fc5b67": "v5.7-rc1", "87797fad6cce28ec9be3c13f031776ff4f104cfc": "v6.6-rc6", + "878dabb64117406abd40977b87544d05bb3031fc": "v5.8-rc1", + "87a270625a89fc841f1a7e21aae6176543d8385c": "v5.16-rc7", + "87a39071e0b639f45e05d296cc0538eef44ec0bd": "v6.8-rc7", "87b5a5c209405cb6b57424cdfa226a6dbd349232": "v6.5-rc3", "87c8331fcf72e501c3a3c0cdc5c9391ec72f7cf2": "v3.4-rc1", + "87d315a34133edcb29c4cadbf196ec6c30dfd47b": "v6.6-rc6", "87fec0514f613f8ac43c01b0bc0bc7072c5d10ae": "v3.13-rc1", "880a3a5325489a143269a8e172e7563ebf9897bc": "v4.17-rc1", "8821f5dc187bdf16cfb32ef5aa8c3035273fa79a": "v3.12-rc2", @@ -2019,11 +2556,17 @@ "886e44c9298a6b428ae046e2fa092ca52e822e6a": "v5.17", "8877243beafa7c6bfc42022cbfdf9e39b25bd4fa": "v6.8-rc1", "887bfc546097fbe8071dac13b2fef73b77920899": "v6.2-rc1", + "8892780834ae294bc3697c7d0e056d7743900b39": "v6.8-rc1", + "889b7da23abf92faf34491df95733bda63639e32": "v5.15-rc1", "88af8bbe4ef781031ad3370847553f3b42ba0076": "v3.10-rc1", + "88c380df84fbd03f9b137c2b9d0a44b9f2f553b0": "v5.13-rc4", + "88f04bc3e737155e13caddf0ba8ed19db87f0212": "v6.8-rc1", "8913336a7e8d56e984109a3137d6c0e3362596a4": "v2.6.27-rc1", "8914a595110a6eca69a5e275b323f5d09e18f4f9": "v4.16-rc1", + "893ce44df56580fb878ca5af9c4a5fd87567da50": "v5.3-rc1", "893e26e61d04eac974ded0c11e1647b335c8cb7b": "v4.11-rc1", "895a5e96dbd6386c8e78e5b78e067dcc67b7f0ab": "v5.1-rc1", + "8961987f3f5fa2f2618e72304d013c8dd5e604a6": "v5.16-rc1", "8974eb588283b7d44a7c91fa09fcbaf380339f3a": "v6.5-rc6", "89c22d8c3b278212eef6a8cc66b570bc840a6f5a": "v4.2-rc4", "89c2b3b74918200e46699338d7bcc19b1ea12110": "v5.15-rc1", @@ -2031,8 +2574,11 @@ "89c8a4984fc98e625517bfe5083342d77ee35811": "v4.13-rc1", "89d7ae34cdda4195809a5a987f697a517a2a3177": "v3.5", "89e1f7d4c66d85f42c3d52ea3866eb10cadf6153": "v3.6-rc1", + "89e3becd8f821e507052e012d2559dcda59f538e": "v5.11", + "89e590535f32d4bc548bcf266f3b046e50942f6d": "v4.18-rc1", "89eaefb61dc9170237d95b844dd357338fc7225d": "v3.4-rc1", "89f3594d0de58e8a57d92d497dea9fee3d4b9cda": "v5.17-rc1", + "8a12f8836145ffe37e9c8733dce18c22fb668b66": "v5.12-rc7", "8a2b307c21d4b290e3cbe33f768f194286d07c23": "v4.18-rc1", "8a34b0ae8778f6b42ed38857486b769a224e2536": "v3.10-rc1", "8a4c3926889e7bf226e9f0254e7eface1f85f312": "v4.8-rc1", @@ -2040,72 +2586,103 @@ "8a5e5e02fc83aaf67053ab53b359af08c6c49aaf": "v4.3-rc1", "8a6e231766bdd2e1d228a14af89e36dc190be3a6": "v3.7-rc1", "8aa9ebccae87621d997707e4f25e53fddd7e30e4": "v5.2-rc1", + "8ab31da7b89f71c4c2defcca989fab7b42f87d71": "v5.13-rc1", "8abee9566b7e8eecf566c4daf6be062a27369890": "v5.8-rc1", "8ad2850f44831919f63f0e58d7203e65d5b3914c": "v3.16-rc1", + "8ae5b3a685dc59a8cf7ccfe0e850999ba9727a3c": "v6.6-rc2", + "8af411bbba1f457c33734795f024d0ef26d0963f": "v6.8-rc7", "8afa13a0583f94c14607e3041c02f068ac8fb628": "v5.17-rc1", "8b01fc86b9f425899f8a3a8fc1c47d73c2c20543": "v4.1-rc1", + "8b13601d19c541158a6e18b278c00ba69ae37829": "v6.8-rc1", "8b13eddfdf04cbfa561725cfc42d6868fe896f56": "v3.19-rc1", + "8b1d72395635af45410b66cc4c4ab37a12c4a831": "v6.8-rc3", "8b51dc7291473093c821195c4b6af85fadedbc2f": "v5.3", "8b74d439e1697110c5e5c600643e823eb1dd0762": "v4.10", + "8b79feffeca28c5459458fe78676b081e87c93a4": "v5.13-rc2", "8b8a321ff72c785ed5e8b4cf6eda20b35d427390": "v4.4", "8b8addf891de8a00e4d39fc32f93f7c5eb8feceb": "v4.6-rc1", + "8ba438ef3cacc4808a63ed0ce24d4f0942cfe55d": "v6.6-rc5", "8ba8682107ee2ca3347354e018865d8e1967c5f4": "v4.7-rc7", "8bdb3a2d7df48b861972c4bfb58490853a228f51": "v2.6.24-rc1", "8c209e6782ca0e3046803fc04a5ac01c8c10437a": "v2.6.30-rc1", "8c21c54a53ab21842f5050fa090f26b03c0313d6": "v6.0-rc1", + "8c313e3bfd9adae8d5c4ba1cc696dcbc86fbf9bf": "v5.16-rc8", "8c55dedb795be8ec0cf488f98c03a1c2176f7fb1": "v5.4-rc6", + "8c657a0590de585b1115847c17b34a58025f2f4b": "v5.12-rc1-dontuse", "8c6de56a42e0c657955e12b882a81ef07d1d073e": "v5.6-rc1", "8c710f75256bb3cf05ac7b1672c82b92c43f3d28": "v6.3-rc1", "8c7188b23474cca017b3ef354c4a58456f68303a": "v4.4-rc4", "8c75d585b931ac874fbe4ee5a8f1811d20c2817f": "v5.16-rc1", + "8ca151b568b67a7b72dcfc6ee6ea7c107ddd795c": "v3.9-rc1", "8ca86f1639ec5890d400fff9211aca22d0a392eb": "v4.16-rc3", "8cae8cd89f05f6de223d63e6d15e31c8ba9cf53b": "v5.14-rc3", "8cb861e9e3c9a55099ad3d08e1a3b653d29c33ca": "v5.19-rc3", + "8cc07265b69141f8ed9597d0f27185239c241c80": "v6.5-rc1", + "8cc365f9559b86802afc0208389f5c8d46b4ad61": "v5.13-rc2", "8cdb5240ec5928b20490a2bb34cb87e9a5f40226": "v4.18-rc4", "8ce39eb5a67aee25d9f05b40b673c95b23502e3e": "v5.4-rc1", + "8ce8c0abcba314e1fe954a1840f6568bf5aef2ef": "v5.5-rc1", "8d0207652cbe27d1f962050737848e5ad4671958": "v3.16-rc1", "8d037973d48c026224ab285e6a06985ccac6f7bf": "v6.3-rc1", "8d0c2d10dd72c5292eda7a06231056a4c972e4cc": "v3.9-rc3", "8d1e72250c847fa96498ec029891de4dc638a5ba": "v3.12", "8d2451f4994fa60a57617282bab91b98266a00b1": "v5.1-rc1", + "8d432592f30fcc34ef5a10aac4887b4897884493": "v5.13-rc1", "8d4a2ec1e0b41b0cf9a0c5cd4511da7f8e4f3de2": "v4.6-rc4", "8d62fdebdaf9b866c7e236a8f5cfe90e6dba5773": "v2.6.22-rc7", "8d7f6690cedb83456edd41c9bd583783f0703bf0": "v3.14-rc3", "8d86e373b0ef52d091ced9583ffbb33ad2771576": "v5.11-rc1", + "8d975c15c0cd744000ca386247432d57b21f9df0": "v6.8-rc3", "8daaa83145ef1f0a146680618328dbbd0fa76939": "v3.1-rc1", "8dd014adfea6f173c1ef6378f7e5e7924866c923": "v2.6.36-rc1", + "8dd1c125f7f838abad009b64bff5f0a11afe3cb6": "v5.13-rc1", + "8dedcc3eee3aceb37832176f0a1b03d5687acda3": "v5.11-rc1", "8dfbcc4351a0b6d2f2d77f367552f48ffefafe18": "v4.6-rc1", "8e1278444446fc97778a5e5c99bca1ce0bbc5ec9": "v5.19-rc2", "8e20cf2bce122ce9262d6034ee5d5b76fbb92f96": "v4.4-rc6", "8e2d61e0aed2b7c4ecb35844fe07e0b2b762dee4": "v4.3-rc3", "8e3fbf870481eb53b2d3a322d1fc395ad8b367ed": "v3.13-rc7", + "8e46a2d068c92a905d01cbb018b00d66991585ab": "v6.8-rc4", "8e4b5eae5decd9dfe5a4ee369c22028f90ab4c44": "v4.17-rc1", + "8e50d392652f20616a136165dff516b86baf5e49": "v5.11-rc1", + "8e57c06bf4b0f51a4d6958e15e1a99c9520d00fa": "v6.8-rc1", "8e591cb7204739efa8e15967ea334eb367039dde": "v3.10-rc1", + "8e6fafd5a22e7a2eb216f5510db7aab54cc545c1": "v5.13-rc1", "8e75f7a7a00461ef6d91797a60b606367f6e344d": "v4.14-rc1", + "8e947c8f4a5620df77e43c9c75310dc510250166": "v5.13-rc1", "8e96a87c5431c256feb65bcfc5aec92d9f7839b6": "v4.7-rc6", "8e9faa15469ed7c7467423db4c62aeed3ff4cae3": "v4.10-rc7", + "8eed4e00a370b37b4e5985ed983dccedd555ea9d": "v6.8-rc4", "8ef874bfc7296fa206eea2ad1e8a426f576bf6f6": "v3.3-rc1", "8f014550dfb114cc7f42a517d20d2cf887a0b771": "v5.12-rc1-dontuse", + "8f02139ad9a7e6e5c05712f8c1501eebed8eacfd": "v6.6-rc5", "8f0541186e9ad1b62accc9519cc2b7a7240272a7": "v6.0-rc1", "8f34f1eac3820fc2722e5159acceb22545b30b0d": "v5.14-rc1", "8f363b77ee4fbf7c3bbcf5ec2c5ca482d396d664": "v3.7-rc4", "8f3fafc9c2f0ece10832c25f7ffcb07c97a32ad4": "v4.19-rc2", "8f44c9a41386729fea410e688959ddaa9d51be7c": "v4.13-rc1", + "8f50020ed9b81ba909ce9573f9d05263cdebf502": "v3.6-rc1", "8f5624629105589bcc23d0e51cc01bd8103d09a5": "v4.14", "8f659a03a0ba9289b9aeb9b4470e6fb263d6f483": "v4.15-rc4", + "8f73b37cf3fbda67ea1e579c3b5785da4e7aa2e3": "v5.18-rc1", "8f840e47f190cbe61a96945c13e9551048d42cef": "v4.7-rc1", "8f89926290c4": "v5.16-rc1", + "8f905c0e7354ef261360fb7535ea079b1082c105": "v5.16-rc7", + "8f9abaa6d7de0a70fc68acaedce290c1f96e2e59": "v6.8-rc1", "8f9c469348487844328e162db57112f7d347c49f": "v5.0-rc3", "8fb5debc5fcd450470cdd789c2d80ef95ebb8cf4": "v4.11-rc1", "8fc134fee27f2263988ae38920bc03da416b03d8": "v6.6-rc1", "8feb69c7bd89513be80eb19198d48f154b254021": "v4.13-rc1", "8ff590903d5fc7f5a0a988c38267a3d08e6393a2": "v2.6.38-rc1", "8fff105e13041e49b82f92eef034f363a6b1c071": "v4.1-rc1", + "901f84de0e16bde10a72d7eb2f2eb73fcde8fa1a": "v5.13-rc2", "90563b198e4c6674c63672fae1923da467215f45": "v3.9-rc5", "9056d6489f5a41cfbb67f719d2c0ce61ead72d9f": "v5.17-rc1", "9060cb719e61b685ec0102574e10337fa5f445ea": "v5.0-rc8", + "90ba37033cb94207e97c4ced9be575770438213b": "v4.10-rc1", "90bfdeef83f1d6c696039b6a917190dcbbad3220": "v5.10-rc3", "90cbed5247439a966b645b34eb0a2e037836ea8e": "v6.4-rc2", + "90cd7e424969d29aff653333b4dcb4e2e199d791": "v5.11-rc1", "90db10434b163e46da413d34db8d0e77404cc645": "v4.11-rc5", "90e33d45940793def6f773b2d528e9f3c84ffdc7": "v4.15-rc1", "90e5b3462efa37b8bba82d7c4e63683856e188af": "v6.5-rc7", @@ -2119,16 +2696,23 @@ "91291e9998d208370eb8156c760691b873bd7522": "v4.19-rc1", "9137bb27e60e554dab694eafa4cca241fa3a694f": "v4.20-rc5", "91398b413d03660fd5828f7b4abc64e884b98069": "v6.6-rc6", + "913b9d443a0180cf0de3548f1ab3149378998486": "v6.8-rc3", + "915d7e5e5930b4f01d0971d93b9b25ed17d221aa": "v4.10-rc1", "916a27901de01446bcf57ecca4783f6cff493309": "v4.15-rc4", "916e4cf46d0204806c062c8c6c4d1f633852c5b6": "v3.14-rc6", "9174adbee4a9a49d0139f5d71969852b36720809": "v3.8-rc5", "918698d5c2b50433714d2042f55b55b090faa167": "v5.10-rc1", + "918fc3855a6507a200e9cf22c20be852c0982687": "v5.16-rc8", "919f4ebc598701670e80e31573a58f1f2d2bf918": "v5.12-rc2", "91b0abe36a7b2b3b02d7500925a5f8455334f0e5": "v3.15-rc1", + "91df99a6eb50d5a1bc70fff4a09a0b7ae6aab96d": "v5.13-rc3", "91f79c43d1b54d7154b118860d81b39bad07dfff": "v3.16-rc1", "92117d8443bc5afacc8d5ba82e541946310f106e": "v4.6-rc7", "921ca574cd382142add8b12d0a7117f495510de5": "v5.11-rc1", + "92214be5979c0961a471b7eaaaeacab41bdf456c": "v6.7-rc2", + "9227da7816dd1a42e20d41e2244cb63c205477ca": "v6.6-rc1", "9263412501022fecef844907129ee2513b5a89de": "v2.6.39-rc1", + "9289cdf399922a1bd801a8cd946a79581c00a380": "v5.10-rc1", "929473ea05db455ad88cdc081f2adc556b8dc48f": "v3.8-rc4", "92964c79b357efd980812c4de5c1fd2ec8bb5520": "v4.7-rc1", "92d34134193e5b129dc24f8d79cb9196626e8d7a": "v4.18-rc2", @@ -2137,33 +2721,44 @@ "92ee3c60ec9fe64404dc035e7c41277d74aa26cb": "v5.18-rc1", "92f28d973cce45ef5823209aab3138eb45d8b349": "v3.9-rc5", "92fbb6d1296f81f41f65effd7f5f8c0f74943d15": "v6.3-rc4", + "9319b647902cbd5cc884ac08a8a6d54ce111fc78": "v6.8-rc3", + "93222bd9b966105f43418fd336654ad10045783a": "v4.15-rc1", "9330986c03006ab1d33d243b7cfe598a7a3c1baa": "v5.16-rc1", "93340e10b9c5fc86730d149636e0aa8b47bb5a34": "v6.3-rc1", "93362fa47fe98b62e4a34ab408c4a418432e7939": "v4.10-rc4", "9344a972961d1a6d2c04d9008b13617bcb6ec2ef": "v3.6-rc3", "935d8aabd4331f47a89c3e1daa5779d23cf244ee": "v3.9-rc7", "9380afd6df70e24eacbdbde33afc6a3950965d22": "v5.12-rc3", + "938835aa903ae19ad62805134f79bbcf20fc3bea": "v5.9", "93995bf4af2c5a99e2a87f0cd5ce547d31eb7630": "v6.7-rc1", "9399f0c51489ae8c16d6559b82a452fdc1895e91": "v4.0-rc1", "93a2001bdfd5376c3dc2158653034c20392d15c5": "v4.7-rc5", + "93ab6cc69162775201587cc9da00d5016dc890e2": "v4.18-rc1", "93c303d2045b30572d8d5e74d3ad80692acfebbe": "v4.18-rc1", "93c647643b48f0131f02e45da3bd367d80443291": "v4.15-rc4", "93c660ca40b5d2f7c1b1626e955a8e9fa30e0749": "v6.2-rc1", "93e2be344a7db169b7119de21ac1bf253b8c6907": "v6.1-rc1", + "93ec4a3b76404bce01bd5c9032bef5df6feb1d62": "v6.8-rc1", "94034c40ab4a3fcf581fbc7f8fdf4e29943c4a24": "v5.13-rc4", "942080643bce061c3dd9d5718d3b745dcb39a8bc": "v3.19-rc1", "9426bbc6de99b8649d897b94e8f5916b58195643": "v4.17-rc1", "9446edb9a1740989cf6c20daf7510fb9a23be14a": "v3.12-rc2", "944c01a889d97dc08e1b71f4ed868f4023fd6034": "v5.2-rc1", + "944d5fe50f3f03daacfea16300e656a1691c4a23": "v6.8-rc6", + "944d671d5faa0d78980a3da5c0f04960ef1ad893": "v5.13-rc5", "9453264ef58638ce8976121ac44c07a3ef375983": "v5.6-rc1", + "9453d45ecb6c2199d72e73c993e9d98677a2801b": "v5.13-rc4", "946e51f2bf37f1656916eb75bd0742ba33983c28": "v3.19-rc1", + "9480adfe4e0f0319b9da04b44e4eebd5ad07e0cd": "v6.8-rc4", "949dd0104c496fa7c14991a23c03c62e44637e71": "v5.10-rc4", + "94ad94558b0fbf18dd6fb0987540af1693157556": "v5.5-rc1", "94f1bb15bed84ad6c893916b7e7b9db6f1d7eec6": "v4.2-rc1", "94f9cd81436c85d8c3a318ba92e236ede73752fc": "v4.4-rc1", "950336ba3e4a1ffd2ca60d29f6ef386dd2c7351d": "v4.6-rc1", "951b6a0717db97ce420547222647bcc40bf1eacd": "v4.2-rc1", "952fc18ef9ec707ebdc16c0786ec360295e5ff15": "v3.6-rc1", "95389b08d93d5c06ec63ab49bd732b0069b7c35e": "v3.17-rc5", + "9549332df4ed4e761a1d41c83f2c25d28bb22431": "v5.17-rc1", "9561a7ade0c205bc2ee035a2ac880478dcc1a024": "v4.10-rc1", "956421fbb74c3a6261903f3836c0740187cf038b": "v4.0-rc3", "9566d6742852c527bf5af38af5cbb878dad75705": "v3.17-rc1", @@ -2171,6 +2766,8 @@ "958bee14d0718ca7a5002c0f48a099d1d345812a": "v3.16-rc1", "958cf2e273f0": "v6.2-rc1", "9590232bb4f4cc824f3425a6e1349afbe6d6d2b7": "v4.6-rc1", + "959043afe53ae80633e810416cee6076da6e91c6": "v6.8-rc7", + "95a404bd60af6c4d9d8db01ad14fe8957ece31ca": "v6.6-rc2", "95a762e2c8c942780948091f8f2a4f32fce1ac6f": "v4.15-rc5", "95baa60a0da80a0143e3ddd4d3725758b4513825": "v5.2-rc3", "95d78c28b5a85bacbc29b8dba7c04babb9b0d467": "v4.14-rc5", @@ -2179,27 +2776,36 @@ "95ee62083cb6453e056562d91f597552021e6ae7": "v3.12-rc2", "9601148392520e2e134936e76788fc2a6371e7be": "v5.12-rc8", "96051572c819194c37a8367624b285be10297eca": "v3.6-rc1", + "962ac2dce56bb3aad1f82a4bbe3ada57a020287c": "v6.8-rc5", "963030817060e4f109be1993b9ae8f81dbf5e11a": "v2.6.31-rc5", "96398560f26aa07e8f2969d73c8197e6a6d10407": "v6.2-rc4", "96442e42429e5f268ab97a3586c7694a3acc55a7": "v3.8-rc1", "96518518cc417bb0a8c80b9fb736202e28acdf96": "v3.13-rc1", "965a7d72e798eb7af0aa67210e37cf7ecd1c9cad": "v5.13-rc4", "966031f340185eddd05affcf72b740549f056348": "v4.15-rc6", + "9671761792156f2339627918bafcd713a8a6f777": "v6.8-rc6", "9674da8759df0d6c0d24e1ede6e2a1acdef91e3c": "v3.11-rc1", "967c9cca2cc50569efc65945325c173cecba83bd": "v4.12-rc1", + "9695b7de5b4760ed22132aca919570c0190cb0ce": "v5.16-rc7", "969d1b180d987c2be02de890d0fff0f66a0e80de": "v4.14-rc1", "96aa1b22bd6bb9fccf62f6261f390ed6f3e7967f": "v5.8-rc1", "96b340406724d87e4621284ebac5e059d67b2194": "v3.12-rc7", "96b3d28bf4b00f62fc8386ff5d487d1830793a3d": "v3.14-rc7", "96c5c6e6a5b6db592acae039fed54b5c8844cd35": "v5.4-rc1", "96ca579a1ecc943b75beba58bebb0356f6cc4b51": "v4.14-rc5", + "96fadf7e8ff49fdb74754801228942b67c3eeebd": "v5.13-rc1", "9705acd63b125dee8b15c705216d7186daea4625": "v4.2-rc2", "9709674e68646cee5a24e3000b3558d25412203a": "v3.16-rc1", "97113eb39fa7972722ff490b947d8af023e1f6a2": "v5.14-rc1", "9720b4bc76a83807c68e00c62bfba575251bb73e": "v2.6.39-rc1", "973c096f6a85e5b5f2a295126ba6928d9a6afd45": "v5.9-rc6", + "97566d09fd02d2ab329774bb89a2cdf2267e86d9": "v6.8-rc1", "9764c02fcbad40001fd3f63558d918e4d519bb75": "v4.14-rc2", + "97684f0970f6e112926de631fdd98d9693c7e5c1": "v5.12-rc8", + "9772b47a4c2916d645c551228b6085ea24acbe5d": "v4.6-rc5", "97774672573ac4355bd12cf84b202555c1131b69": "v2.6.39-rc1", + "977ad86c2a1bcaf58f01ab98df5cc145083c489c": "v6.6-rc1", + "97830f3c3088638ff90b20dfba2eb4d487bf14d7": "v6.8-rc3", "979a6e28dd969a2222545001f79566b4bfaf06c0": "v5.15-rc1", "979d63d50c0c0f7bc537bf821e056cc9fe5abd38": "v5.0-rc1", "979e0d74651ba5aa533277f2a6423d0f982fb6f6": "v3.14-rc6", @@ -2212,20 +2818,28 @@ "9824dfae5741275473a23a7ed5756c7b6efacc9d": "v4.19-rc5", "983d8e60f50806f90534cc5373d0ce867e5aaf79": "v5.16", "9842df62004f366b9fed2423e24df10542ee0dc5": "v4.7-rc1", + "9845664b9ee47ce7ee7ea93caf47d39a9d4552c4": "v6.8-rc7", "9850cf4a8908886370b1f15aacf83d291f098c72": "v3.18-rc1", + "9862ec7ac1cbc6eb5ee4a045b5d5b8edbb2f7e68": "v6.8-rc1", + "98b5ef3e97b16eaeeedb936f8bda3594ff84a70e": "v5.13-rc1", "98bea253aa28ad8be2ce565a9ca21beb4a9419e5": "v6.4-rc1", "98da7d08850fb8bdeb395d6368ed15753304aa0c": "v4.12-rc7", "98e4da8ca301e062d79ae168c67e56f3c3de3ce4": "v3.8-rc1", "9903e41ae1f5d50c93f268ca3304d4d7c64b9311": "v4.16-rc7", "99253eb750fda6a644d5188fb26c43bad8d5a745": "v4.11-rc1", + "992a60ed0d5e312ce9a485c9e12097ac82ae4b3e": "v5.8-rc1", "9933e113c2e87a9f46a40fde8dafbf801dca1ab9": "v4.12-rc3", + "993bf0f4c393b3667830918f9247438a8f6fdb5b": "v6.8-rc3", "994b78327458ea14a1743196ee0560c73ace37f3": "v4.3-rc1", "9955ac47f4ba1c95ecb6092aeaefb40a22e99268": "v3.10-rc4", "99665d07218345647875fea9ad4979bbe297c104": "v4.12-rc1", + "9972d5d84d76982606806b2ce887f70c2f8ba60a": "v5.10-rc4", "998912346c0da53a6dbb71fab3a138586b596b30": "v5.7-rc1", + "9996508b3353063f2d6c48c1a28a84543d72d70b": "v2.6.33-rc1", "999b874f4aa39b7abf45662ff0900f943ddb2d02": "v2.6.32-rc1", "99a63d36cb3ed5ca3aa6fcb64cffbeaf3b0fb164": "v5.19", "99a83db5a605137424e1efe29dc0573d6a5b6316": "v5.19-rc3", + "99ba0ea616aabdc8e26259fd722503e012199a76": "v5.13-rc1", "99c23da0eed4fd20cae8243f2b51e10e66aa0951": "v5.16-rc1", "99c6fa2511d8a683e61468be91b83f85452115fa": "v4.15-rc8", "99cb0dbd47a15d395bf3faa78dc122bc5efe3fc0": "v5.4-rc1", @@ -2239,6 +2853,7 @@ "9a59b62fd88196844cee5fff851bee2cfd7afb6e": "v4.5-rc1", "9a5cbce421a283e6aea3c4007f141735bf9da8c3": "v4.1-rc1", "9a7adcf5c6dea63d2e47e6f6d2f7a6c9f48b9337": "v3.0-rc1", + "9a9ab0d963621d9d12199df9817e66982582d5a5": "v6.8-rc1", "9aa422ad326634b76309e8ff342c246800621216": "v5.17-rc4", "9aacdd354d197ad64685941b36d28ea20ab88757": "v4.5-rc1", "9ab4233dd08036fe34a89c7dc6f47a8bf2eb29eb": "v3.5-rc6", @@ -2256,15 +2871,18 @@ "9b54d816e00425c3a517514e0d677bb3cec49258": "v4.11-rc1", "9b57da0630c9fd36ed7a20fc0f98dc82cc0777fa": "v4.9-rc8", "9b6e6a8334d56354853f9c255d1395c2ba570e0a": "v4.2-rc3", + "9b9c8195f3f0d74a826077fc1c01b9ee74907239": "v6.5-rc4", "9bac3d6d548e5cc925570b263f35b70a00a00ffd": "v4.1-rc1", "9bb5d40cd93c9dd4be74834b1dcb1ba03629716b": "v3.10-rc7", "9bbfceea12a8f145097a27d7c7267af25893c060": "v5.4-rc6", "9bc3047374d5bec163e83e743709e23753376f0c": "v6.5-rc5", "9bd8212f981ea6375911fe055382ad7529be5b28": "v4.1-rc1", + "9be6c21fdcf8a7ec48262bb76f78c17ac2761ac6": "v6.5-rc1", "9bf292bfca94694a721449e3fd752493856710f6": "v4.7-rc1", "9bf3d20331295b1ecb81f4ed9ef358c51699a050": "v5.16-rc1", "9bfe5ded054b8e28a94c78580f233d6879a00146": "v4.19-rc1", "9c0530e898f384c5d279bfcebd8bb17af1105873": "v5.4-rc3", + "9c1bb37f8cad5e2ee1933fa1da9a6baa7876a8e4": "v5.13-rc4", "9c33663af9ad115f90c076a1828129a3fbadea98": "v6.6-rc1", "9c5137aedd112f78a968bdd2325de2ea06df46c0": "v5.12-rc1-dontuse", "9c52057c698fb96f8f07e7a4bcf4801a092bda89": "v3.8-rc1", @@ -2273,16 +2891,25 @@ "9c6ba456711687b794dcf285856fc14e2c76074f": "v4.6-rc1", "9c6d778800b921bde3bff3cff5003d1650f942d1": "v6.0-rc4", "9c824b6a172c8d44a6b037946bae90127c969b1b": "v3.18-rc1", + "9c8c6bac1ae86f6902baa938101902fb3a0a100b": "v5.15-rc1", "9ca9fb24d5febccea354089c41f96a8ad0d853f8": "v6.0-rc1", + "9caccd41541a6f7d6279928d9f971f6642c361af": "v5.12-rc1-dontuse", "9cae36a094e7e9d6e5fe8b6dcd4642138b3eb0c7": "v5.19-rc1", "9cb636b5f6a8cc6d1b50809ec8f8d33ae0c84c95": "v6.0-rc5", + "9cb8e048e5d93825ec5e8dfb5b8df4987ea25745": "v5.7-rc1", "9cbee358687edf0359e29ac683ec25835134f059": "v3.5-rc1", "9cc02ede696272c5271a401e4f27c262359bc2f6": "v5.19-rc5", + "9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3c": "v5.13-rc1", "9d2231c5d74e13b2a0546fee6737ee4446017903": "v5.17-rc6", "9d47964bfd471f0dd4c89f28556aec68bffa0020": "v4.9-rc1", + "9d4c75800f61e5d75c1659ba201b6c0c7ead3070": "v6.6-rc5", + "9d5171eab462a63e2fbebfccf6026e92be018f20": "v5.12", "9d538fa60bad4f7b23193c89e843797a1cf71ef3": "v4.14-rc4", + "9d618d19b29c2943527e3a43da0a35aea91062fc": "v6.8-rc1", "9d71b54b65b1fb6c0d3a6c5c88ba9b915c783fbc": "v6.7-rc1", "9d71dd0c70099914fcd063135da3c580865e924c": "v5.4-rc1", + "9d739bccf261dd93ec1babf82f5c5d71dd4caa3e": "v6.8-rc7", + "9d7b18668956c411a422d04c712994c5fdb23a4b": "v4.20-rc1", "9d94c04c0db024922e886c9fd429659f22f48ea4": "v6.1-rc7", "9dc956b2c8523aed39d1e6508438be9fea28c8fc": "v4.19-rc1", "9dd78194a3722fa6712192cdd4f7032d45112a9a": "v5.17-rc8", @@ -2293,6 +2920,8 @@ "9e2dcf72023d1447f09c47d77c99b0c49659e5ce": "v2.6.34-rc1", "9e368259ad988356c4c95150fafd1a06af095d98": "v4.20-rc5", "9e3f7a29694049edd728e2400ab57ad7553e5aa9": "v4.9-rc6", + "9e46c70e829bddc24e04f963471e9983a11598b7": "v6.8-rc6", + "9e4bf6a08d1e127bcc4bd72557f2dfafc6bc7f41": "v6.8-rc1", "9e7fef9521e73ca8afd7da9e58c14654b02dfad8": "v5.18", "9e8910257397372633e74b333ef891f20c800ee4": "v3.12-rc1", "9ea0106a7a3d8116860712e3f17cd52ce99f6707": "v6.0-rc3", @@ -2301,29 +2930,39 @@ "9ea9b9c48387edc101d56349492ad9c0492ff78d": "v5.15-rc1", "9eac1904d3364254d622bf2c771c4f85cd435fc2": "v5.12-rc1-dontuse", "9eaf183af741e3d8393eb571ac8aec9ee7d6530e": "v5.8-rc1", + "9ec52099e4b8678a60e9f93e41ad87885d64f3e6": "v2.6.19-rc1", "9ec7671603573ede31207eb5b0b3e1aa211b2854": "v2.6.31-rc1", "9ef8d83e8e25d5f1811b3a38eb1484f85f64296c": "v6.4-rc1", "9efd23297cca530bb35e1848665805d3fcdd7889": "v6.0-rc5", "9f00b2e7cf241fa389733d41b615efdaa2cb0f5b": "v3.11-rc1", "9f0f3ebeda47a5518817f33c40f6d3ea9c0275b8": "v4.12-rc1", "9f1f1a2dab38d4ce87a13565cf4dc1b73bef3a5f": "v5.3-rc1", + "9f38f03ae8d5f57371b71aa6b4275765b65454fd": "v5.13-rc1", + "9f3ccdc3f6ef10084ceb3a47df0961bec6196fd0": "v5.16-rc8", "9f46c187e2e680ecd9de7983e4d081c3391acc76": "v5.18", "9f5af546e6acc30f075828cb58c7f09665033967": "v4.13-rc4", + "9f5e8eee5cfe1328660c71812d87c2a67bda389f": "v2.6.20-rc1", "9f645bcc566a1e9f921bdae7528a01ced5bc3713": "v4.18-rc1", "9f775ead5e570e7e19015b9e4e2f3dd6e71a5935": "v4.14-rc4", "9f79b78ef74436c7507bac6bfb7b8b989263bccb": "v5.4-rc2", "9f7d653b67aed2d92540fbb0a8adaf32fcf352ae": "v3.1-rc1", "9f7fec0ba89108b9385f1b9fb167861224912a4a": "v5.4-rc1", "9f834ec18defc369d73ccf9e87a2790bfa05bf46": "v4.8-rc5", + "9f85cbe50aa044a46f0a22fda323fa27b80c82da": "v5.10-rc1", + "9f86d624292c238203b3687cdb870a2cde1a6f9b": "v5.16-rc5", "9f909e215fea0652023b9ed09d3d7bfe10386423": "v5.8-rc1", "9fa2dd946743ae6f30dc4830da19147bf100a7f2": "v5.9-rc4", "9fa492cdc160cd27ce1046cb36f47d3b2b1efa21": "v2.6.19-rc1", "9fbfabfda25d8774c5a08634fdd2da000a924890": "v5.15-rc7", + "9fd1ff5d2ac7181844735806b0a703c942365291": "v5.6-rc1", "9fd75b66b8f68498454d685dc4ba13192ae069b0": "v5.18-rc1", "9ff05123e3bfbb1d2b68ba1d9bf1f7d1dffc1453": "v2.6.30-rc1", + "a00593737f8bac2c9e97b696e7ff84a4446653e8": "v5.13-rc4", "a00df2caffed3883c341d5685f830434312e4a43": "v5.15-rc1", + "a03675497970a93fcf25d81d9d92a59c2d7377a7": "v5.13-rc1", "a03ffcf873fe0f2565386ca8ef832144c42e67fa": "v3.2-rc7", "a06247c6804f1a7c86a2e5398a4c1f1db1471848": "v5.17-rc2", + "a0668cdc154e54bf0c85182e0535eea237d53146": "v2.6.33-rc1", "a07b4970f464f13640e28e16dad6cfa33647cc99": "v4.8-rc1", "a08d3b3b99efd509133946056531cdf8f3a0c09b": "v3.14-rc5", "a096ccca6e503a5c575717ff8a36ace27510ab0a": "v6.3-rc1", @@ -2340,30 +2979,42 @@ "a1078e821b605813b63bf6bca414a85f804d5c66": "v5.3-rc1", "a10feaf8c464c3f9cfdd3a8a7ce17e1c0d498da1": "v5.4-rc1", "a117dacde0288f3ec60b6e5bcedae8fa37ee0dfc": "v3.6-rc1", + "a11d965a218f0cd95b13fe44d0bcd8a20ce134a8": "v6.8-rc1", + "a11dd49dcb9376776193e15641f84fcc1e5980c9": "v6.8-rc7", + "a11ddb37bf367e6b5239b95ca759e5389bb46048": "v5.13-rc3", "a134f083e79fb4c3d0a925691e732c56911b4326": "v4.1-rc2", "a1480dcc3c706e309a88884723446f2e84fedd5b": "v3.18-rc1", "a1616a5ac99ede5d605047a9012481ce7ff18b16": "v5.2-rc1", "a1854fae1414dd8edfff4857fd26c3e355d43e19": "v4.17-rc1", "a19ceb56cbd1e1beff3e9cf6042e1f31f6487aa6": "v2.6.21-rc1", + "a1a4a9ca77f143c00fce69c1239887ff8b813bec": "v6.8-rc7", + "a1b0e4e684e9c300b9e759b46cb7a0147e61ddff": "v5.1-rc5", "a1b14d27ed0965838350f1377ff97c93ee383492": "v4.5-rc4", + "a1d1e0e3d80a870cc37a6c064994b89e963d2b58": "v5.18-rc1", "a21b7f0cff1906a93a0130b74713b15a0b36481d": "v5.3", + "a22b0a2be69a36511cb5b37d948b651ddf7debf3": "v6.8-rc5", "a23740ec43ba022dbfd139d0fe3eff193216272b": "v5.5-rc1", "a246b4d547708f33ff4d4b9a7a5dbac741dc89d8": "v5.7-rc1", "a24fa22ce22ae302b3bf8f7008896d52d5d57b8d": "v4.12-rc7", + "a269333fa5c0c8e53c92b5a28a6076a28cde3e83": "v5.13-rc4", "a26a35e9019fd70bf3cf647dcfdae87abc7bacea": "v6.1-rc7", "a27a94c2b0c727517c17cf2ca3a9f7291caadfbc": "v4.20-rc1", "a282a2f10539dce2aa619e71e1817570d557fc97": "v6.5-rc2", "a2855afc7ee88475e8feb16840b23f787bfc994d": "v5.12-rc1-dontuse", + "a289a7e5c1d49b7d47df9913c1cc81fb48fab613": "v5.13-rc4", "a28ebea2adc4a2bef5989a5a181ec238f59fbcad": "v4.8-rc2", "a295aef603e109a47af355477326bd41151765b6": "v5.15-rc5", "a2965c7be0522eaa18808684b7b82b248515511b": "v6.2-rc3", "a297d07b9a1e4fb8cda25a4a2363a507d294b7c9": "v6.8-rc1", + "a298232ee6b9a1d5d732aa497ff8be0d45b5bd82": "v5.13-rc2", "a2b9e6c1a35afcc0973acb72e591c714e78885ff": "v3.18-rc1", "a2c118bfab8bc6b8bb213abfc35201e441693d55": "v3.9-rc4", + "a2c5bedb2d55dd27c642c7b9fb6886d7ad7bdb58": "v5.13-rc1", "a2c60d42d97cdbeee3c7371cd3502fca77f07d39": "v3.12-rc1", "a2cdd07488e666aa93a49a3fc9c9b1299e27ef3c": "v5.5-rc1", "a2d859e3fc97e79d907761550dbc03ff1b36479c": "v5.15-rc6", "a2e2725541fad72416326798c2d7fa4dafb7d337": "v2.6.33-rc1", + "a2e73f56fa6282481927ec43aa9362c03c2e2104": "v4.2-rc1", "a2ec905d1e160a33b2e210e45ad30445ef26ce0e": "v5.8", "a2f18db0c68fec96631c10cad9384c196e9008ac": "v3.19-rc5", "a309c7194e8a2f8bd4539b9449917913f6c2cd50": "v6.2-rc4", @@ -2380,6 +3031,7 @@ "a399b29dfbaaaf91162b2dc5a5875dd51bbfa2a1": "v3.13-rc1", "a39ee449f96a2cd44ce056d8a0a112211a9b1a1f": "v3.14", "a3a8784454692dd72e5d5d34dcdab17b4420e74c": "v3.19-rc4", + "a3ba26ecfb569f4aa3f867e80c02aa65f20aadad": "v5.13-rc1", "a3c2c4f6d8bcd473a7016db93da4f10b3f10f25f": "v3.7-rc1", "a3c54931199565930d6d84f4c3456f6440aefd41": "v3.16-rc1", "a3e23f719f5c4a38ffb3d30c8d7632a4ed8ccd9e": "v5.1-rc3", @@ -2387,7 +3039,9 @@ "a4176ec356c73a46c07c181c6d04039fafa34a9f": "v5.1-rc1", "a42055e8d2c3": "v4.20-rc1", "a42055e8d2c30d4decfc13ce943d09c7b9dad221": "v4.20-rc1", + "a421d218603ffa822a0b8045055c03eae394a7eb": "v5.13-rc4", "a4270d6795b0580287453ea55974d948393e66ef": "v5.2-rc3", + "a42d985bd5b234da8b61347a78dc3057bf7bb94d": "v3.3-rc1", "a42dd7efd934888833c01199dbd21b242100ee92": "v2.6.32-rc1", "a430c9166312e1aa3d80bce32374233bdbfeba32": "v3.18-rc2", "a43bdc376deab5fff1ceb93dca55bcab8dbdc1d6": "v6.8-rc1", @@ -2407,23 +3061,31 @@ "a4f2473d39eb72915d37d65bdd8dd734c7ee4f8a": "v3.15-rc1", "a4ffc152198efba2ed9e6eac0eb97f17bfebce85": "v3.4-rc1", "a501ab75e7624d133a5a3c7ec010687c8b961d23": "v5.19-rc7", + "a506bd5756290821a4314f502b4bafc2afcf5260": "v5.13-rc1", "a50829479f58416a013a4ccca791336af3c584c7": "v4.14-rc7", "a50e233c50dbc881abaa0e4070789064e8d12d70": "v3.15-rc1", "a53046291020ec41e09181396c1e829287b48d47": "v5.18-rc1", "a53d1202aef122894b6e46116a92174a9123db5d": "v5.14-rc1", + "a54667f6728c": "v4.16-rc1", + "a54754ec9891830ba548e2010c889e3c8146e449": "v5.13-rc1", "a54988113985ca22e414e132054f234fc8a92604": "v5.3-rc1", "a54c4613dac1500b40e4ab55199f7c51f028e848": "v5.15-rc1", "a5598bd9c087dc0efc250a5221e5d0e6f584ee88": "v3.9-rc7", "a56587065094fd96eb4c2b5ad65571daad32156d": "v5.3-rc2", "a58d9166a756a0f4a6618e4f593232593d6df134": "v5.12-rc6", "a5bf3cfce8cb77d9d24613ab52d520896f83dd48": "v6.3-rc1", + "a5c57fd2e9bd1c8ea8613a8f94fd0be5eccbf321": "v6.8-rc6", "a5cc68f3d63306d0d288f31edfc2ae6ef8ecd887": "v3.10", "a5ec6ae161d72f01411169a938fa5f8baea16e8f": "v4.15-rc5", + "a5ef7d68cea1344cf524f04981c2b3f80bedbb0d": "v6.6-rc4", "a5f596830e27e15f7a0ecd6be55e433d776986d8": "v4.16-rc6", + "a6088845c2bf754d6cb2572b484180680b037804": "v4.18-rc1", "a60b890f607dc6d7806afc0dc8666577faf40bb4": "v4.14-rc1", "a612769774a30e4fc143c4cb6395c12573415660": "v4.7", "a6138db815df5ee542d848318e5dae681590fccd": "v3.17-rc1", "a61ea561c87139992fe32afdee48a6f6b85d824a": "v5.18-rc1", + "a6275e934605646ef81b02d8d1164f21343149c9": "v5.12-rc1-dontuse", + "a62a8ef9d97da23762a588592c8b8eb50a8deb6a": "v5.4-rc1", "a642fc305053cc1c6e47e4f4df327895747ab485": "v3.18-rc2", "a65120bae4b7425a39c5783aa3d4fc29677eef0e": "v5.2-rc1", "a657182a5c5150cdfacb6640aad1d2712571a409": "v6.0-rc4", @@ -2432,6 +3094,8 @@ "a6686f2f382b13f8a7253401a66690c3633b6a74": "v3.1-rc1", "a66f1efcf748febea7758c4c3c8b5bc5294949ef": "v6.2-rc5", "a67adb997419fb53540d4a4f79c6471c60bc69b6": "v3.8-rc5", + "a680b1832ced3b5fa7c93484248fd221ea0d614b": "v5.17", + "a6dcfe08487e5e83b6b4214c959a9577a9ed2d9f": "v5.11-rc1", "a6e544b0a88b53114bfa5a57e21b7be7a8dfc9d0": "v4.3-rc1", "a6ecfb39ba9d7316057cea823b196b734f6b18ca": "v5.14-rc3", "a70b52ec1aaeaf60f4739edb1b422827cb6f3893": "v3.5-rc1", @@ -2444,19 +3108,27 @@ "a7b2df76b42bdd026e3106cf2ba97db41345a177": "v5.5-rc1", "a7b75c5a8c41445f33efb663887ff5f5c3b4454b": "v5.9-rc1", "a7c41b4687f5902af70cd559806990930c8a307b": "v5.19-rc1", + "a7d42ddb3099727f58366fa006f850a219cce6c8": "v4.0-rc1", + "a7d6027790acea24446ddd6632d394096c0f4667": "v6.8-rc6", "a7ec7a4193a2eb3b5341243fc0b621c1ac9e4ec4": "v4.19-rc1", + "a80dfc025924024d2c61a4c1b8ef62b2fce76a04": "v5.16-rc7", "a8318c13e79badb92bc6640704a64cc022a6eb97": "v5.3-rc8", "a841178445bb72a3d566b4e6ab9d19e9b002eb47": "v4.2-rc1", "a846738f8c3788d846ed1f587270d2f2e3d32432": "v5.12-rc6", "a848c4f15ab6d5d405dbee7de5da71839b2bf35e": "v5.15-rc1", + "a85c5c7a3aa8041777ff691400b4046e56149fd3": "v5.13-rc1", "a86c61812637c7dd0c57e29880cffd477b62f2e7": "v2.6.19-rc2", "a87938b2e246b81b4fb713edb371a9fa3c5c3c86": "v4.1-rc1", + "a8867f4e3809050571c98de7a2d465aff5e4daf5": "v5.13-rc5", "a8b33654b1e3b0c74d4a1fed041c9aae50b3c427": "v3.12", "a8c4d76a8dd4fb9666fc8919a703d85fb8f44ed8": "v5.13-rc4", + "a8ca9fc9134c1a43e6d4db7ff59496bbd7075def": "v6.7-rc1", "a8f97366452ed491d13cf1e44241bc0b5740b1f0": "v4.15-rc2", "a8fe58cec351c25e09c393bf46117c0c47b5a17c": "v4.6-rc1", + "a949dc5f2c5cfe0c910b664650f45371254c0744": "v5.13-rc2", "a950b989ea29ab3b38ea7f6e3d2540700a3c54e8": "v6.2", "a963a37d384d71ad43b3e9e79d68d42fbe0901f3": "v3.10", + "a97709f563a078e259bf0861cd259aa60332890a": "v5.13-rc1", "a97e21923b421993258e8487f2a5700c1ba3897f": "v3.14-rc1", "a992b8a4682f119ae035a01b40d4d0665c4a2875": "v5.19-rc3", "a9bb7e620efdfd29b6d1c238041173e411670996": "v4.5-rc1", @@ -2464,18 +3136,23 @@ "a9ed4a6560b8562b7e2e2bed9527e88001f7b682": "v5.9-rc2", "a9f07790a4b2250f0140e9a61c7f842fd9b618c7": "v6.8-rc1", "aa184e8671f0f911fc2fb3f68cd506e4d7838faa": "v5.18", + "aa1eec2f546f2afa8c98ec41e5d8ee488165d685": "v6.8-rc5", + "aa2b2eb3934859904c287bf5434647ba72e14c1c": "v6.8-rc3", "aa43477b040251f451db0d844073ac00a8ab66ee": "v5.17-rc1", "aa5873e96271611ae55586f65e49ea1fab90cb88": "v2.6.36-rc1", "aa6dd211e4b1dde9d5dc25d699d35f789ae7eeba": "v5.13-rc1", "aa6f8dcbab473f3a3c7454b74caa46d36cdc5d13": "v5.17-rc8", "aa7253c2393f6dcd6a1468b0792f6da76edad917": "v6.0-rc1", + "aa82ac51d63328714645c827775d64dbfd9941f3": "v6.8-rc6", "aa838896d87af561a33ecefea1caa4c15a68bc47": "v5.10-rc1", "aa93d1fee85c890a34f2510a310e55ee76a27848": "v4.7", "aa9c2669626ca7e5e5bab28e6caeb583fd40099b": "v3.11-rc1", "aa9f7d5172fac9bf1f09e678c35e287a40a7b7dd": "v5.7-rc1", "aaa31047a6d25da0fa101da1ed544e1247949b40": "v5.13-rc1", + "aaab47f204aaf47838241d57bf8662c8840de60a": "v6.8-rc4", "aac453635549699c13a84ea1456d5b0e574ef855": "v4.6-rc1", "aacff892cbd5c6b1904a3906219548a65018d750": "v3.8-rc1", + "aafe104aa9096827a429bc1358f8260ee565b7cc": "v5.13-rc1", "ab125ed3ec1c10ccc36bc98c7a4256ad114a3dae": "v6.8-rc1", "ab33d5071de7a33616842882c11b5eb52a6c26a1": "v2.6.17-rc1", "ab519a011caa5ec47d992cb8a4fc8e7af9b9e3f8": "v2.6.33-rc1", @@ -2486,17 +3163,24 @@ "abafbc551fddede3e0a08dee1dcde08fc0eb8476": "v5.8-rc1", "abcc506a9a71976a8b4c9bf3ee6efd13229c1e19": "v6.4-rc1", "abd39c6ded9db53aa44c2540092bdd5fb6590fa8": "v4.18-rc1", + "abe4eaa8618bb36c2b33e9cdde0499296a23448c": "v6.8-rc1", "abf492e7b3ae74873688cf9960283853a3054471": "v2.6.34-rc1", "abfaf0eee97925905e742aa3b0b72e04a918fa9e": "v5.17-rc1", + "ac03046ece2b158ebd204dfc4896fd9f39f0e6c8": "v5.2-rc2", "ac1e516d5a4c56bf0cb4a3dfc0672f689131cfd4": "v5.1-rc6", + "ac2614d721dea2ff273af19c6c5d508d58a2bb3e": "v5.10-rc1", "ac27a0ec112a089f1a5102bc8dffc79c8c815571": "v2.6.19-rc2", + "ac2f7ca51b0929461ea49918f27c11b680f28995": "v5.13-rc1", "ac4893980bbe79ce383daf9a0885666a30fe4c83": "v6.3-rc1", + "ac5047671758ad4be9f93898247b3a8b6dfde4c7": "v5.8-rc1", "ac60778b87e45576d7bfdbd6f53df902654e6f09": "v6.0-rc1", "ac64115a66c18c01745bbd3c47a36b124e5fd8c0": "v4.14-rc7", + "ac6ad7c2a862d682bb584a4bc904d89fa7721af8": "v5.13-rc1", "ac6e780070e30e4c35bd395acfe9191e6268bdd3": "v4.9-rc6", "ac751efa6a0d70f2c9daef5c7e3a92270f5c2dff": "v2.6.38-rc3", "ac795161c93699d600db16c1a8cc23a65a1eceaf": "v5.17-rc2", "ac902c112d90a89e59916f751c2745f4dbdbb4bd": "v3.16-rc2", + "acd6199f195d6de814ac4090ce0864a613b1580e": "v6.7-rc1", "ace7f46ba5fde7273207c7122b0650ceb72510e0": "v4.10-rc1", "aced3ce57cd37b5ca332bcacd370d01f5a8c5371": "v5.13-rc4", "acf69c946233259ab4d64f8869d4037a198c7f06": "v5.9-rc4", @@ -2504,31 +3188,43 @@ "acff81ec2c79492b180fade3c2894425cd35a545": "v4.4-rc4", "ad0d1a058eac46503edbc510d1ce44c5df8e0c91": "v4.4-rc5", "ad0f75e5f57ccbceec13274e1e242f2b5a6397ed": "v5.8-rc5", + "ad25ee36f00172f7d53242dc77c69fff7ced0755": "v6.9-rc1", "ad362fe07fecf0aba839ff2cc59a3617bd42c33f": "v6.8-rc1", + "ad39c08186f8a0f221337985036ba86731d6aafe": "v6.8-rc6", "ad3e14d7c5268c2e24477c6ef54bbdf88add5d36": "v3.17-rc2", "ad4e02d5081d9da38b5b91886e5fa71f0505d607": "v3.18-rc1", "ad5d07f4a9cd671233ae20983848874731102c08": "v5.12-rc3", "ad608fbcf166fec809e402d548761768f602702c": "v4.19-rc7", "ad67b74d2469d9b82aaa572d76474c95bc484d57": "v4.15-rc2", "ad6f939ab193750cc94a265f58e007fb598c97b7": "v4.0-rc1", + "ad73109ae7ec30d5bfb76be108e304f9f0af4829": "v5.11-rc1", "ad7f402ae4f466647c3a669b8a6f3e5d4271c84a": "v6.1", + "ad85094b293e40e7a2f831b0311a389d952ebd5e": "v5.8-rc1", "ad90d0358bd3b4554f243a425168fc7cebe7d04e": "v6.8-rc1", + "ad91849996f9dd79741a961fd03585a683b08356": "v5.13-rc1", "ad9d24c9429e2159d1e279dc3a83191ccb4daf1d": "v5.13-rc7", "ad9f151e560b016b6ad3280b48e42fa11e1a5440": "v5.13-rc7", "adb4f11e0a8f4e29900adb2b7af28b6bbd5c1fa4": "v4.13-rc6", "ae08ce0021087a5d812d2714fb2a326ef9f8c450": "v3.10-rc1", "ae2e1aad3e48e495878d9f149e437a308bfdaefa": "v5.7-rc1", + "ae372cb1750f6c95370f92fe5f5620e0954663ba": "v5.8-rc7", + "ae4d721ce10057a4aa9f0d253e0d460518a9ef75": "v5.19-rc1", "ae6650163c66a7eff1acd6eb8b0f752dcfa8eba5": "v4.15-rc8", "ae7a2a3fb6f8b784c2752863f4f1f20c656f76fb": "v3.6-rc1", "ae7b4e1f213aa659aedf9c6ecad0bf5f0476e1e2": "v3.12-rc1", "ae926051d7eb8f80dba9513db70d2e2fc8385d3a": "v3.4-rc1", + "aeb004c0cd6958e910123a1607634401009c9539": "v6.8-rc7", "aebe9f4639b13a1f4e9a6b42cdd2e38c617b442d": "v6.1-rc1", "aec7961916f3f9e88766e2688992da6980f11b8d": "v6.8-rc5", + "aec86b052df6541cc97c5fca44e5934cbea4963b": "v5.13-rc2", + "aed5ed595960c6d301dcd4ed31aeaa7a8054c0c6": "v6.8-rc1", "aee69d78dec0ffdf82e35d57c626e80dddc314d5": "v4.12-rc1", + "aef7a0300047e7b4707ea0411dc9597cba108fc8": "v6.6-rc5", "af133ade9a40794a37104ecbcc2827c0ea373a3c": "v5.6-rc2", "af1689a9b7701d9907dfc84d2a4b57c4bc907144": "v6.7-rc6", "af1bae5497b98cb99d6b0492e6981f060420a00c": "v4.8-rc1", "af22a610bc38508d5ea760507d31be6b6983dfa8": "v4.12-rc1", + "af2a0c51b1205327f55a7e82e530403ae1d42cbb": "v5.5-rc1", "af356afa010f3cd2c8b8fcc3bce90f7a7b7ec02a": "v2.6.32-rc1", "af368027a49a751d6ff4ee9e3f9961f35bb4fede": "v4.5-rc1", "af3d5d1c87664a4f150fcf3534c6567cb19909b0": "v5.1-rc1", @@ -2541,32 +3237,45 @@ "af81858172cc0f3da81946aab919c26e4b364efc": "v2.6.33-rc1", "af9b028e270fda6fb812d70d17d902297df1ceb5": "v4.3-rc1", "afca6c5b2595fc44383919fba740c194b0b76aff": "v4.18-rc1", + "afd09b617db3786b6ef3dc43e28fe728cfea84df": "v5.13-rc5", "afd2daa26c7abd734d78bd274fc6c59a15e61063": "v5.13-rc1", + "afe8a3ba85ec2a6b6849367e25c06a2f8e0ddd05": "v5.16-rc7", "aff063e266cbf4754021d8e5d16ee418560906fd": "v3.8-rc1", "aff2299e0d81b26304ccc6a1ec0170e437f38efc": "v5.16-rc1", "b005255e12a311d2c87ea70a7c7b192b2187c22c": "v3.14-rc1", + "b00628b1c7d595ae5b544e059c27b1f5828314b4": "v5.15-rc1", "b0188d4dbe5f4285372dd033acf7c92a97006629": "v2.6.23-rc1", + "b02e5a0ebb172c8276cea3151942aac681f7a4a6": "v5.11-rc1", "b03c9f9fdc37dab81ea04d5dacdc5995d4c224c2": "v4.14-rc1", "b04c46190219a4f845e46a459e3102137b7f6cac": "v3.15-rc2", "b04e75a4a8a81887386a0d2dbf605a48e779d2a0": "v6.0-rc1", "b0576ade3aaf24b376ea1a4406ae138e2a22b0c0": "v6.2-rc7", "b0841eefd9693827afb9888235e26ddd098f9cef": "v5.3-rc8", + "b092529e0aa09829a6404424ce167bf3ce3235e2": "v5.1-rc1", "b0a873ebbf87bf38bf70b5e39a7cadc96099fa13": "v2.6.37-rc1", + "b0ad381fa7690244802aed119b478b4bdafc31dd": "v6.8-rc6", + "b0c8fdc7fdb77586c3d1937050925b960743306e": "v5.4-rc1", "b0de59b5733d18b0d1974a060860a8b5c1b36a2e": "v3.9-rc1", "b0e0e1f83de31aa0428c38b692c590cc0ecd3f03": "v4.4-rc1", + "b0e256f3dd2ba6532f37c5c22e07cb07a36031ee": "v6.9-rc1", "b102f0c522cf668c8382c56a4f771b37d011cda2": "v5.6-rc6", "b126bd6bcd6710aa984104e979a5c930f44561b4": "v5.12-rc1-dontuse", "b12fece4c64857e5fab4290bf01b2e0317a88456": "v6.2-rc5", + "b131c96496b369c7b14125e7c50e89ac7cec8051": "v5.10-rc1", "b166a20b07382b8bc1dcee2a448715c9c2c81b5b": "v5.12-rc8", "b1765e7afe8710ef4366dc722cc5bd487eb07973": "v3.15-rc1", + "b19b74bc99b1501a550f4448d04d59b946dc617a": "v6.4-rc1", "b1a2cd50c0357f243b7435a732b4e62ba3157a2e": "v6.1-rc4", "b1a5983f56e371046dcf164f90bfaf704d2b89f6": "v5.17-rc6", + "b1a79360ee862f8ada4798ad2346fa45bb41b527": "v5.2-rc1", "b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7": "v5.17-rc1", "b1bb5b49373b61bf9d2c73a4d30058ba6f069e4c": "v4.1-rc7", "b1bd5cba3306691c771d558e94baa73e8b0b96b7": "v5.13-rc6", "b1cb7372fa822af6c06c8045963571d13ad6348b": "v4.15-rc1", "b1d18a7574d0df5eb4117c14742baf8bc2b9bb74": "v5.18-rc1", "b1db244ffd041a49ecc9618e8feb6b5c1afcdaa7": "v6.8-rc1", + "b1e0887379422975f237d43d8839b751a6bcf154": "v5.16-rc8", + "b1ebaa0e1318494a7637099a26add50509e37964": "v5.13-rc1", "b2157399cc9898260d6031c5bfe45fe137c1fbe7": "v4.15-rc8", "b21c60a4edd22e26fbebe7dd7078349a8cfa7273": "v3.3-rc1", "b228a94066406b6c456321d69643b0d7ce11cfa6": "v4.14-rc4", @@ -2582,15 +3291,22 @@ "b29c457a6511435960115c0f548c4360d5f4801d": "v5.12-rc8", "b29fcfb54cd70caca5b11c80d8d238854938884a": "v5.17-rc1", "b2a4df200d570b2c33a57e1ebfa5896e4bc81b69": "v3.13-rc1", + "b2b000069a4c307b09548dc2243f31f3ca0eac9c": "v6.6-rc5", + "b2cfd8ab4add53c2070367bfee2f5b738f51698d": "v4.15-rc1", "b2d03cabe2b2e150ff5a381731ea0355459be09f": "v6.1-rc1", "b2d057560b8107c633b39aabe517ff9d93f285e3": "v5.18-rc6", + "b2dd7b953c25ffd5912dda17e980e7168bebcf6c": "v6.8-rc4", "b2e0d98705e60e45bbb3c0032c48824ad7ae0704": "v3.8-rc1", + "b2e63555592f81331c8da3afaa607d8cf83e8138": "v4.15-rc1", + "b2f0d2724ba477d326e9d654d4db1c93e98f8b93": "v4.12-rc1", "b2f37aead1b82a770c48b5d583f35ec22aabb61e": "v5.16-rc7", "b3190df628617c7a4f188a9465aeabe1f5761933": "v2.6.36-rc1", "b31ff3cdf540110da4572e3e29bd172087af65cc": "v4.14-rc1", "b32a7dc8aef1882fbf983eb354837488cc9d54dc": "v4.15-rc4", + "b33752c300232d7f95dd9a4353947d0c9e6a0e52": "v5.12-rc1-dontuse", "b33fb5b801c6db408b774a68e7c8722796b59ecc": "v6.8-rc1", "b348d7dddb6c4fbfc810b7a0626e8ec9e29f7cbb": "v4.6-rc3", + "b34ea31fe013569d42b7e8681ef3f717f77c5b72": "v5.13-rc1", "b35858b3786ddbb56e1c35138ba25d6adf8d0bef": "v6.7-rc7", "b35a0f4dd544eaa6162b6d2f13a2557a121ae5fd": "v5.16", "b35cc8225845112a616e3a2266d2fde5ab13d3ab": "v3.7-rc1", @@ -2613,24 +3329,32 @@ "b42db0860e13067fcc7cbfba3966c9e652668bbc": "v4.17-rc4", "b43d1f9f7067c6759b1051e8ecb84e82cef569fe": "v5.5-rc3", "b43f9acbb8942b05252be83ac25a81cec70cc192": "v6.1-rc1", + "b4403cee6400c5f679e9c4a82b91d61aa961eccf": "v5.13-rc1", "b4487b93545214a9db8cbf32e86411677b0cca21": "v5.9-rc1", "b463a6f744a263fccd7da14db1afdc880371a280": "v2.6.37-rc1", "b46a0bf78ad7b150ef5910da83859f7f5a514ffd": "v5.0-rc5", "b46acd6a6a627d876898e1c84d3f84902264b445": "v5.15-rc1", "b4789b8e6be3151a955ade74872822f30e8cd914": "v3.13-rc1", "b48c24c2d710cf34810c555dcef883a3d35a9c08": "v5.14-rc1", + "b493ad718b1f0357394d2cdecbf00a44a36fa085": "v6.8-rc1", "b49a0e69a7b1a68c8d3f64097d06dabb770fec96": "v5.15-rc1", "b4a1b4f5047e4f54e194681125c74c0aa64d637d": "v4.4-rc8", "b4b10061ef98c583bcf82a4200703fbaa98c18dc": "v5.8-rc1", "b4b814fec1a5a849383f7b3886b654a13abbda7d": "v5.4-rc4", "b4e00444cab4c3f3fec876dc0cccc8cbb0d1a948": "v5.10-rc3", "b4f34d8d9d26b2428fa7cf7c8f97690a297978e6": "v3.10-rc1", + "b50aa49638c7e12abf4ecc483f4e928c5cccc1b0": "v5.14-rc1", + "b519b56e378ee82caf9b079b04f5db87dedc3251": "v4.15-rc1", "b52fe2dbb3e655eb1483000adfab68a219549e13": "v5.17-rc1", + "b5332a9f3f3d884a1b646ce155e664cc558c1722": "v5.13-rc1", + "b53558a950a89824938e9811eddfc8efcd94e1bb": "v5.13-rc5", "b53767719b6cd8789392ea3e7e2eb7b8906898f0": "v2.6.24-rc1", "b550a32e60a4941994b437a8d662432a486235a5": "v4.12-rc1", "b561275d633bcd8e0e8055ab86f1a13df75a0269": "v5.18-rc5", "b57a55e2200ede754e4dc9cce4ba9402544b9365": "v5.1-rc6", + "b57dc7c13ea90e09ae15f821d2583fa0231b4935": "v5.3-rc1", "b593b6f1b4921700c00394d35e098259e3d04913": "v5.9-rc1", + "b5941f066b4ca331db225a976dae1d6ca8cf0ae3": "v5.13-rc5", "b5a663aa426f4884c71cd8580adae73f33570f0d": "v4.5-rc1", "b5a8ffcae4103a9d823ea3aa3a761f65779fbe2a": "v4.16-rc1", "b5dba59e0cf7e2cc4d3b3b1ac5fe81ddf21959eb": "v5.6-rc1", @@ -2640,6 +3364,7 @@ "b60fe990c6b07ef6d4df67bc0530c7c90a62623a": "v5.4-rc1", "b61798130f1be5bff08712308126c2d7ebe390ef": "v4.13-rc1", "b61901024776b25ce7b8edc31bb1757c7382a88e": "v2.6.21-rc2", + "b63e78fca889e07931ec8f259701718a24e5052e": "v6.6-rc1", "b65235f6e102354ccafda601eaa1c5bef5284d21": "v6.6-rc7", "b66db53f8d85f6e8ce1b2b827d3fb3b0f0bf64c6": "v4.10-rc1", "b67fbebd4cf980aecbcc750e1462128bffe8ae15": "v5.19-rc8", @@ -2647,20 +3372,30 @@ "b6878d9e03043695dbf3fa1caa6dfc09db225b16": "v4.2-rc6", "b69040d8e39f20d5215a03502a8e8b4c6ab78395": "v3.18-rc1", "b6a2fea39318e43fee84fa7b0b90d68bed92d2ba": "v2.6.23-rc1", + "b6eda11c44dc89a681e1c105f0f4660e69b1e183": "v6.8-rc3", "b70261a288ea4d2f4ac7cd04be08a9f0f2de4f4d": "v5.6-rc1", "b71812168571fa55e44cdd0254471331b9c4c4c6": "v4.16-rc5", + "b7198383ef2debe748118996f627452281cf27d7": "v6.8-rc5", "b719a9c15d52d4f56bdea8241a5d90fd9197ce99": "v6.8-rc1", "b7236e21d55ff9008737621c84dd8ee6c37c7c6d": "v4.2-rc1", + "b72949328869dfd45f6452c2410647afd7db5f1a": "v5.11-rc1", "b7321e81fc369abe353cf094d4f0dc2fe11ab95f": "v4.11-rc2", "b75cd218274e01d026dc5240e86fdeb44bbed0c8": "v5.19-rc6", "b772b9dc63df0ca8a750ceac9ab356376022f0b6": "v4.3-rc1", "b77413446408fdd256599daf00d5be72b5f3e7c6": "v5.11-rc4", + "b795fb9f5861ee256070d59e33130980a01fadd7": "v6.6-rc3", "b799207e1e1816b09e7a5920fbb2d5fcf6edd681": "v4.19-rc7", "b7a584598aea7ca73140cb87b40319944dd3393f": "v4.6-rc1", "b7c81f80246fac44077166f3e07103affe6db8ff": "v5.18-rc6", "b7cc176c9eb3aa6989ac099efd8bdd6d0eaa784a": "v2.6.24-rc1", + "b7df21cf1b79ab7026f545e7bf837bd5750ac026": "v5.13-rc4", + "b7f1f7b2523a6a4382f12fe953380b847b80e09d": "v6.6-rc1", + "b802d070a52a1565b47daaa808872cfbd4a17b01": "v5.6-rc1", "b805d78d300bcf2c83d6df7da0c818b0fee41427": "v5.1", "b80b829e9e2c1b3f7aae34855e04d8f6ecaf13c8": "v6.5-rc5", + "b80e31baa43614e086a9d29dc1151932b1bd7fc5": "v6.6-rc5", + "b81af585ea54ee9f749391e594ee9cbd44061eae": "v5.18-rc1", + "b820de741ae48ccf50dd95e297889c286ff4f760": "v6.8-rc6", "b82a8dbd3d2f4563156f7150c6f2ecab6e960b30": "v6.7-rc5", "b844f0ecbc5626ec26cfc70cb144a4c9b85dc3f2": "v4.6-rc1", "b854b4ee66437e6e1622fda90529c814978cb4ca": "v6.1-rc1", @@ -2672,22 +3407,30 @@ "b86e33075ed1909d8002745b56ecf73b833db143": "v4.11-rc1", "b870e73a56c4cccbec33224233eaf295839f228c": "v6.2-rc5", "b892bf75b2034e0e4af23da9a276160b8ad26c15": "v3.14-rc1", + "b895bdf5d643b6feb7c60856326dd4feb6981560": "v5.12-rc8", "b8a8684502a0fc852afa0056c6bb2a9273f6fcc0": "v3.15-rc1", + "b8adb69a7d29c2d33eb327bca66476fb6066516b": "v6.8-rc6", + "b8b2f37cf632434456182e9002d63cbc4cccc50c": "v5.13-rc1", "b8c06ad4d67db56ed6bdfb685c134da74e92a2c7": "v5.13-rc1", "b8c75e4a1b325ea0a9433fa8834be97b5836b946": "v6.4-rc3", "b8d17e7d93d2beb89e4f34c59996376b8b544792": "v5.5-rc1", + "b8d55a90fd55b767c25687747e2b24abd1ef8680": "v6.8-rc1", "b8e51a6a9db94bc1fb18ae831b3dab106b5a4b5f": "v5.4-rc6", "b8f2c21db390273c3eaf0e5308faeaeb1e233840": "v3.8-rc6", "b901b252b6cf5cecc612059ccf05d974a9085c58": "v4.19-rc1", "b90cd6f2b905905fb42671009dc0e27c310a16ae": "v4.20-rc1", "b9149729ebdcfce63f853aa54a404c6a8f6ebbf3": "v3.8-rc7", + "b91540d52a08b65eb6a2b09132e1bd54fa82754c": "v5.10-rc1", "b91ee4aa2a2199ba4d4650706c272985a5a32d80": "v5.4-rc1", "b922f622592af76b57cbc566eaeccda0b31a3496": "v5.16-rc2", "b9258a2cece4ec1f020715fe3554bc2e360f6264": "v5.7-rc1", + "b938790e70540bf4f2e653dcd74b232494d06c8f": "v6.6-rc5", "b945245297416a3c68ed12f2ada1c7162f5f73fd": "v4.18-rc1", + "b94e02822debdf0cc473556aad7dcc859f216653": "v5.10-rc1", "b951f9dc7f25fc1e39aafda5edb4b47b38285d9f": "v3.17-rc2", "b963a22e6d1a266a67e9eecc88134713fd54775c": "v3.13-rc4", "b97bf3fd8f6a16966d4f18983b2c40993ff937d4": "v2.6.16-rc1", + "b988b1bb0053c0dcd26187d29ef07566a565cf55": "v6.8-rc1", "b98b0bc8c431e3ceb4b26b0dfc8db509518fb290": "v4.9-rc8", "b98e762e3d71e893b221f871825dc64694cfb258": "v5.11-rc6", "b9a41d21dceadf8104812626ef85dc56ee8a60ed": "v4.15-rc1", @@ -2699,30 +3442,44 @@ "b9dc6f65bc5e232d1c05fe34b5daadc7e8bbf1fb": "v4.10-rc4", "b9dd46188edc2f0d1f37328637860bb65a771124": "v4.12-rc1", "b9e146d8eb3b9ecae5086d373b50fa0c1f3e7f0f": "v3.9-rc8", + "b9f83ffaa0c096b4c832a43964fe6bff3acffe10": "v5.13-rc1", + "ba11bbf303fafb33989e95473e409f6ab412b18d": "v5.13-rc1", + "ba18deddd6d502da71fd6b6143c53042271b82bd": "v6.8", "ba38c27eb93e2d36bf940ca65c145f6e2aaa6d5c": "v4.11-rc1", + "ba3c5574203034781ac4231acf117da917efcd2a": "v6.8-rc1", "ba480dd4db9f1798541eb2d1c423fc95feee8d36": "v4.19-rc1", "ba59fb0273076637f0add4311faa990a5eec27c0": "v5.0-rc6", + "ba5e1272142d051dcc57ca1d3225ad8a089f9858": "v6.8-rc4", "ba5e770c9698782bc203bbf5cf3b36a77720bdbe": "v6.4-rc1", "ba953a9d89a00c078b85f4b190bc1dde66fe16b5": "v6.0-rc3", "bad8e64fb19d3a0de5e564d9a7271c31bd684369": "v5.9-rc1", + "badf3ada60ab8f76f9488dc8f5c0c57f70682f5a": "v4.7-rc1", "baff42ab1494528907bf4d5870359e31711746ae": "v2.6.34-rc4", "bb1fceca22492109be12640d49f5ea5a544c6bb4": "v4.8-rc5", "bb3d48dcf86a97dc25fe9fc2c11938e19cb4399a": "v4.18-rc1", + "bb436283e25aaf1533ce061605d23a9564447bdf": "v5.16-rc8", "bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d": "v3.4-rc1", "bb57f6705960bebeb832142ce9abf43220c3eab1": "v6.8-rc1", "bb5ed01cd2428cd25b1c88a3a9cba87055eb289f": "v6.6-rc1", "bb646cdb12e75d82258c2f2e7746d5952d3e321a": "v4.5-rc1", "bb6aeba736ba9fd4d9569eec4bc3f7aecb42162a": "v4.9-rc1", "bb6d73d9add68ad270888db327514384dfa44958": "v6.6-rc1", + "bb7403655b3c3eb245d0ee330047cd3e20b3c4af": "v6.8-rc1", "bb7f0f989ca7de1153bd128a40a71709e339fa03": "v4.15-rc5", "bb81b2ddfa194b6d12761a350b5b5985cecae0a9": "v2.6.32-rc1", "bb8b81e396f7afbe7c50d789e2107512274d2a35": "v5.11-rc7", + "bb9c74a5bd1462499fe5ccb1e3c5ac40dcfa9139": "v5.13-rc2", "bba1dc0b55ac": "v5.9-rc1", "bbd0d59809f923ea2b540cbd781b32110e249f6e": "v2.6.24-rc1", + "bbd6f0a948139970f4a615dff189d9a503681a39": "v5.13-rc1", "bbe692e349e2a1edf3fe0a29a0e05899c9c94d51": "v5.5-rc1", "bbeb97464eefc65f506084fd9f18f21653e01137": "v5.10-rc1", "bbf26183b7a6236ba602f4d6a2f7cade35bba043": "v4.14-rc4", + "bbf73830cd48cff1599811d4f69c7cfd49c7b869": "v5.1-rc1", + "bbfddb904df6f82a5948687a2d57766216b9bc0f": "v6.1-rc3", + "bc03c02cc1991a066b23e69bbcc0f66e8f1f7453": "v6.8-rc1", "bc07c2c6e9ed125d362af0214b6313dca180cb08": "v3.16-rc1", + "bc08041b32abe6c9824f78735bac22018eabfc06": "v6.7-rc1", "bc0bdc5afaa740d782fbf936aaeebd65e5c2921d": "v5.15-rc4", "bc0c4d1e176eeb614dc8734fc3ace34292771f11": "v5.7-rc3", "bc2a9408fa65195288b41751016c36fd00a75a85": "v3.9-rc1", @@ -2731,18 +3488,21 @@ "bc890a60247171294acc0bd67d211fa4b88d40ba": "v4.18-rc4", "bc895e8b2a64e502fbba72748d59618272052a8b": "v5.11-rc5", "bc8a76a152c5f9ef3b48104154a65a68a8b76946": "v5.5-rc7", + "bcbc84af1183c8cf3d1ca9b78540c2185cd85e7f": "v6.8-rc2", "bcbde0d449eda7afa8f63280b165c8300dbd00e2": "v3.11-rc1", "bcc2c9c3fff859e0eb019fe6fec26f9b8eba795c": "v3.5-rc4", "bcca852027e5878aec911a347407ecc88d6fff7f": "v6.1-rc1", "bcd0f93353326954817a4f9fa55ec57fb38acbb0": "v5.16-rc6", "bcd53f858d87f52843cc87764b283999126a50d6": "v3.19-rc6", "bcd70260ef56e0aee8a4fc6cd214a419900b0765": "v6.1", + "bcd9a0797d73eeff659582f23277e7ab6e5f18f3": "v5.13-rc5", "bce1305c0ece3dc549663605e567655dd701752c": "v5.9-rc4", "bce56405201111807cc8e4f47c6de3e10b17c1ac": "v6.3-rc4", "bce9332220bd677d83b19d21502776ad555a0e73": "v6.1", "bceaa90240b6019ed73b49965eac7d167610be69": "v3.13-rc1", "bcf3b67d16a4c8ffae0aa79de5853435e683945c": "v5.1-rc1", "bcf85fcedfdd17911982a3e3564fcfec7b01eebd": "v5.9-rc2", + "bd077259d0a9c9bf453e7e9751bf41f1996e6585": "v6.7-rc1", "bd1060a1d67128bb8fbe2e1384c518912cbe54e7": "v4.5-rc1", "bd239704295c66196e6b77c5717ec4aec076ddd5": "v4.15-rc1", "bd23a7269834dc7c1f93e83535d16ebc44b75eba": "v4.18-rc1", @@ -2755,6 +3515,7 @@ "bd7a3fe770ebd8391d1c7d072ff88e9e76d063eb": "v4.14-rc4", "bd97120fc3d1a11f3124c7c9ba1d91f51829eb85": "v3.7-rc8", "bdabad3e363d825ddf9679dd431cca0b2c30f881": "v4.7-rc1", + "bdb6e697b2a76c541960b86ab8fda88f3de1adf2": "v3.3-rc1", "bdc1c5fac982845a58d28690cdb56db8c88a530d": "v6.4-rc4", "bdcd81707973cf8aa9305337166f8ee842a050d4": "v3.2-rc1", "bdcf0a423ea1c40bbb40e7ee483b50fc8aa3d758": "v4.15-rc4", @@ -2775,6 +3536,7 @@ "be8de49bea505e7777a69ef63d60e02ac1712683": "v6.2", "beb39db59d14990e401e235faf66a6b9b31240b0": "v4.1-rc7", "becfd1f37544798cbdfd788f32c827160fab98c1": "v2.6.39-rc1", + "bee90911e0138c76ee67458ac0d58b38a3190f65": "v5.16-rc7", "bf118a342f10dafe44b14451a1392c3254629a1f": "v3.3-rc1", "bf2a9a39639b8b51377905397a5005f444e9a892": "v2.6.28-rc1", "bf33f87dd04c371ea33feb821b60d63d754e3124": "v4.11-rc5", @@ -2783,16 +3545,20 @@ "bf53d4687b8f3f6b752f091eb85f62369a515dfd": "v5.9-rc1", "bf5a755f5e9186406bbf50f4087100af5bd68e40": "v3.14-rc1", "bf911e985d6bbaa328c20c3e05f4eb03de11fdd6": "v4.9-rc4", + "bf9a40ae8d722f281a2721779595d6df1c33a0bf": "v5.13-rc1", + "bf9c0538e485b591a2ee02d9adb8a99db4be5a2a": "v5.11-rc1", "bfa76d49576599a4b9f9b7a71f23d73d6dcff735": "v3.19", "bfad7c2d40332be6a1d7a89660bceb0f6ea1d73a": "v3.14-rc1", "bfc81a8bc18e3c4ba0cbaa7666ff76be2f998991": "v4.14-rc4", "bfd0a56b90005f8c8a004baf407ad90045c2b11e": "v3.12-rc1", "bfd6e6e6c5d2ee43a3d9902b36e01fc7527ebb27": "v5.5-rc1", + "bfe1d56091c1a404b3d4ce7e9809d745fc4453bb": "v5.6-rc1", "bfe4037e722ec672c9dafd5730d9132afeeb76e9": "v4.19-rc1", "bfedb589252c01fa505ac9f6f2a3d5d68d707ef4": "v4.10-rc1", "c0019b7db1d7ac62c711cda6b357a659d46428fe": "v5.16-rc2", "c004804dceee9ca384d97d9857ea2e2795c2651d": "v5.2-rc1", "c008ba5bdc9fa830e1a349b20b0be5a137bdef7a": "v3.19-rc1", + "c02027b5742b5aa804ef08a4a9db433295533046": "v5.13-rc2", "c0371da6047abd261bc483c744dbc7d81a116172": "v3.19-rc1", "c03aa9f6e1f938618e6db2e23afef0574efeeb65": "v3.17-rc5", "c03b04dcdba1da39903e23cc4d072abf8f68f2dd": "v5.5-rc1", @@ -2803,21 +3569,29 @@ "c09440f7dcb304002dfced8c0fea289eb25f2da0": "v4.6-rc1", "c095508770aebf1b9218e77026e48345d719b17c": "v4.15-rc8", "c09581a52765a85f19fc35340127396d5e3379cc": "v5.2-rc2", + "c09c4f31998bac6d73508e38812518aceb069b68": "v6.7-rc1", + "c09f11ef35955785f92369e25819bf0629df2e59": "v5.13-rc1", "c0a333d842ef67ac04adc72ff79dc1ccc3dca4ed": "v5.4-rc7", "c0b33bdc5b8d9c1120dece660480d4dd86b817ee": "v2.6.38-rc1", + "c0b57581b73be7b43f39e0dff201c93413f6a668": "v5.12-rc1-dontuse", "c0c77d8fb787cfe0c3fca689c2a30d1dad4eaba7": "v4.18-rc1", + "c0c8a8397fa8a74d04915f4d3d28cb4a5d401427": "v5.13-rc4", "c0ca3d70e8d3cf81e2255a217f7ca402f5ed0862": "v4.8-rc1", "c0cfa2d8a788fcf45df5bf4070ab2474c88d543a": "v5.5-rc1", + "c0ec2a712daf133d9996a8a1b7ee2d4996080363": "v6.8-rc6", "c0efd232929c2cd87238de2cccdaf4e845be5b0c": "v2.6.26-rc9", "c0f5ecee4e741667b2493c742b60b6218d40b3aa": "v3.9-rc3", "c0f71bbb810237a38734607ca4599632f7f5d47f": "v4.16-rc1", "c113187d38ff85dc302a1bb55864b203ebb2ba10": "v4.16-rc5", "c11c7bfd213495784b22ef82a69b6489f8d0092f": "v4.18-rc1", + "c129412f74e99b609f0a8e95fc3915af1fd40f34": "v5.11-rc1", "c12b395a46646bab69089ce7016ac78177f6001f": "v3.7-rc1", "c131187db2d3fa2f8bf32fdf4e9a4ef805168467": "v4.15-rc1", + "c13e7331745852d0dd7c35eabbe181cbd5b01172": "v6.6-rc2", "c15471f79506830f80eca0e7fe09b8213953ab5f": "v4.6-rc1", "c156633f1353264634135dea86ffcae74f2122fc": "v4.2-rc1", "c1592a89942e9678f7d9c8030efa777c0d57edab": "v6.4-rc1", + "c193707dde77ace92a649cd59a17e105e2fbeaef": "v4.17-rc1", "c1a281e34dae41379af86b95592a5ae8e9e3af67": "v4.1-rc1", "c1aabdf379bc2feeb0df7057ed5bad96f492133e": "v3.2-rc1", "c1ac539ed43f273cd4d92bf7350ffd783b920184": "v3.4-rc3", @@ -2830,11 +3604,13 @@ "c1f6e3c818dd734c30f6a7eeebf232ba2cf3181d": "v5.7-rc6", "c1fa0768a8713b135848f78fd43ffc208d8ded70": "v4.14-rc2", "c215e9397b00b3045a668120ed7dbd89f2866e74": "v4.19-rc1", + "c22b0bcb1dd024cb9caad9230e3a387d8b061df5": "v5.12-rc1-dontuse", "c2349758acf1874e4c2b93fe41d072336f1a31d0": "v3.13-rc7", "c24968734abfed81c8f93dc5f44a7b7a9aecadfa": "v6.0-rc1", "c2508ec5a58db67093f4fb8bf89a9a7c53a109e9": "v6.5-rc1", "c25b2ae136039ffa820c26138ed4a5e5f3ab3841": "v5.17-rc1", "c25c210f590e7a37eecd865d84f97d1f40e39786": "v5.12-rc1-dontuse", + "c26844eda9d4fdbd266660e3b3de2d0270e3a1ed": "v4.13", "c278c253f3d992c6994d08aa0efb2b6806ca396f": "v4.5-rc6", "c27927e372f0785f3303e8fad94b85945e2c97b7": "v4.13-rc5", "c27a3e4d667fdcad3db7b104f75659478e0c68d8": "v3.17-rc5", @@ -2847,13 +3623,16 @@ "c2c737a0461e61a34676bd0bd1bc1a70a1b4e396": "v3.12-rc1", "c2dd5146e9fe1f22c77c1b011adf84eea0245806": "v4.20", "c2eecefec5df1306eafce28ccdf1ca159a552ecc": "v5.19-rc1", + "c2f156bf168fb42cd6ecd0a8e2204dbe542b8516": "v6.4-rc1", "c300aa64ddf57d9c5d9c898a64b36877345dd4a9": "v3.9-rc4", "c301f0981fdd3fd1ffac6836b423c4d7a8e0eb63": "v6.7-rc2", "c3021629a0d820247ee12b6c5192a1d5380e21c6": "v2.6.35-rc1", "c30707be128e952ca2ba77417cb5509e254a4aac": "v3.14-rc1", + "c3187cf32216313fb316084efac4dab3a8459b1d": "v5.13-rc2", "c319b4d76b9e583a5d88d6bf190e079c4e43213d": "v3.0-rc1", "c33b1cc62ac05c1dbb1cdafe2eb66da01c76ca8d": "v5.12-rc7", "c364df2489b8ef2f5e3159b1dff1ff1fdb16040d": "v5.13-rc7", + "c36b16d29f3af5f32fc1b2a3401bf48f71cabee1": "v5.13-rc1", "c37e9e013469521d9adb932d17a1795c139b36db": "v4.18-rc4", "c392cbecd8eca4c53f2bf508731257d9d0a21c2d": "v6.7-rc4", "c3ab435466d5": "v4.19-rc1", @@ -2863,6 +3642,7 @@ "c3e2219216c92919a6bd1711f340f5faa98695e6": "v5.2-rc4", "c40a2c8817e42273a4627c48c884b805475a733f": "v4.4-rc1", "c40f7d74c741a907cfaeb73a7697081881c497d0": "v5.0-rc1", + "c4436c9149c5d2bc0c49ab57ec85c75ea1c4d61c": "v5.4-rc1", "c444eb564fb16645c172d550359cb3d75fe8a040": "v5.8-rc1", "c486682ae1e2b149add22f44cf413b3103e3ef39": "v5.13-rc1", "c4a3e0a529ab3e65223e81681c7c6b1bc188fa58": "v2.6.14-rc4", @@ -2871,22 +3651,29 @@ "c4d66343a46a4931d6a547042198896e4fd1c592": "v5.1-rc1", "c4e490cf148e85ead0d1b1c2caaba833f1d5b29f": "v4.10-rc4", "c4eb1f403243fc7bbb7de644db8587c03de36da6": "v5.14-rc6", + "c4fb7d2eac9ff9bfc35a2e4d40c7169a332416e0": "v6.8-rc1", "c50ac050811d6485616a193eb0f37bfbd191cc89": "v3.5-rc1", + "c5114710c8ce86b8317e9b448f4fd15c711c2a82": "v6.8-rc2", "c518adafa39f37858697ac9309c6cf1805581446": "v5.11-rc7", "c51ce49735c183ef2592db70f918ee698716276b": "v3.5-rc1", "c52873e5a1ef72f845526d9f6a50704433f9c625": "v5.3-rc5", + "c52ca478233c172b2d322b5241d6279a8661cbba": "v5.6-rc1", "c53432030d86429dc9fe5adc3d68cb9d1343b0b2": "v4.10-rc1", + "c53e9653605dbf708f5be02902de51831be4b009": "v5.9-rc1", "c54419321455631079c7d6e60bc732dd0c5914c5": "v3.10-rc1", "c547dbf55d5f8cf615ccc0e7265e98db27d3fb8b": "v3.12-rc7", "c54d481d71c6849e044690d3960aaebc730224cc": "v5.7-rc7", "c54def7bd64d7c0b6993336abcffb8444795bf38": "v3.17-rc3", "c55aee1bf0e6b6feec8b2927b43f7a09a6d5f754": "v4.6-rc3", + "c55dcdd435aa6c6ad6ccac0a4c636d010ee367a4": "v5.13-rc5", "c56e022c0a27142b7b59ae6bdf45f86bf4b298a1": "v6.4-rc1", + "c574bbe917036c8968b984c82c7b13194fe5ce98": "v5.18-rc1", "c575b7eeb89f94356997abd62d6d5a0590e259b7": "v4.18-rc1", "c58b84ee467bfd08b39fbda56757ba19ac50980a": "v4.9-rc4", "c58d6c93680f28ac58984af61d0a7ebf4319c241": "v4.5-rc6", "c5a595000e2677e865a39f249c056bc05d6e55fd": "v6.7-rc5", "c5a7591172100269e426cf630da0f2dc8138a206": "v3.17-rc1", + "c5b2cbdbdac563f46ecd5e187253ab1abbd6fc04": "v5.6-rc1", "c5c77ba18ea66aa05441c71e38473efb787705a4": "v4.2-rc1", "c5fa7b3cf3cb22e4ac60485fc2dc187fe012910f": "v3.11-rc1", "c611589b4259ed63b9b77be6872b1ce07ec0ac16": "v6.5-rc7", @@ -2898,17 +3685,25 @@ "c6688ef9f29762e65bce325ef4acd6c675806366": "v4.15-rc4", "c66ac9db8d4ad9994a02b3e933ea2ccc643e1fe5": "v2.6.38-rc1", "c68cfb718c8f97b7f7a50ed66be5feb42d0c8988": "v5.1-rc1", + "c69813471a1ec081a0b9bf0c6bd7e8afd818afce": "v6.6-rc5", + "c6c2adcba50c2622ed25ba5d5e7f05f584711358": "v6.6-rc4", + "c6e3f13398123a008cd2ee28f93510b113a32791": "v5.8-rc1", "c700525fcc06b05adfea78039de02628af79e07a": "v5.17", "c70222752228a62135cee3409dccefd494a24646": "v5.18-rc1", "c7084edc3f6d67750f50d4183134c4fb5712a5c8": "v5.1-rc4", "c73be61cede5882f9605a852414db559c0ebedfd": "v5.8-rc1", "c7559663e42f4294ffe31fe159da6b6a66b35d61": "v3.11-rc1", "c7630a4b932af254d61947a3a7e3831de92c7fb5": "v2.6.22-rc1", + "c7718ee96dbc2f9c5fc3b578abdf296dd44b9c20": "v5.13-rc4", "c771d683a62e5d36bc46036f5c07f4f5bb7dda61": "v3.18-rc2", + "c7741d16a57cbf97eebe53f27e8216b1ff20e20c": "v4.0-rc1", + "c777b11d34e0f47dbbc4b018ef65ad030f2b283a": "v6.6-rc4", "c77a4b9cffb6215a15196ec499490d116dfad181": "v3.9-rc7", "c780e86dd48ef6467a1146cf7d0fe1e05a635039": "v5.6-rc4", "c784e5249e773689e38d2bc1749f08b986621a26": "v5.11-rc1", "c799d519bf088c0c5deb481b0190990417ace1bc": "v4.11-rc1", + "c79c5e0178922a9e092ec8fed026750f39dcaef4": "v5.13-rc1", + "c7a219048e459cf99c6fec0f7c1e42414e9e6202": "v5.12-rc1-dontuse", "c7aa12252f5142b9eee2f6e34ca8870a8e7e048c": "v3.6-rc1", "c7ac8679bec9397afe8918f788cbcef88c38da54": "v3.1-rc1", "c7ce4f60ac199fb3521c5fcd64da21cee801ec2b": "v4.7-rc1", @@ -2918,7 +3713,9 @@ "c7ec4f2d684e17d69bbdd7c4324db0ef5daac26a": "v6.8-rc2", "c7ed6d0183d5ea9bc31bcaeeba4070bd62546471": "v5.4-rc6", "c826cb7dfce80512c26c984350077a25046bd215": "v2.6.39-rc1", + "c8334512f3dd1b94844baca629f9bedca4271593": "v5.8-rc1", "c8401dda2f0a00cd25c0af6a95ed50e478d25de4": "v4.12-rc7", + "c8607e4a086fae05efe5bffb47c5199c65e7216e": "v5.15-rc4", "c88507fbad8055297c1d1e21e599f46960cbee39": "v3.14-rc7", "c88547a8119e3b581318ab65e9b72f27f23e641d": "v3.15-rc1", "c88e739b1fad662240e99ecbd0bdaac871717987": "v3.11-rc1", @@ -2938,20 +3735,28 @@ "c947459979c6c9c8aff9c9b5027b31dbf8055106": "v4.8-rc1", "c993ee0f9f81caf5767a50d1faeba39a0dc82af2": "v5.17-rc8", "c995efd5a740d9cbafbf58bde4973e8b50b4d761": "v4.15-rc9", + "c996f0346e40e3b1ac2ebaf0681df898fb157f60": "v5.13-rc1", "c9b37458e95629b1d1171457afdcc1bf1eb7881d": "v3.12-rc1", + "c9b528c35795b711331ed36dc3dbee90d5812d4e": "v6.8-rc3", "c9b92530a723ac5ef8e352885a1862b18f31b2f5": "v3.7-rc1", + "c9d9eb9c53d37cdebbad56b91e40baf42d5a97aa": "v6.8-rc2", "c9f838d104fed6f2f61d68164712e3204bf5271b": "v4.11-rc8", "c9fbd7bbc23dbdd73364be4d045e5d3612cf6e82": "v4.18-rc1", "ca06197382bde0a3bc20215595d1c9ce20c6e341": "v5.7-rc1", + "ca0f1a8055be2a04073af435dc68419334481638": "v5.9-rc1", "ca22da2fbd693b54dc8e3b7b54ccc9f7e9ba3640": "v6.3-rc1", "ca4463bf8438b403596edd0ec961ca0d4fbe0220": "v5.7-rc1", "ca4da5dd1f99fe9c59f1709fb43e818b18ad20e0": "v4.2-rc5", "ca4ef4574f1ee5252e2cd365f8f5d5bafd048f32": "v4.11-rc1", "ca58fbe06c54795f00db79e447f94c2028d30124": "v5.5-rc1", "ca684386e6e21ba1511061f71577cdb6c3f2b3d3": "v4.8-rc1", + "ca69300173b642ba64118200172171ea5967b6c5": "v5.6-rc1", "ca72d88378b2f2444d3ec145dd442d449d3fefbc": "v5.2-rc7", "ca7a03c4175366a92cee0ccc4fec0038c3266e26": "v5.4-rc1", + "ca7d8b980b67f133317525c4273e144116ee1ae5": "v5.9-rc1", + "ca9ae5ec4ef0ed13833b03297ab319676965492c": "v4.12-rc1", "caa4b35b4317d5147b3ab0fbdc9c075c7d2e9c12": "v6.2-rc3", + "cabc9d49333df72fe0f6d58bdcf9057ba341e701": "v6.1-rc1", "cabfb3680f78981d26c078a26e5c748531257ebb": "v4.11-rc1", "cac2661c53f35cbe651bef9b07026a5a05ab8ce0": "v4.11-rc1", "cac5818c25d0423bda73e2b6997404ed0a7ed9e3": "v4.20-rc1", @@ -2962,14 +3767,18 @@ "caf3ef7468f7534771b5c44cd8dbd6f7f87c2cbd": "v6.5-rc2", "cb090e64cf25602b9adaf32d5dfc9c8bec493cd1": "v6.3-rc3", "cb17ed29a7a5fea8c9bf70e8a05757d71650e025": "v5.9-rc1", + "cb1a609236096c278ecbfb7be678a693a70283f1": "v5.9-rc1", "cb1ce2ef387b01686469487edd45994872d52d73": "v3.17-rc1", "cb222aed03d798fc074be55e59d9a112338ee784": "v5.5-rc6", "cb2595c1393b4a5211534e6f0a0fbad369e21ad8": "v4.18-rc1", "cb3232138e37129e88240a98a1d2aba2187ff57c": "v4.5-rc2", "cb3e9864cdbe35ff6378966660edbcbac955fe17": "v6.2-rc4", + "cb4daf271302d71a6b9a7c01bd0b6d76febd8f0c": "v6.8-rc1", "cb59e840838193957a84ad22f7e1465a06a7c10c": "v2.6.12-rc3", "cb5e1b81304e089ee3ca948db4d29f71902eb575": "v5.12-rc1-dontuse", + "cb658a453b9327ce96ce5222c24d162b5b65b564": "v4.11-rc1", "cb66ddd156203daefb8d71158036b27b0e2caf63": "v5.1-rc4", + "cb88cb53badb8aeb3955ad6ce80b07b598e310b8": "v6.8-rc4", "cb94a02e7494c001fa8b5a4c5e16693fafd98530": "v5.16-rc1", "cbb4be652d374f64661137756b8f357a1827d6a4": "v4.3-rc3", "cbbaa2727aa3ae9e0a844803da7cef7fd3b94f2b": "v5.5-rc1", @@ -2985,12 +3794,15 @@ "cc255c76c70f7a87d97939621eae04b600d9f4a1": "v4.19-rc1", "cc25b994acfbc901429da682d0f73c190e960206": "v4.4-rc1", "cc2d58634e0f489d28b5564c05abc69930b4d920": "v4.16-rc1", + "cc4c07c89aada16229084eeb93895c95b7eabaa3": "v6.6-rc1", "cc503c1b43e002e3f1fed70f46d947e2bf349bb6": "v2.6.25-rc1", "cc7a0bb058b85ea03db87169c60c7cfdd5d34678": "v5.12-rc4", "cc8f7fe1f5eab010191aa4570f27641876fa1267": "v5.17-rc5", "cc9b17ad29ecaa20bfe426a8d4dbfb94b13ff1cc": "v3.5-rc1", + "ccb88e9549e7cfd8bcd511c538f437e20026e983": "v6.8-rc4", "ccbf035ae5de4c535160fc99f73feb44cc55b534": "v2.6.32-rc1", "ccd5b3235180eef3cfec337df1c8554ab151b5cc": "v4.13-rc7", + "cce7fc8b29961b64fadb1ce398dc5ff32a79643b": "v6.6-rc4", "ccec44563b18a0ce90e2d4f332784b3cb25c8e9c": "v4.5", "ccf45b18ce89f598c69a0c945ced1635013fc0b1": "v4.20-rc1", "ccf7abb93af09ad0868ae9033d1ca8108bdaec82": "v4.10-rc8", @@ -2998,20 +3810,26 @@ "cd1a677cad994021b19665ed476aea63f5d54f31": "v5.11-rc1", "cd21d99e595ec1d8721e1058dcdd4f1f7de1d793": "v6.1-rc8", "cd33c830448baf7b1e94da72eca069e3e1d050c9": "v5.8-rc1", + "cd45f99034b0c8c9cb346dd0d6407a95ca3d36f6": "v6.8-rc6", "cd4a40174b71acd021877341684d8bb1dc8ea4ae": "v4.1-rc1", "cd63f3cf1d59b7ad8419eba1cac8f9126e79cc43": "v4.13-rc4", "cd667ce24796700e1a0e6e7528efc61c96ff832e": "v2.6.32-rc1", "cd9e9808d18fe7107c306f6e71c8be7230ee42b4": "v4.4-rc1", + "cda4672da1c26835dcbd7aec2bfed954eda9b5ef": "v6.8-rc4", + "cdba4301adda7c60a2064bf808e48fccd352aaa9": "v6.7-rc5", "cde93be45a8a90d8c264c776fab63487b5038a65": "v4.3-rc1", "cdeb5d7d890e14f3b70e8087e745c4a6a7d9f337": "v5.15-rc6", "cdec9cb5167ab1113ba9c58e395f664d9d3f9acb": "v3.3-rc1", + "cdfa835c6e5e87d145f9f632b58843de97509f2b": "v4.20-rc1", "ce07d891a0891d3c0d0c2d73d577490486b809e1": "v4.1-rc1", "ce0887ac96d35c7105090e166bb0807dc0a0e838": "v5.6-rc1", "ce18d171cb7368557e6498a3ce111d7d3dc03e4d": "v5.4-rc1", "ce1e7989d989e36ee3b032d46aab28b7d5e30428": "v4.5-rc1", "ce33e64c1788912976b61314b56935abd4bc97ef": "v6.3-rc1", "ce3aba43599f0b50adbebff133df8d08a3d5fffe": "v5.14-rc1", + "ce3c4ad7f4ce5db7b4f08a1e237d8dd94b39180b": "v5.19-rc1", "ce3fd194fcc6fbdc00ce095a852f22df97baa401": "v4.17-rc1", + "ce40733ce93de402ed629762f0e912d9af187cef": "v2.6.25-rc1", "ce40cd3fc7fa40a6119e5fe6c0f2bc0eb4541009": "v4.2-rc1", "ce683e5f9d045e5d67d1312a42b359cb2ab2a13c": "v4.7-rc1", "ce72a16fa705f960ca2352e95a7c5f4801475e75": "v4.13-rc1", @@ -3019,37 +3837,55 @@ "cea0f0e7ea54753c3265dc77f605a6dad1912cfc": "v2.6.20-rc4", "cea4dcfdad926a27a18e188720efe0f2c9403456": "v3.10-rc4", "ceabee6c59943bdd5e1da1a6a20dc7ee5f8113a2": "v5.1-rc3", + "ceaf2966ab082bbc4d26516f97b3ca8a676e2af8": "v5.13-rc1", + "cec279a898a3b004411682f212215ccaea1cd0fb": "v5.13-rc4", "cec8f96e49d9be372fdb0c3836dcf31ec71e457e": "v4.7-rc1", "ced39002f5ea736b716ae233fb68b26d59783912": "v3.4-rc1", + "ceec5f5b59882b871a722ca4d49b767a09a4bde9": "v4.19-rc1", "cef31d9af908243421258f1df35a4a644604efbe": "v4.15-rc4", "cefa91b2332d7009bc0be5d951d6cbbf349f90f8": "v5.18-rc4", "cefc7ca46235f01d5233e3abd4b79452af01d9e9": "v5.14-rc1", "cf01fb9985e8deb25ccf0ea54d916b8871ae0e62": "v4.11-rc6", "cf124db566e6b036b8bcbe8decbed740bdfac8c6": "v4.12-rc6", "cf137b3ea49a04e0c843b12674afa4b1d23e827f": "v5.11-rc1", + "cf15c3e734e8d25de7b4d9170f5a69ace633a583": "v6.0-rc1", + "cf264e1329fb0307e044f7675849f9f38b44c11a": "v6.5-rc1", + "cf29c5b66b9f83939367d90679eb68cdfa2f0356": "v5.5-rc1", + "cf4a0d840ecc72fcf16198d5e9c505ab7d5a5e4d": "v6.8-rc2", + "cf5000a7787cbc10341091d37245a42c119d26c5": "v6.6-rc3", "cf6531d98190fa2cf92a6d8bbc8af0a4740a223c": "v6.0-rc1", + "cf7c2789822db8b5efa34f5ebcf1621bc0008d48": "v6.8-rc7", + "cf7da0d66cc1a2a19fc5930bb746ffbb2d4cd1be": "v5.6-rc1", "cf872776fc84128bb779ce2b83a37c884c3203ae": "v3.13-rc5", + "cf8ee6de2543a0fa6d9471ddbb7216464a9681a1": "v5.12-rc1-dontuse", "cf970c002d270c36202bd5b9c2804d3097a52da0": "v3.13-rc1", "cf9a6784f7c1b5ee2b9159a1246e327c331c5697": "v4.5-rc1", "cfa39381173d5f969daf43582c95ad679189cbc9": "v5.0-rc6", "cfaa80c91f6f99b9342b6557f0f0e1143e434066": "v6.6-rc2", "cfb8da8f69b81d367b766888e83ec0483a31bf01": "v2.6.37-rc1", + "cfd0d84ba28c18b531648c9d4a35ecca89ad9901": "v5.16-rc8", "cfdda9d764362ab77b11a410bb928400e6520d57": "v2.6.35-rc1", "cff109768b2d9c03095848f4cd4b0754117262aa": "v3.8-rc1", + "cffa4b2122f5f3e53cf3d529bbc74651f95856d5": "v5.11-rc3", "cffb78b0e0b3a30b059b27a1d97500cf6464efa9": "v3.11-rc1", "d00d8da5869a2608e97cfede094dfc5e11462a46": "v5.14-rc1", "d021c344051af91f42c5ba9fdedc176740cbd238": "v3.9-rc1", "d02ba2a6110c530a32926af8ad441111774d2893": "v4.16-rc5", "d03032af511c56d3c1580fa4f54f6285f650e638": "v2.6.28-rc1", "d049f74f2dbe71354d43d393ac3a188947811348": "v3.13-rc1", + "d08089f649a0cfb2099c8551ac47eef0cc23fdf2": "v6.3-rc1", "d08e973a77d128b25e01a08c34d89593fdf222da": "v3.16-rc1", + "d09486a04f5da0a812c26217213b89a3b1acf836": "v6.8-rc2", "d0b137062b2de75b264b84143d21c98abc5f5ad2": "v5.17-rc1", "d0be8347c623e0ac4202a1d4e0373882821f56b0": "v5.19", "d0c7feaf87678371c2c09b3709400be416b2dc62": "v5.7-rc1", + "d0cad871703b898a442e4049c532ec39168e5b57": "v2.6.34-rc2", "d0cb50185ae942b03c4327be322055d622dc79f6": "v5.5", "d0d51a97063db4704a5ef6bc978dddab1636a306": "v6.1-rc1", "d0d62baa7f505bd4c59cd169692ff07ec49dde37": "v5.14-rc1", + "d0e274af2f2e44b9d496f5d2c0431fdd2ea76fb8": "v5.12-rc1-dontuse", "d0e2c7de92c7f2b3d355ad76b0bb9fc43d1beb87": "v5.9-rc1", + "d0f91938bede204a343473792529e0db7d599836": "v4.1-rc1", "d0febd81ae77a0e13717f1412ff9589e43fc4f8b": "v5.7-rc1", "d10c77873ba1e9e6b91905018e29e196fd5f863d": "v6.7-rc8", "d10d1b9ac97b96dd9183944d30b1664bdbb5fbf6": "v3.7-rc1", @@ -3065,6 +3901,7 @@ "d18dcfe9860e842f394e37ba01ca9440ab2178f4": "v6.2-rc5", "d199fab63c11998a602205f7ee7ff7c05c97164b": "v4.10", "d1a890fa37f27d6aca3abc6e25e4148efc3223a6": "v2.6.32-rc5", + "d1adb25df7111de83b64655a80b5a135adbded61": "v6.8-rc1", "d1c263a031e876ac3ca5223c728e4d98ed50b3c0": "v5.11-rc1", "d1d788302e8c76e5138dfa61f4a5eee4f72a748f": "v2.6.37-rc5", "d1e7fd6462ca9fc76650fbe6ca800e35b24267da": "v5.7-rc1", @@ -3072,6 +3909,7 @@ "d1fd836dcf00d2028c700c7e44d2c23404062c90": "v4.1-rc1", "d203b0fd863a2261e5d00b97f3d060c4c2a6db71": "v5.13-rc7", "d214c7537bbf2f247991fb65b3420b0b3d712c67": "v2.6.29-rc1", + "d2168e849ebf617b2b7feae44c0c0baf739cb610": "v4.3-rc1", "d21b0be246bf3bbf569e6e239f56abb529c7154e": "v4.19-rc1", "d25adbeb0cdb860fb39e09cdd025e9cfc954c5ab": "v4.14-rc1", "d26a9559403c7c3ec3b430f5825bc22c3d40abdb": "v4.14-rc1", @@ -3079,42 +3917,62 @@ "d26d6504f23e803824e8ebd14e52d4fc0a0b09cb": "v3.9-rc7", "d270453a0d9ec10bb8a802a142fb1b3601a83098": "v5.18-rc6", "d29216842a85c7970c536108e093963f02714498": "v4.9-rc1", + "d2b4387f3bdf016e266d23cf657465f557721488": "v5.0-rc1", + "d2b48f340d9e4a8fbeb1cdc84cd8da6ad143a907": "v6.8-rc6", "d2b4b97933f5adacfba42dc3b9200d0e21fbe2c4": "v4.16-rc1", "d2b9d2a5ad5ef04ff978c9923d19730cb05efd55": "v4.4-rc3", + "d2bf7959d9c0f631ef860edaf834d55773fdedff": "v5.12-rc1-dontuse", + "d2ddc776a4581d900fc3bdc7803b403daae64d88": "v4.15-rc1", "d2e4c1e6c2947269346054ac8937ccfe9e0bcc6b": "v5.5-rc1", "d2f007dbe7e4c9583eea6eb04d60001e85c6f1bd": "v4.20-rc2", + "d2fb0a0438384fee08a418025f743913020033ce": "v5.6-rc1", "d2ffed5185df9d8d9ccd150e4340e3b6f96a8381": "v4.17-rc3", "d3217b15a19a4779c39b212358a5c71d725822ee": "v3.16-rc1", + "d3256efd8e8b234a6251e4d4580bd2c3c31fdc4c": "v5.13-rc1", "d325dc6eb763c10f591c239550b8c7e5466a5d09": "v6.1-rc1", + "d35652a5fc9944784f6f50a5c979518ff8dacf61": "v6.6-rc6", "d3623099d3509fa68fa28235366049dd3156c63a": "v3.15-rc1", + "d375b98e0248980681e5e56b712026174d617198": "v6.8-rc1", "d39083234c60519724c6ed59509a2129fd2aed41": "v5.5-rc1", + "d396f89db39a2f259e2125ca43b4c31bb65afcad": "v6.6-rc1", + "d39bf40e55e666b5905fdbd46a0dced030ce87be": "v5.15", "d3b0ffa1d75d5305ebe34735598993afbb8a869": "v5.5-rc1", "d3b0ffa1d75d5305ebe34735598993afbb8a869d": "v5.5-rc1", "d3b16034a24a112bb83aeb669ac5b9b01f744bb7": "v5.14-rc1", "d3b6372c5881cb54925212abb62c521df8ba4809": "v5.17-rc8", "d3bd7413e0ca40b60cf60d4003246d067cafdeda": "v5.0-rc3", + "d3ea125df37dc37972d581b74a5d3785c3f283ab": "v6.8-rc7", "d4122754442799187d5d537a9c039a49a67e57f1": "v5.10-rc5", "d42334578eba1390859012ebb91e1e556d51db49": "v6.5-rc5", "d443d93864726ad68c0a741d1e7b03934a9af143": "v5.19-rc1", "d45476d9832409371537013ebdd8dc1a7781f97a": "v5.17-rc8", + "d46a78b05c0e37f76ddf4a7a67bf0b6c68bada55": "v2.6.37-rc1", "d4726d7700688835f4784d3b94de6fff2cbe16c2": "v5.19-rc1", "d475f942b1dd6a897dac3ad4ed98d6994b275378": "v3.11-rc1", + "d49270a04623ce3c0afddbf3e984cb245aa48e9c": "v6.8-rc1", "d4932f9e81ae7a7bf3c3967e48373909b9c98ee5": "v3.18-rc1", "d4b09acf924b84bae77cad090a9d108e70b43643": "v5.0-rc1", "d4c54919ed86302094c0ca7d48a8cbd4ee753e92": "v3.15", "d4fdf8ba0e5808ba9ad6b44337783bd9935e0982": "v4.13-rc1", "d50dde5a10f305253cbc3855307f608f8a3c5f73": "v3.14-rc1", + "d527f51331cace562393a8038d870b3e9916686f": "v6.6-rc3", "d52c9750f150111dc7f73e4036f6948b20c9f8c3": "v4.10-rc1", + "d52e5a7e7ca49457dd31fc8b42fb7c0d58a31221": "v4.16-rc7", "d5361233e9ab920e135819f73dd8466355f1fddd": "v5.18-rc2", "d5410ac7b0baeca91cf73ff5241d35998ecc8c9e": "v6.0-rc1", "d5468d7afaa9c9e961e150f0455a14a9f4872a98": "v4.6-rc6", "d558023207e008a4476a3b7bb8706b2a2bf5d84f": "v3.13-rc1", "d563131ef23cbc756026f839a82598c8445bc45f": "v5.5-rc1", + "d56e460e19ea8382f813eb489730248ec8d7eb73": "v6.8-rc6", + "d58bb7e55a8a65894cc02f27c3e2bf9403e7c40f": "v5.10-rc1", "d58e468b1112": "v4.20-rc1", "d59d51f088014f25c2562de59b9abff4f42a7468": "v4.15-rc3", + "d5afb4b47e13161b3f33904d45110f9e6463bad6": "v6.6-rc5", "d5b1a78a772f1e31a94f8babfa964152ec5e9aa5": "v4.5-rc1", "d5e0d0f607a7a029c6563a0470d88255c89a8d11": "v3.9-rc7", "d5f9023fa61ee8b94f37a93f08e94b136cf1e463": "v5.14-rc1", + "d6177a6556f853785867e2ec6d5b7f4906f0d809": "v5.13-rc4", + "d624833f5984d484c5e3196f34b926f9e71dafee": "v5.12-rc8", "d646960f7986fefb460a2b062d5ccc8ccfeacc3a": "v3.3-rc1", "d64696905554e919321e31afc210606653b8f6a4": "v5.14-rc1", "d64a1f574a2957b4bcb06452d36cc1c6bf16e9fc": "v5.3-rc1", @@ -3122,6 +3980,7 @@ "d661684cf6820331feae71146c35da83d794467e": "v3.11", "d66d6c3152e8d5a6db42a56bf7ae1c6cae87ba48": "v4.3-rc1", "d67ae825a59d639e4d8b82413af84d854617a87e": "v4.0-rc1", + "d6a9608af9a75d13243d217f6ce1e30e57d56ffe": "v6.8-rc7", "d6d86830705f173fca6087a3e67ceaf68db80523": "v5.16", "d6de3097592b7ae7f8e233a4dafb088e2aa8170f": "v2.6.25-rc1", "d6ea83ec6864e9297fa8b00ec3dae183413a90e3": "v3.5-rc1", @@ -3129,7 +3988,9 @@ "d6fefa1105dacc8a742cdcf2f4bfb501c9e61349": "v6.3-rc1", "d71fa5c9763c24dd997a2fa4feb7a13a95bab42c": "v5.10-rc1", "d740269867021faf4ce38a449353d2b986c34a67": "v3.8-rc1", + "d75abeec401f8c86b470e7028a13fcdc87e5dd06": "v6.8-rc4", "d76c68109f37cb85b243a1cf0f40313afd2bae68": "v4.15-rc7", + "d76fdd31f953ac5046555171620f2562715e9b71": "v6.8-rc2", "d785a773bed966a75ca1f11d108ae1897189975b": "v5.19-rc6", "d7cce01504a0ccb95b5007d846560cfccbc1947f": "v4.8-rc1", "d80b64ff297e40c2b6f7d7abc1b3eba70d22a068": "v5.6-rc4", @@ -3139,17 +4000,25 @@ "d8316f3991d207fe32881a9ac20241be8fa2bad0": "v3.14", "d839f0811a31322c087a859c2b181e2383daa7be": "v6.3-rc1", "d84f4f992cbd76e8f39c488cf0c5d123843923b1": "v2.6.29-rc1", + "d8536670916a685df116b5c2cb256573fd25e4e3": "v3.7-rc1", "d8647b79c3b7e223ac051439d165bc8e7bbb832f": "v2.6.39-rc1", + "d872ca165cb67112f2841ef9c37d51ef7e63d1e4": "v6.8-rc1", + "d874e6c06952382897d35bf4094193cd44ae91bd": "v5.13-rc5", + "d877550eaf2dc9090d782864c96939397a3c6835": "v6.8-rc4", + "d8792a5734b0f3e58b898c2e2f910bfac48e9ee3": "v6.7-rc5", "d8861bab48b6c1fc3cdbcab8ff9d1eaea43afe7f": "v5.12-rc3", "d88d05a9e0b6d9356e97129d4ff9942d765f46ea": "v5.12-rc4", "d8ba61ba58c88d5207c1ba2f7d9a2280e7d03be9": "v4.16-rc7", "d8e0420603cf1ce9cb459c00ea0b7337de41b968": "v2.6.37-rc1", "d9092f52d7e61dd1557f2db2400ddb430e85937e": "v4.9-rc4", "d920abd1e7c4884f9ecd0749d1921b7ab19ddfbd": "v6.6-rc7", + "d938a8cca88a5f02f523f95fe3d2d1214f4b4a8d": "v6.7-rc1", "d945cb9cce20ac7143c2de8d88b187f62db99bdc": "v2.6.31-rc3", "d94ba80ebbea17f036cecb104398fbcd788aa742": "v3.0-rc1", + "d95f1a542c3df396137afa217ef9bd39cb8931ca": "v5.4-rc1", "d974baa398f34393db76be45f7d4d04fbdbb4a0a": "v3.18-rc1", "d9a871e4a143047d1d84a606772af319f11516f9": "v6.2-rc1", + "d9b45418a91773b7672e4c60037a28074b495c6d": "v5.10-rc1", "d9b8d8e19b073096d3609bbd60f82148d128b555": "v3.10-rc1", "d9d4b1e46d9543a82c23f6df03f4ad697dab361b": "v5.4-rc6", "d9e31d17ceba5f0736f5a34bbc236239cd42b420": "v2.6.35-rc1", @@ -3160,13 +4029,17 @@ "da0342a3aa0357795224e6283df86444e1117168": "v6.0-rc4", "da214a475f8bd1d3e9e7a19ddfeb4d1617551bab": "v5.19-rc1", "da2311a6385c3b499da2ed5d9be59ce331fa93e9": "v5.5-rc3", + "da32b28c95a79e399e18c03f8178f41aec9c66e4": "v5.8-rc6", "da4458bda237aa0cb1688f6c359477f203788f6a": "v2.6.30-rc1", + "da44c340c4fe9d9653ae84fa6a60f406bafcffce": "v6.1-rc1", "da5c0f119203ad9728920456a0f52a6d850c01cd": "v5.18-rc6", "da9065caa594d19b26e1a030fd0cc27bd365d685": "v6.8-rc1", "da99466ac243f15fbba65bd261bfc75ffa1532b6": "v5.3-rc1", "daac07156b330b18eb5071aec4b3ddca1c377f2c": "v5.3-rc5", "dab6cf55f81a6e16b8147aed9a843e1691dcd318": "v3.16-rc7", + "dac501397b9d81e4782232c39f94f4307b137452": "v6.6-rc6", "dad48e73127ba10279ea33e6dbc8d3905c4d31c0": "v4.13-rc1", + "dad555c816a50c6a6a8a86be1f9177673918c647": "v6.8-rc2", "dad5ab0db8deac535d03e3fe3d8f2892173fa6a4": "v4.13-rc2", "dade3f6a1e4e35a5ae916d5e78b3229ec34c78ec": "v6.7-rc7", "db1312dd95488b5e6ff362ff66fcf953a46b1821": "v6.0-rc1", @@ -3182,12 +4055,19 @@ "dbb50887c8f619fc5c3489783ebc3122bc134a31": "v4.8-rc5", "dbbe2ad02e9df26e372f38cc3e70dab9222c832e": "v5.8-rc1", "dbbe9c642411c359ad0a0e32442eb2e11d3811b5": "v5.10-rc1", + "dbc153fd3c142909e564bb256da087e13fbf239c": "v6.8-rc2", "dbcc7d57bffc0c8cac9dac11bec548597d59a6a5": "v5.12-rc4", "dbe245cdf5189e88d680379ed13901356628b650": "v6.5-rc1", "dbe836576f12743a7d2d170ad4ad4fd324c4d47a": "v6.5-rc1", + "dbf4ab821804df071c8b566d9813083125e6d97b": "v6.8-rc1", + "dc07628bd2bbc1da768e265192c28ebd301f509d": "v5.13-rc3", + "dc09ef3562726cd520c8338c1640872a60187af5": "v5.13-rc5", "dc5698e80cf724770283e10414054662bdf6ccfa": "v4.2-rc1", + "dc7eb8755797ed41a0d1b5c0c39df3c8f401b3d9": "v6.8-rc1", "dc99f600698dcac69b8f56dda9a8a00d645c5ffc": "v3.1-rc1", + "dcb4b8ad6a448532d8b681b5d1a7036210b622de": "v5.13-rc4", "dcde237319e626d1ec3c9d8b7613032f0fd4663a": "v5.6-rc3", + "dcfbb67e48a2becfce7990386e985b9c45098ee5": "v6.4-rc1", "dd2283f2605e": "v4.20-rc1", "dd2283f2605e3b3e9c61bcae844b34f2afa4813f": "v4.20-rc1", "dd42bf1197144ede075a9d4793123f7689e164bc": "v4.5-rc1", @@ -3200,33 +4080,47 @@ "dd9cfe236f95bbda9ceb5a4ca419b9fb574c95f9": "v3.12-rc1", "ddbaf13e3609442b64abb931ac21527772d87980": "v2.6.24-rc1", "ddbd89deb7d32b1fbb879f48d68fda1a8ac58e8e": "v5.17-rc6", + "ddd89d0a059d8e9740c75a97e0efe9bf07ee51f9": "v5.8-rc1", "ddf0322db79c5984dc1a1db890f946dd19b7d6d9": "v5.7-rc1", "de1e0c40aceb9d5bff09c3a3b97b2f1b178af53f": "v3.11-rc1", "de53fd7aedb100f03e5d2231cfce0e4993282425": "v5.4-rc1", "de5494af4815a4c9328536c72741229b7de88e7f": "v5.15-rc1", "de5df63228fcfbd5bb7fd883774c18fec9e61f12": "v3.18-rc1", "de76e695a5ce19c121ba7e246b45f258be678a75": "v2.6.19-rc5", + "de8b6e1c231a95abf95ad097b993d34b31458ec9": "v6.8-rc2", + "de959094eb2197636f7c803af0943cb9d3b35804": "v6.8-rc6", "de9f869616dd95e95c00bdd6b0fcd3421e8a4323": "v5.2-rc4", "dea37a97265588da604c6ba80160a287b72c7bfd": "v5.2-rc1", + "debb9df311582c83fe369baa35fa4b92e8a9c58a": "v5.12-rc8", "dec214d00e0d78a08b947d7dccdfdb84407a9f4d": "v4.13-rc1", "ded845a781a578dfb0b5b2c138e5a067aa3b1242": "v4.12-rc1", "ded85b0c0edd8f45fec88783d7555a5b982449c1": "v6.8-rc1", "ded89912156b1a47d940a0c954c43afbabd0c42c": "v4.8-rc7", "dee1f973ca341c266229faa5a1a5bb268bed3531": "v3.7-rc3", + "def689fc26b9a9622d2e2cb0c4933dd3b1c8071c": "v6.8-rc6", + "df1c357f25d808e30b216188330e708e09e1a412": "v6.6-rc3", + "df25461119d987b8c81d232cfe4411e91dcabe66": "v6.8-rc1", "df453700e8d81b1bdafdf684365ee2b9431fb702": "v5.2-rc1", "df4d92549f23e1c037e83323aff58a21b3de7fe0": "v3.19-rc7", + "df77fbd8c5b222c680444801ffd20e8bbc90a56e": "v5.7-rc1", "df7e40425813c50cd252e6f5e348a81ef1acae56": "v4.17-rc1", "df80cd9b28b9ebaa284a41df611dbf3a2d05ca74": "v4.14-rc6", "dfa73c17d55b921e1d4e154976de35317e43a93a": "v6.5-rc7", "dfb4357da6ddbdf57d583ba64361c9d792b0e0b1": "v4.11-rc1", + "dfc7f7a988dad34c3bf4c053124fb26aa6c5f916": "v6.6-rc5", "dfcb9f4f99f1e9a49e43398a7bfbf56927544af1": "v4.11-rc1", "dfd0743f1d9ea76931510ed150334d571fbab49d": "v5.16-rc7", + "dfd2bf436709b2bccb78c2dda550dde93700efa7": "v6.9-rc1", + "dfeae619d781dee61666d5551b93ba3be755a86b": "v3.16-rc1", "e01e3934a1b2d122919f73bc6ddbe1cdafc4bbdb": "v6.8-rc5", "e022c2f07ae52bfbd92faa273db0db2f34eb28e8": "v2.6.29-rc1", + "e02ee89baa66c40e1002cf8b09141fce7265e0f5": "v6.4-rc1", "e02f0d3970404bfea385b6edb86f2d936db0ea2b": "v6.0-rc3", "e03ee2fe873eb68c1f9ba5112fee70303ebf9dfb": "v6.8-rc4", + "e0526ec5360a48ad3ab2e26e802b0532302a7e11": "v6.8-rc3", "e0535ce58b92d7baf0b33284a6c4f8f0338f943e": "v4.11-rc8", "e05df3b115e7308afbca652769b54e4549fcc723": "v3.8-rc1", + "e0652f8bb44d6294eeeac06d703185357f25d50b": "v5.13-rc4", "e088a685eae94a0607b8f7b99949a0e14d748813": "v4.17-rc1", "e09463f220ca9a1a1ecfda84fcda658f99a1f12a": "v4.18-rc4", "e09e28671cda63e6308b31798b997639120e2a21": "v4.12-rc1", @@ -3236,9 +4130,11 @@ "e0c9c0afd2fc958ffa34b697972721d81df8a56f": "v4.1-rc1", "e0cf75deab8155334c8228eb7f097b15127d0a49": "v4.8-rc4", "e0d3bafd02586cfde286c320f56906fd9fa8d256": "v2.6.30-rc1", + "e0e1958f4c365e380b17ccb35617345b31ef7bf3": "v6.8-rc1", "e0e29b683d6784ef59bbc914eac85a04b650e63c": "v3.10-rc6", "e0e3cea46d31d23dc40df0a49a7a2c04fe8edfea": "v3.6-rc3", "e0f911c81e93fc23fe1a4fb0318ff1c3b1c9027f": "v4.15-rc1", + "e102db780e1c14f10c70dafa7684af22a745b51d": "v5.13-rc5", "e11e0455c0d7d3d62276a0c55d9dfbc16779d691": "v3.9-rc7", "e126ba97dba9edeb6fafa3665b5f8497fc9cdf8c": "v3.11-rc1", "e12d7a46f65ae4b7d58a5e0c1cbfa825cf8d830d": "v6.2-rc5", @@ -3246,20 +4142,30 @@ "e13e02a3c68d899169c78d9a18689bd73491d59a": "v2.6.39-rc1", "e149ed2b805fefdccf7ccdfc19eca22fdd4514ac": "v3.19-rc1", "e159332b9af4b04d882dbcfe1bb0117f0a6d4b58": "v3.19-rc3", + "e15d7f2b81d2e7d93115d46fa931b366c1cdebc2": "v5.9-rc1", + "e169bd4fb2b36c4b2bee63c35c740c85daeb2e86": "v6.8-rc2", "e16b859872b87650bb55b12cca5a5fcdc49c1442": "v5.18-rc3", "e192be9d9a30555aae2ca1dc3aad37cba484cd4a": "v4.8-rc1", + "e193b7955dfad68035b983a0011f4ef3590c85eb": "v6.6-rc5", + "e1cd4004cde7c9b694bbdd8def0e02288ee58c74": "v6.6-rc5", "e1eaea46bb4020b38a141b84f88565d4603f8dd0": "v2.6.35-rc1", "e1f32190cf7ddd55778b460e7d44af3f76529698": "v5.5-rc1", "e20cf8d3f1f763ad28a9cb3b41305b8a8a42653e": "v5.0-rc1", + "e22e45fc9e41bf9fcc1e92cfb78eb92786728ef0": "v5.16-rc8", "e230a4455ac3e9b112f0367d1b8e255e141afae0": "v6.0-rc4", + "e230f0c44f011f3270680a506b19b7e84c5e8923": "v5.13-rc1", "e237ec37ec154564f8690c5bd1795339955eeef9": "v3.19-rc3", "e2412c07f8f3040593dfb88207865a3cd58680c0": "v5.2-rc4", "e24c745272072fd2abe55209f1949b7b7ee602a7": "v2.6.33-rc1", "e25a89f743b18c029bfbe5e1663ae0c7190912b0": "v5.18-rc1", "e26b6d39270f5eab0087453d9b544189a38c8564": "v6.8-rc1", + "e26ca4b535820b1445dcef3c0f82b3fb5b45108b": "v5.12-rc1-dontuse", + "e26d3009efda338f19016df4175f354a9bd0a4ab": "v6.4", + "e29c84857e2d51aa017ce04284b962742fb97d9e": "v5.13-rc1", "e2a1256b17b16f9b9adf1b6fea56819e7b68e463": "v5.18-rc2", "e2b19125e94124daaeda1ddcf9b85b04575ad86f": "v2.6.39-rc1", "e2b3b35eb9896f26c98b9a2c047d9111638059a2": "v4.16-rc1", + "e2b54eaf28df0c978626c9736b94f003b523b451": "v6.8-rc7", "e2b706c691905fe78468c361aaabc719d0a496f1": "v6.7-rc4", "e2ca90c276e1fc410d7cd3c1a4eee245ec902a20": "v3.9-rc2", "e2cb6b891ad2b8caa9131e3be70f45243df82a80": "v5.13-rc1", @@ -3276,24 +4182,38 @@ "e37e43a497d5a8b7c0cc1736d56986f432c394c9": "v4.9-rc1", "e39d200fa5bf5b94a0948db0dae44c1b73b84a56": "v4.15-rc5", "e3b914bc7eb6bcecc5b597ee6e31fc40442c291f": "v4.12-rc1", + "e3dfcab2080dc1f9a4b09cc1327361bc2845bfcd": "v6.6-rc1", + "e3f0c638f428fd66b5871154b62706772045f91a": "v6.1-rc6", + "e3f9bed9bee261e3347131764e42aeedf1ffea61": "v6.8-rc2", "e40607cbe270a9e8360907cb1e62ddf0736e4864": "v3.18-rc5", + "e41a962f82e7afb5b1ee644f48ad0b3aee656268": "v5.13-rc1", + "e421946be7d9bf545147bea8419ef8239cb7ca52": "v6.8-rc2", "e4571b8c5e9ffa1e85c0c671995bd4dcc5c75091": "v5.15-rc1", "e461fcb194172b3f709e0b478d2ac1bdac7ab9a3": "v3.11-rc1", "e48354ce078c079996f89d715dfa44814b4eba01": "v3.1-rc1", + "e483bb9a991bdae29a0caa4b3a6d002c968f94aa": "v5.13-rc1", "e494c2f995d6181d6e29c4927d68e0f295ecf75b": "v4.19-rc1", + "e4c72c06c367758a14f227c847f9d623f1994ecf": "v6.0-rc1", + "e4c9062717feda88900b566463228d1c4910af6d": "v5.11-rc1", "e4d4d456436bfb2fe412ee2cd489f7658449b098": "v5.12-rc7", + "e4d8716c3dcec47f1557024add24e1f3c09eb24b": "v5.13-rc4", "e4e38121507a27d2ccc4b28d9e7fc4818a12c44c": "v3.15-rc1", "e4f2379db6c6823c5d4a4c2c912df00c65de51d7": "v3.11-rc1", "e4f3aa2e1e67bb48dfbaaf1cad59013d5a5bc276": "v4.20-rc1", "e50293ef9775c5f1cf3fcc093037dd6a8c5684ea": "v4.4-rc6", "e50b9b9e8610d47b7c22529443e45a16b1ea3a15": "v6.3", "e50e5129f384ae282adebfb561189cdb19b81cee": "v4.13-rc1", + "e53899771a02f798d436655efbd9d4b46c0f9265": "v6.6-rc6", "e5497d766adb92bcbd1fa4a147e188f84f34b20a": "v3.1-rc1", "e54ad7f1ee263ffa5a2de9c609d58dfa27b21cd9": "v4.7-rc3", "e5be15c63804": "v2.6.26-rc1", + "e5cc361e21648b75f935f9571d4003aaee480214": "v5.13-rc4", "e5d82a7360d124ae1a38c2a5eac92ba49b125191": "v5.3-rc1", "e5e884b42639c74b5b57dc277909915c0aefc8bb": "v5.5", + "e5ef93d02d6c9cc3a14e7348481c9e41a528caa1": "v6.6-rc2", "e5ff215941d59f8ae6bf58f6428dc5c26745a612": "v2.6.27-rc1", + "e5ffd1263dd5b44929c676171802e7b6af483f21": "v6.8-rc1", + "e622502c310f1069fd9f41cd38210553115f610a": "v6.8-rc3", "e66eded8309ebf679d3d3c1f5820d1f2ca332c71": "v3.9-rc3", "e677edbcabee849bfdd43f1602bccbecf736a646": "v5.18-rc2", "e682adf021be796940be6cc10c07be7f7398c220": "v3.14-rc1", @@ -3302,36 +4222,49 @@ "e69dbd4619e7674c1679cba49afd9dd9ac347eef": "v5.4-rc1", "e6a21a14106d9718aa4f8e115b1e474888eeba44": "v5.18-rc1", "e6a623460e5fc960ac3ee9f946d3106233fd28d8": "v3.15-rc6", + "e6a7df96facdcf5b1f71eb3ec26f2f9f6ad61e57": "v6.8-rc4", "e6afc8ace6dd5cef5e812f26c72579da8806f5ac": "v4.7-rc1", "e6bd18f57aad1a2d1ef40e646d03ed0f2515c9e3": "v4.6-rc6", "e6cf91b7b47ff82b624bdfe2fdcde32bb52e71dd": "v6.2-rc5", "e6e43b8aa7cd3c3af686caf0c2e11819a886d705": "v6.6-rc4", + "e6f57c6881916df39db7d95981a8ad2b9c3458d6": "v6.8-rc6", "e6f77540c067b48dee10f1e33678415bfcc89017": "v4.14-rc1", "e6f95ec8db312491235b4f06343fbd991a82ce20": "v2.6.35-rc1", + "e70f7a11876a1a788ceadf75e9e5f7af2c868680": "v5.13-rc4", "e72436bc3a5206f95bb384e741154166ddb3202e": "v5.8-rc1", "e756af5b30b008f6ffcfebf8ad0b477f6f225b62": "v3.7-rc1", "e785fa0a164aa11001cba931367c7f94ffaff888": "v4.14-rc2", + "e7870cf13d20f56bfc19f9c3e89707c69cf104ef": "v6.8-rc4", "e7af6307a8a54f0b873960b32b6a644f2d0fbd97": "v5.4-rc7", "e7e0c3e26587749b62d17b9dd0532874186c77f7": "v4.6-rc6", "e7e11f99564222d82f0ce84bd521e57d78a6b678": "v4.11-rc6", + "e7e3a7c35791fe7a70997883fb8ada5866a40f4d": "v6.6-rc1", "e8180dcaa8470ceca21109f143876fdcd9fe050a": "v3.10-rc5", + "e81a7018d93a7de31a3f121c9a7eecd0a5ec58b0": "v5.10-rc1", + "e821d50ab5b956ed0effa49faaf29912fd4106d9": "v6.8-rc1", "e82edcc75c4e2389a3d7223c4ef1737bd9a07e5d": "v5.17-rc1", "e860d2c904d1a9f38a24eb44c9f34b8f915a6ea3": "v4.14-rc1", "e86ee2d44b44056243da17c120ad258717cedf9b": "v4.18-rc1", "e88b2c6e5a4d9ce30d75391e4d950da74bb2bd90": "v5.11", + "e88ed227f639ebcb31ed4e5b88756b47d904584b": "v6.5-rc1", "e89e9cf539a28df7d0eb1d0a545368e9920b34ac": "v2.6.15-rc1", "e8c66efbfe3a2e3cbc573f2474a3d51690f1b857": "v4.20-rc1", "e8d20c3ded59a092532513c9bd030d1ea66f5f44": "v6.3-rc4", "e8d5f92b8d30bb4ade76494490c3c065e12411b1": "v5.10-rc1", "e8ef967a54f401ac5e8637b7f7f8bddb006144c4": "v2.6.29-rc1", + "e95df4ec0c0c9791941f112db699fae794b9862a": "v6.9-rc1", + "e96fddb32931d007db12b1fce9b5e8e4c080401b": "v6.8-rc4", "e97f852fd4561e77721bb9a4e0ea9d98305b1e93": "v4.20-rc5", "e99476497687ef9e850748fe6d232264f30bc8f9": "v6.6-rc1", "e994b2f0fb9229aeff5eea9541320bd7b2ca8714": "v4.4-rc1", "e9b61f19858a5d6c42ce2298cf138279375d0d9b": "v4.5-rc1", "e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c": "v3.18-rc2", + "e9c65989920f7c28775ec4e0c11b483910fb67b8": "v6.6-rc5", "e9c6a182649f4259db704ae15a91ac820e63b0ca": "v3.12-rc6", + "e9d32af478cfc3744a45245c0b126738af4b3ac4": "v5.13-rc1", "e9d8b2c2968499c1f96563e6522c56958d5a1d0d": "v3.15-rc1", "e9da0b56fe27206b49f39805f7dcda8a89379062": "v5.17-rc6", + "e9e006f5fcf2bab59149cb38a48a4817c1b538b4": "v5.4-rc1", "e9f57ebcba563e0cd532926cab83c92bb4d79360": "v4.5-rc1", "ea010070d0a7497253d5a6f919f6dd107450b31a": "v4.20", "ea04efee7635c9120d015dcdeeeb6988130cb67a": "v4.14-rc6", @@ -3341,13 +4274,18 @@ "ea3d7209ca01da209cda6f0dea8be9cc4b7a933b": "v4.5-rc1", "ea4f1009408efb4989a0f139b70fb338e7f687d0": "v6.3-rc7", "ea6789980fdaa610d7eb63602c746bf6ec70cd2b": "v4.14-rc7", + "ea6dd25deeb5b797a145be7f860e3085e7d104c3": "v5.6-rc1", "ea702b80e0bbb2448e201472127288beb82ca2fe": "v3.8-rc3", "ea75080110a4c1fa011b0a73cb8f42227143ee3e": "v5.6-rc2", "ea937f77208323d35ffe2f8d8fc81b00118bfcda": "v6.8-rc1", + "ea941ac294d75d0ace50797aebf0056f6f8f7a7f": "v5.12-rc8", "ea9a4a8b0e5a34eca6613e39d21be879d92ecff5": "v2.6.23-rc1", + "ea9aadc06a9f10ad20a90edc0a484f1147d88a7a": "v5.12-rc8", "ea9b9907b82a09bd1a708004454f7065de77c5b0": "v2.6.26-rc1", + "eaab1d45cdb4bb0c846bd23c3d666d5b90af7b41": "v5.13-rc1", "eab09532d40090698b05a07c1c87f39fdbc5fab5": "v4.13-rc1", "eab098246625e91c1cbd6e8f75b09e4c9c28a9fc": "v5.12-rc1-dontuse", + "eab2404ba798a8efda2a970f44071c3406d94e57": "v5.7-rc1", "eaba3b28401f50e22d64351caa8afe8d29509f27": "v5.12-rc1", "eac616557050737a8d6ef6fe0322d0980ff0ffde": "v5.1-rc1", "ead16e53c2f0ed946d82d4037c630e2f60f4ab69": "v5.3-rc4", @@ -3357,19 +4295,26 @@ "eb1231f73c4d7dc26db55e08c070e6526eaf7ee5": "v5.13-rc1", "eb178619f930fa2ba2348de332a1ff1c66a31424": "v3.8-rc6", "eb4b248e152d3ecf189b9d32c04961360dbd938a": "v4.19-rc1", + "eb50aaf960e3bedfef79063411ffd670da94b84b": "v5.12-rc5", + "eb5555d422d0fc325e1574a7353d3c616f82d8b5": "v6.8-rc7", "eb66ae030829605d61fbef1909ce310e29f78821": "v4.19", "eb6f13eb9f812f5812ed5d14f241309da369dee6": "v2.6.25-rc1", "eb70e5ab8f95a81283623c03d2c99dfc59fcb319": "v3.5-rc1", + "ebb3f994dd92f8fb4d70c7541091216c1e10cb71": "v5.16-rc8", "ebc08a6f47ee76ecad8e9f26c26e6ec9b46ca659": "v2.6.34-rc1", "ebda44da44f6f309d302522b049f43d6f829f7aa": "v6.1-rc2", "ebe48d368e97d007bfeb76fcb065d6cfc4c96645": "v5.17-rc8", "ebe909e0fdb34b980c5cf636c495e4f0bb0dfda8": "v4.3-rc1", + "ebeae8adf89d9a82359f6659b1663d09beec2faa": "v6.8-rc2", + "ebee7885bb12a8fe2c2f9bac87dbd87a05b645f9": "v5.13-rc1", "ebfdfeeae8c01fcb2b3b74ffaf03876e20835d2d": "v5.9-rc1", "ec011fe847347b40c60fdb5085f65227762e2e08": "v3.13-rc1", "ec0223ec48a90cb605244b45f7c62de856403729": "v3.14-rc6", "ec0994e48ea2aebf62ff08376227f3a9ccf46262": "v2.6.34-rc2", "ec0d215f9420564fc8286dcf93d2d068bb53a07e": "v2.6.26-rc9", "ec13b1d6f0a0457312e615335ce8ceb07da50a11": "v4.2-rc1", + "ec185dd3ab257dc2a60953fdf1b6622f524cc5b7": "v5.14-rc5", + "ec32332df7645e0ba463a08d483fe97665167071": "v5.13-rc1", "ec400ddeff200b068ddc6c70f7321f49ecf32ed5": "v3.9-rc1", "ec4eb8a86ade4d22633e1da2a7d85a846b7d1798": "v5.18-rc2", "ec5efe7946280d1e84603389a1030ccec0a767ae": "v3.2-rc1", @@ -3380,6 +4325,7 @@ "ec98ea7070e94cc25a422ec97d1421e28d97b7ee": "v5.12-rc2", "eca94432934fe5f141d084f2e36ee2c0e614cc04": "v5.2", "ecaaab5649781c5a0effdaf298a925063020500e": "v4.15-rc4", + "ecbfb9f118bce49f571675929160e4ecef91cc8a": "v4.8-rc1", "eccb4422cf97a4b0daf97b3f3d68044514fea7bd": "v4.18-rc1", "ecd1735f14d6ac868ae5d8b7a2bf193fa11f388b": "v5.18-rc1", "ecd7918745234e423dd87fcc0c077da557909720": "v3.6-rc7", @@ -3393,12 +4339,14 @@ "ed6473ddc704a2005b9900ca08e236ebb2d8540a": "v4.12-rc1", "ed6fe9d614fc1bca95eb8c0ccd0e92db00ef9d5d": "v3.6-rc5", "ed713e2bc093239ccd380c2ce8ae9e4162f5c037": "v5.19-rc1", + "ed8b94f6e0acd652ce69bd69d678a0c769172df8": "v6.8-rc5", "ed9be64eefe26d7d8b0b5b9fa3ffdf425d87a01f": "v5.12-rc1-dontuse", "eda98796aff0d9bf41094b06811f5def3b4c333c": "v4.4-rc1", "edbd58be15a957f6a760c4a514cd475217eb97fd": "v4.13", "edbe83ab4c27ea6669eb57adb5ed7eaec1118ceb": "v4.1-rc1", "edc4746f253d907d048de680a621e121517f484b": "v5.4-rc3", "edc666e2ff9ec2e4e9510f1127c68c22cffc93f6": "v2.6.19-rc2", + "edcf9725150e42beeca42d085149f4c88fa97afd": "v6.8-rc2", "eddb7732119d53400f48a02536a84c509692faa8": "v5.10-rc1", "edf410cb74dc612fd47ef5be319c5a0bcd6e6ccd": "v5.18", "edfbbf388f293d70bf4b7c0bc38774d05e6f711a": "v3.16-rc3", @@ -3417,30 +4365,42 @@ "ee89cbc2d48150c7c0e9f2aaac00afde99af098c": "v3.1-rc1", "ee8f844e3c5a73b999edf733df1c529d6503ec2f": "v4.11-rc8", "ee9c4e681ec4f58e42a83cb0c22a0289ade1aacf": "v4.12-rc5", + "eea53c5816889ee8b64544fa2e9311a81184ff9c": "v5.13-rc1", "eead1c2ea2509fd754c6da893a94f0e69e83ebe4": "v5.7-rc6", "eeaf06ac1a5584e41cf289f8351e446bb131374b": "v5.1-rc1", "eec04ea119691e65227a97ce53c0da6b9b74b0b7": "v6.7-rc6", "eee5cc2702929fd41cce28058dc6d6717f723f87": "v3.13-rc1", + "eef00a82c568944f113f2de738156ac591bbd5cd": "v6.8-rc4", + "eef5c7b28dbecd6b141987a96db6c54e49828102": "v6.8-rc6", "ef0579b64e93188710d48667cb5e014926af9f1b": "v4.11-rc8", + "ef20cd4dd1633987bcf46ac34ace2c8af212361f": "v4.9-rc1", "ef299cc3fa1a9e1288665a9fdc8bff55629fd359": "v5.6", "ef2b02d3e617cb0400eedf2668f86215e1b0e6af": "v2.6.23-rc7", "ef3313e84acbf349caecae942ab3ab731471f1a1": "v3.9-rc7", "ef38de9217a04c9077629a24652689d8fdb4c6c6": "v5.18-rc5", "ef61eb43ada6c1d6b94668f0f514e4c268093ff3": "v5.1", + "ef67963dac255b293e19815ea3d440567be4626f": "v5.7-rc4", "ef834f7836ec0502f49f20bbc42f1240577a9c83": "v3.18-rc1", "ef85b67385436ddc1998f45f1d6a210f935b3388": "v4.10-rc1", + "ef85bb582c41524e9e68dfdbde48e519dac4ab3d": "v5.13-rc1", "ef87dbe7614341c2e7bfe8d32fcb7028cc97442c": "v3.15-rc5", "efa56305908ba20de2104f1b8508c6a7401833be": "v6.8-rc1", + "efa7df3e3bb5da8e6abbe37727417f32a37fba47": "v6.7", "efa9ace68e487ddd29c2b4d6dd23242158f1f607": "v5.3-rc1", "efc644048ecde54f016011fe10110addd0de348f": "v4.4-rc1", "efe4186e6a1b54bf38b9e05450d43b0da1fd7739": "v5.17-rc6", + "efe68c1ca8f49e8c06afd74b699411bfbb8ba1ff": "v5.8-rc1", + "efe7cf828039aedb297c1f9920b638fffee6aabc": "v6.8-rc5", "efeb7dfea8ee10cdec11b6b6ba4e405edbe75809": "v6.8-rc1", + "efed9a3337e341bd0989161b97453b52567bc59d": "v5.13-rc2", "eff73de2b1600ad8230692f00bc0ab49b166512a": "v5.3-rc1", + "eff9704f5332a13b08fbdbe0f84059c9e7051d5f": "v6.8-rc1", "effda4dd97e878ab83336bec7411cc41b5cc6d37": "v5.2-rc1", "f00432063db1a0db484e85193eccc6845435b80e": "v5.18-rc2", "f00cdc6df7d7cfcabb5b740911e6788cb0802bdb": "v3.16-rc3", "f024ee098476a3e620232e4a78cfac505f121245": "v4.8-rc1", "f026bc29a8e093edfbb2a77700454b285c97e8ad": "v4.14-rc1", + "f02d4086a8f36a0e1aaebf559b54cf24a177a486": "v5.13-rc1", "f043bfc98c193c284e2cd768fefabe18ac2fed9b": "v4.14-rc5", "f04d51404f51947d3feabf2518495ba5aa3bb2c4": "v3.11-rc1", "f05819df10d7b09f6d1eb6f8534a8f68e5a4fe61": "v4.3-rc7", @@ -3449,10 +4409,12 @@ "f09444639099584bc4784dfcd85ada67c6f33e0f": "v4.11-rc1", "f0992098cadb4c9c6a00703b66cafe604e178fea": "v5.10-rc7", "f0a96d1aafd8964e1f9955c830a3e5cb3c60a90f": "v6.4-rc3", + "f0b3d338064e1fe7531f0d2977e35f3b334abfb4": "v5.13-rc4", "f0c3b5093addc8bfe9fe3a5b01acb7ec7969eafa": "v3.11-rc1", "f0d1762554014ce0ae347b9f0d088f2c157c8c72": "v5.1-rc4", "f0d1bec9d58d4c038d0ac958c9af82be6eb18045": "v3.16-rc1", "f0ec1aaf54caddd21c259aea8b2ecfbde4ee4fb9": "v2.6.19-rc4", + "f0eee815babed70a749d2496a7678be5b45b4c14": "v6.6-rc6", "f106eee10038c2ee5b6056aaf3f6d5229be6dcdd": "v2.6.35-rc1", "f1082dd31fe461d482d69da2a8eccfeb7bf07ac2": "v5.18-rc1", "f1174f77b50c94eecaa658fdc56fa69b421de4b8": "v4.14-rc1", @@ -3467,13 +4429,20 @@ "f19b00da8ed37db4e3891fe534fcf3a605a0e562": "v3.10-rc1", "f19d5870cbf72d4cb2a8e1f749dff97af99b071e": "v3.8-rc1", "f1a411873c85b642f13b01f21b534c2bab81fc1b": "v6.4-rc6", + "f1acb109505d983779bbb7e20a1ee6244d2b5736": "v6.8-rc5", + "f1c6366e304328de301be362eca905a3503ff33b": "v5.11-rc1", + "f1cb8f9beba8699dd1b4518418191499e53f7b17": "v4.18-rc1", "f1ce3986baa62cffc3c5be156994de87524bab99": "v5.13-rc1", + "f1d95df0f31048f1c59092648997686e3f7d9478": "v6.6-rc3", "f1e255d60ae66a9f672ff9a207ee6cd8e33d2679": "v4.18-rc5", "f227e3ec3b5cad859ad15666874405e8c1bbc1d4": "v5.8", "f232326f6966cf2a1d1db7bc917a4ce5f9f55f76": "v5.12-rc5", "f26967b9f7a830e228bb13fb41bd516ddd9d789d": "v5.19-rc1", "f2815633504b442ca0b0605c16bf3d88a3a0fcea": "v3.9-rc4", + "f285dfb98562e8380101095d168910df1d07d8be": "v5.12-rc1-dontuse", "f28cd2af22a0c134e4aa1c64a70f70d815d473fb": "v5.1-rc4", + "f2a772c51206b0c3f262e4f6a3812c89a650191b": "v5.13-rc4", + "f2c7ef3ba9556d62a7e2bb23b563c6510007d55c": "v5.11-rc3", "f2d67fec0b43edce8c416101cdc52e71145b5fef": "v5.7-rc1", "f2e323ec96077642d397bb1c355def536d489d16": "v3.18-rc1", "f2e5ddcc0d12f9c4c7b254358ad245c9dddce13b": "v3.12-rc7", @@ -3486,12 +4455,14 @@ "f31a9f7c71691569359fa7fb8b0acaa44bce0324": "v3.17-rc1", "f3277cbfba763cd2826396521b9296de67cf1bbc": "v5.10-rc1", "f342de4e2f33e0e39165d8639387aa6c19dff660": "v6.8-rc2", + "f34e8bb7d6c6626933fe993e03ed59ae85e16abb": "v6.9-rc2", "f3554aeb991214cbfafd17d55e2bfddb50282e32": "v5.3-rc1", "f3747379accba8e95d70cec0eae0582c8c182050": "v3.19-rc6", "f384796c40dc55b3dba25e0ee9c1afd98c6d24d1": "v4.17-rc1", "f38a7b75267f1fb240a8178cbcb16d66dd37aac8": "v4.16-rc1", "f3951a3709ff50990bf3e188c27d346792103432": "v4.4-rc1", "f3a2181e16f1dcbf5446ed43f6b5d9f56c459f85": "v5.6-rc1", + "f3a95075549e0e5c36db922caf86847db7a35403": "v5.13-rc1", "f3b59291a69d0b734be1fc8be489fef2dd846d3d": "v3.8-rc1", "f3d3342602f8bcbf37d7c46641cb9bca7618eb1c": "v3.13-rc1", "f3e775962ccbc62bd93f2200b82db88af05d0137": "v3.17-rc1", @@ -3500,12 +4471,16 @@ "f4124500c2c13eb1208c6143b3f6d469709dea10": "v3.15-rc1", "f428fe4a04cc339166c8bbd489789760de3a0cee": "v4.15-rc8", "f4351a199cc120ff9d59e06d02e8657d08e6cc46": "v5.0-rc2", + "f4384b3e54ea813868bb81a861bf5b2406e15d8f": "v6.6-rc6", + "f43b941fd61003659a3f0e039595e5e525917aa8": "v5.13-rc1", "f43bfaeddc79effbf3d0fcb53ca477cca66f3db8": "v4.6-rc5", "f43f39958beb206b53292801e216d9b8a660f087": "v4.20-rc3", "f443fd5af5dbd531f880d3645d5dd36976cf087f": "v6.5-rc6", "f44d04e696feaf13d192d942c4f14ad2e117065a": "v5.9-rc5", "f458d039db7e8518041db4169d657407e3217008": "v5.6-rc1", "f45db2b909c7e76f35850e78f017221f30282b8e": "v5.8-rc1", + "f46c8a75263f97bda13c739ba1c90aced0d3b071": "v6.8-rc1", + "f4713a3dfad045d46afcb9c2a7d0bba288920ed4": "v3.18-rc7", "f484a794e4ee2a9ce61f52a78e810ac45f3fe3b3": "v6.2-rc6", "f48da8b14d04ca87ffcffe68829afd45f926ec6a": "v3.18-rc3", "f48e91e87e67b56bef63393d1a02c6e22c1d7078": "v4.12-rc2", @@ -3516,14 +4491,18 @@ "f538d4da8d521746ca5ebf8c1a8105eb49bfb45e": "v2.6.15-rc1", "f53dc67c5e7babafe239b93a11678b0e05bead51": "v2.6.25-rc1", "f5449e74802c1112dea984aec8af7a33c4516af1": "v5.10-rc1", + "f546c4282673497a06ecb6190b50ae7f6c85b02f": "v6.8-rc2", "f54e18f1b831c92f6512d2eedb224cd63d607d3d": "v3.19-rc1", "f5527fffff3f002b0a6b376163613b82f69de073": "v4.9-rc7", "f5563318ff1bde15b10e736e97ffce13be08bc1a": "v3.12-rc7", "f56e65dff6ad52395ef45738799b4fb70ff43376": "v5.10-rc1", "f5a2b3ffb7af4b6ae5b905850a1a6bad82b268b9": "v5.3-rc1", "f5bbbbe4d63577026f908a809f22f5fd5a90ea1f": "v4.19-rc1", + "f5c24d94512f1b288262beda4d3dcb9629222fc7": "v6.8-rc1", "f5c779b7ddbda30866cf2a27c63e34158f858c73": "v6.4-rc1", + "f5c7e8425f18fdb9bdb7d13340651d7876890329": "v5.13-rc2", "f5cb779ba16334b45ba8946d6bfa6d9834d1527f": "v4.16-rc1", + "f5dcccd647da513a89f3b6ca392b0c1eb050b9fc": "v5.13-rc1", "f5e81d1117501546b7be050c5fbafa6efd2c722c": "v5.14-rc4", "f5ea110044fa858925a880b4fa9f551bfa2dfc38": "v3.10-rc1", "f60a85cad677c4f9bb4cadd764f1d106c38c7cf8": "v5.12-rc5", @@ -3535,7 +4514,10 @@ "f644bc449b37cc32d3ce7b36a88073873aa21bd5": "v5.13-rc7", "f647d7c155f069c1a068030255c300663516420e": "v3.19-rc1", "f6505fbabc426b9e293da5bb702ace2eb1ccf87d": "v4.2-rc1", + "f6564fce256a3944aa1bc76cb3c40e792d97c1eb": "v6.8-rc3", "f65886606c2d3b562716de030706dfe1bea4ed5e": "v5.9-rc5", + "f67055780caac6a99f43834795c43acf99eba6a6": "v2.6.17-rc1", + "f6789593d5cea42a4ecb1cbeab6a23ade5ebbba7": "v3.16", "f67b15037a7a50c57f72e69a6d59941ad90a0f0f": "v4.16", "f680b6e6062e": "v6.2-rc1", "f69bcbf3b4c4b333dcd7a48eaf868bf0c88edab5": "v3.13-rc1", @@ -3555,11 +4537,14 @@ "f718863aca469a109895cb855e6b81fff4827d71": "v6.5-rc4", "f71f01394f742fc4558b3f9f4c7ef4c4cf3b07c8": "v5.18-rc6", "f7464060f7ab9a2424428008f0ee9f1e267e410f": "v5.15-rc1", + "f74a7afc224acd5e922c7a2e52244d891bbe44ee": "v6.6-rc6", "f753a68980cf4b59a80fe677619da2b1804f526d": "v6.2-rc8", + "f77bd544a6bbe69aa50d9ed09f13494cf36ff806": "v5.13-rc1", "f78146b0f9230765c6315b2e14f56112513389ad": "v3.5-rc1", "f79643787e0a0762d2409b7b8334e83f22d85695": "v5.10-rc5", "f7a1337f0d29b98733c8824e165fca3371d7d4fd": "v5.4-rc7", "f7d8a19f9a056a05c5c509fa65af472a322abfee": "v5.15-rc7", + "f7e6b19bc76471ba03725fe58e0c218a3d6266c3": "v5.9-rc1", "f7ed45be3ba524e06a6d933f0517dc7ad2d06703": "v3.9-rc1", "f81f5b2db8692ff1d2d5f4db1fde58e67aa976a3": "v4.9-rc1", "f83baa0cb6cfc92ebaf7f9d3a99d7e34f2e77a8a": "v5.16-rc5", @@ -3568,8 +4553,10 @@ "f856567b930dfcdbc3323261bf77240ccdde01f5": "v3.12", "f85daf0e725358be78dfd208dea5fd665d8cb901": "v5.19-rc8", "f87904c075515f3e1d8f4a7115869d3b914674fd": "v6.0-rc3", + "f88359e1588b85cf0e8209ab7d6620085f3441d9": "v5.13-rc1", "f88649721268999bdff09777847080a52004f691": "v3.16-rc3", "f88814cc2578c121e6edef686365036db72af0ed": "v5.8-rc7", + "f88d8ea67fbdbac7a64bfa6ed9a2ba27bb822f74": "v5.3-rc1", "f88eb7c0d002a67ef31aeb7850b42ff69abc46dc": "v5.4-rc2", "f8942e07a3db9d82e8fb11d3d494876b8bae9ff9": "v2.6.37-rc1", "f8a00cef17206ecd1b30d3d9f99e10d9fa707aa7": "v4.19-rc7", @@ -3578,12 +4565,17 @@ "f90cf6079bf67988f8b1ad1ade70fc89d0080905": "v5.10-rc1", "f91072ed1b7283b13ca57fcfbece5a3b92726143": "v5.10-rc1", "f92363d12359498f9a9960511de1a550f0ec41c2": "v3.8-rc1", + "f93e71aea6c60ebff8adbd8941e678302d377869": "v6.7", "f94b47c6bde624d6c07f43054087607c52054a95": "v5.19-rc1", + "f94fd25cb0aaf77fd7453f31c5d394a1a68ecf60": "v5.19-rc1", "f95bdb700bc6bb74e1199b1f5f90c613e152cfa7": "v6.4-rc1", "f980f9c31a923e9040dee0bc679a5f5b09e61f40": "v5.10-rc1", + "f98364e926626c678fb4b9004b75cacf92ff0662": "v6.9-rc1", + "f990874b1c98fe8e57ee9385669f501822979258": "v6.6-rc6", "f991af3daabaecff34684fd51fac80319d1baad1": "v4.13-rc1", "f9929ef6a2a55f03aac61248c6a3a987b8546f2a": "v5.17-rc4", "f9b62f9843c7b0afdaecabbcebf1dbba18599408": "v6.1-rc8", + "f9baa501b4fd6962257853d46ddffbc21f27e344": "v5.13-rc2", "f9bf6c03eca1077cae8de0e6d86427656fa42a9b": "v6.1-rc1", "f9d87929d451d3e649699d0f1d74f71f77ad38f5": "v5.17-rc2", "fa00c437eef8dc2e7b25f8cd868cfa405fcc2bb3": "v4.8-rc3", @@ -3593,19 +4585,27 @@ "fa3a5a1880c91bb92594ad42dfe9eedad7996b86": "v5.4-rc8", "fa3d315a4ce2c0891cdde262562e710d95fba19e": "v3.0-rc1", "fa40d9734a57bcbfa79a280189799f76c88f7bb0": "v5.15", + "fa5492ee89463a7590a1449358002ff7ef63529f": "v6.8-rc1", + "fa765c4b4aed2d64266b694520ecb025c862c5a9": "v6.8-rc5", + "fa7e6abc75f3d491bc561734312d065dc9dc2a77": "v5.13-rc3", "fa7f517cb26eb1a1a1f0baffcced39f6c3ec3337": "v3.16-rc1", "fa8c269353d560b7c28119ad7617029f92e40b15": "v4.4-rc1", "faa775c41d655a4786e9d53cb075a77bb5a75f66": "v5.16-rc1", + "faaf05b00aecdb347ffd1d763d024394ec0329f8": "v5.10-rc1", "faaf946a7d5b79194358437150f34ab4c66bfe21": "v3.6-rc1", "fac35ba763ed07ba93154c95ffc0c4a55023707f": "v6.1-rc1", "fac8e0f579695a3ecbc4d3cac369139d7f819971": "v4.6-rc1", "fb09692e71f13af7298eb603a1975850b1c7a8d8": "v3.9-rc1", "fb18802a338b36f675a388fc03d2aa504a0d0899": "v5.12-rc1-dontuse", + "fb1a79a6b6e1223ddb18f12aa35e36f832da2290": "v5.14-rc1", "fb1d9738ca053ea8afa5e86af6463155f983b01c": "v2.6.33-rc1", "fb24771faf72a2fd62b3b6287af3c610c3ec9cf1": "v6.0-rc1", + "fb3bd914b3ec28f5fb697ac55c4846ac2d542855": "v6.5-rc6", "fb4554c2232e44d595920f4d5c66cf8f7d13f9bc": "v5.18", + "fb5a4315591dae307a65fc246ca80b5159d296e1": "v6.6-rc1", "fb5be6a7b4863ecc44963bb80ca614584b6c7817": "v5.4-rc7", "fb73974172ffaaf57a7c42f35424d9aece1a5af6": "v5.7-rc4", + "fb7516d42478ebc8e2f00efb76ef96f7b68fd8d3": "v4.16-rc1", "fb9987d0f748c983bb795a86f47522313f701a08": "v2.6.35-rc1", "fbd40ea0180a2d328c5adc61414dc8bab9335ce2": "v4.6-rc1", "fbe0e839d1e22d88810f3ee3e2f1479be4c0aa4a": "v4.15-rc9", @@ -3625,14 +4625,17 @@ "fc739a058d99c9297ef6bfd923b809d85855b9a9": "v5.4-rc3", "fc9bbca8f650e5f738af8806317c0a041a48ae4a": "v3.9-rc8", "fcb323cc53e29d9cc696d606bb42736b32dd9825": "v5.5-rc1", + "fcb3635f5018e53024c6be3c3213737f469f74ff": "v5.14-rc1", "fcb48454c23c5679d1a2e252f127642e91b05cbe": "v5.10-rc5", "fcd91dd449867c6bfe56a81cabba76b829fd05cd": "v4.9-rc4", "fcd95807fb61e67d602610e7ff7129ed769e9fee": "v2.6.35-rc1", "fcdf445ff42f036d22178b49cf64e92d527c1330": "v5.3-rc1", "fce466eab7ac6baa9d2dcd88abcf945be3d4a089": "v4.19-rc1", + "fcf6b1b729bcd23f2b49a84fb33ffbb44712ee6a": "v3.18-rc2", "fd0815f632c24878e325821943edccc7fde947a2": "v6.3-rc3", "fd19a3d195be23e8d9d0d66576b96ea25eea8323": "v4.3-rc1", "fd19d3b45164466a4adce7cbff448ba9189e1427": "v4.14-rc5", + "fd261ce6a30e01ad67c416e2c67e263024b3a6f9": "v5.1-rc1", "fd3040b9394c58bcedb83554bcf1a073021d6b36": "v5.19-rc1", "fd31f3996af2": "v6.0-rc1", "fd3858554b62c3af6b7664b5c58ad864c87116c9": "v2.6.19-rc1", @@ -3648,26 +4651,40 @@ "fdf5af0daf8019cec2396cdef8fb042d80fe71fa": "v3.3-rc1", "fdf7cb4185b60c68e1a75e61691c4afdc15dea0e": "v4.14-rc6", "fdf82a7856b32d905c39afc85e34364491e46346": "v4.19-rc1", + "fdf87a0dc26d0550c60edc911cda42f9afec3557": "v6.8-rc6", + "fdfa083549de5d50ebf7f6811f33757781e838c0": "v6.8-rc6", + "fe0a7776d4d19e613bb8dd80fe2d78ae49e8b49d": "v6.8-rc1", + "fe3fccde8870764ba3e60610774bd7bc9f8faeff": "v5.13-rc1", "fe415186b43df0db1f17fa3a46275fd92107fe71": "v5.16-rc7", "fe685aabf7c8c9f138e5ea900954d295bf229175": "v3.6-rc1", + "fe752331d4b361d43cfd0b89534b4b2176057c32": "v6.8-rc4", "fe77ba6f4f97690baa4c756611a07f3cc033f6ae": "v2.6.13-rc1", "fe8222406c8277a21172479d3a8283d31c209028": "v2.6.38-rc1", "fe9c842695e26d8116b61b80bfb905356f07834b": "v4.16-rc3", + "fe9f801355f0b47668419f30f1fac1cf4539e736": "v6.8-rc7", + "fec356a61aa3d3a66416b4321f1279e09e0f256f": "v5.13-rc3", "fecf31ee395b0295f2d7260aa29946b7605f7c85": "v5.19-rc1", "fed1755b118147721f2c87b37b9d66e62c39b668": "v5.11-rc1", "fee060cd52d69c114b62d1a2948ea9648b5131f9": "v5.19-rc1", + "fee3ff99bc67604fba77f19da0106f3ec52b1956": "v5.13-rc1", "ff002b30181d30cdfbca316dadd099c3ca0d739c": "v5.6-rc2", "ff05d4b45dd89b922578dac497dcabf57cf771c6": "v6.1-rc1", "ff0a3a7d52ff7282dbd183e7fc29a1fe386b0c30": "v6.5-rc1", "ff2047fb755d4415ec3c70ac799889371151796d": "v5.12-rc1-dontuse", "ff2bb89335daec6053b5ac778369f7f72b931142": "v4.7-rc1", "ff33299ec8bb80cdcc073ad9c506bd79bb2ed20b": "v6.6-rc1", + "ff36b0d953dc4cbc40a72945920ff8e805f1b0da": "v5.12-rc1-dontuse", + "ff40e51043af63715ab413995ff46996ecf9583f": "v5.13-rc5", "ff4dd73dd2b4806419f8ff65cbce11d5019548d0": "v4.11-rc1", + "ff67dbd554b2aaa22be933eced32610ff90209dd": "v5.13-rc3", "ff8376ade4f668130385839cef586a0990f8ef87": "v5.18-rc1", "ffa0160a103917defd5d9c097ae0455a59166e03": "v4.5-rc1", + "ffa1bf97425bd511b105ce769976e20a845a71e9": "v5.12-rc1-dontuse", + "ffb76a86f8096a8206be03b14adda6092e18e275": "v5.16-rc7", "ffc8b30866879ed9ba62bd0a86fecdbd51cd3d19": "v3.11-rc1", "ffd980f976e7fd666c2e61bf8ab35107efd11828": "v2.6.25-rc1", "ffdde5932042600c6807d46c1550b28b0db6a3bc": "v5.5-rc1", "ffe2a22562444720b05bdfeb999c03e810d84cbb": "v6.2-rc7", + "fff1f3001cc58b5064a0f1154a7ac09b76f29c44": "v4.4-rc1", "fffb0b52d5258554c645c966c6cbef7de50b851d": "v6.3-rc7" } \ No newline at end of file
diff --git a/data/kernel_cves.json b/data/kernel_cves.json index ff2436f..28c6434 100644 --- a/data/kernel_cves.json +++ b/data/kernel_cves.json
@@ -52999,6 +52999,40 @@ "Ubuntu": "https://ubuntu.com/security/CVE-2019-25045" } }, + "CVE-2019-25160": { + "affected_versions": "v2.6.19-rc1 to v5.0", + "breaks": "446fda4f26822b2d42ab3396aafcedf38a9ff2b6", + "cmt_msg": "netlabel: fix out-of-bounds memory accesses", + "fixes": "5578de4834fe0f2a34fedc7374be691443396d1f", + "last_affected_version": "5.-1", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetlabel: fix out-of-bounds memory accesses\n\nThere are two array out-of-bounds memory accesses, one in\ncipso_v4_map_lvl_valid(), the other in netlbl_bitmap_walk(). Both\nerrors are embarassingly simple, and the fixes are straightforward.\n\nAs a FYI for anyone backporting this patch to kernels prior to v4.8,\nyou'll want to apply the netlbl_bitmap_walk() patch to\ncipso_v4_bitmap_walk() as netlbl_bitmap_walk() doesn't exist before\nLinux v4.8.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2019-25160", + "ExploitDB": "https://www.exploit-db.com/search?cve=2019-25160", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2019-25160", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2019-25160", + "SUSE": "https://www.suse.com/security/cve/CVE-2019-25160", + "Ubuntu": "https://ubuntu.com/security/CVE-2019-25160" + } + }, + "CVE-2019-25162": { + "affected_versions": "v4.3-rc1 to v6.0-rc1", + "breaks": "611e12ea0f121a31d9e9c4ce2a18a77abc2f28d6", + "cmt_msg": "i2c: Fix a potential use after free", + "fixes": "e4c72c06c367758a14f227c847f9d623f1994ecf", + "last_affected_version": "5.18.17", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: Fix a potential use after free\n\nFree the adap structure only after we are done using it.\nThis patch just moves the put_device() down a bit to avoid the\nuse after free.\n\n[wsa: added comment to the code, added Fixes tag]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2019-25162", + "ExploitDB": "https://www.exploit-db.com/search?cve=2019-25162", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2019-25162", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2019-25162", + "SUSE": "https://www.suse.com/security/cve/CVE-2019-25162", + "Ubuntu": "https://ubuntu.com/security/CVE-2019-25162" + } + }, "CVE-2019-3016": { "affected_versions": "v4.10-rc1 to v5.6-rc1", "breaks": "0b9f6c4615c993d2b552e0d2bd1ade49b56e5beb", @@ -62201,6 +62235,227 @@ "Ubuntu": "https://ubuntu.com/security/CVE-2020-36766" } }, + "CVE-2020-36775": { + "affected_versions": "v2.6.12-rc2 to v5.7-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "f2fs: fix to avoid potential deadlock", + "fixes": "df77fbd8c5b222c680444801ffd20e8bbc90a56e", + "last_affected_version": "5.6.6", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix to avoid potential deadlock\n\nUsing f2fs_trylock_op() in f2fs_write_compressed_pages() to avoid potential\ndeadlock like we did in f2fs_write_single_data_page().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36775", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36775", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36775", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36775", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36775", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36775" + } + }, + "CVE-2020-36776": { + "affected_versions": "v5.8-rc4 to v5.13-rc1", + "breaks": "371a3bc79c11b707d7a1b7a2c938dc3cc042fffb", + "cmt_msg": "thermal/drivers/cpufreq_cooling: Fix slab OOB issue", + "fixes": "34ab17cc6c2c1ac93d7e5d53bb972df9a968f085", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nthermal/drivers/cpufreq_cooling: Fix slab OOB issue\n\nSlab OOB issue is scanned by KASAN in cpu_power_to_freq().\nIf power is limited below the power of OPP0 in EM table,\nit will cause slab out-of-bound issue with negative array\nindex.\n\nReturn the lowest frequency if limited power cannot found\na suitable OPP in EM table to fix this issue.\n\nBacktrace:\n[<ffffffd02d2a37f0>] die+0x104/0x5ac\n[<ffffffd02d2a5630>] bug_handler+0x64/0xd0\n[<ffffffd02d288ce4>] brk_handler+0x160/0x258\n[<ffffffd02d281e5c>] do_debug_exception+0x248/0x3f0\n[<ffffffd02d284488>] el1_dbg+0x14/0xbc\n[<ffffffd02d75d1d4>] __kasan_report+0x1dc/0x1e0\n[<ffffffd02d75c2e0>] kasan_report+0x10/0x20\n[<ffffffd02d75def8>] __asan_report_load8_noabort+0x18/0x28\n[<ffffffd02e6fce5c>] cpufreq_power2state+0x180/0x43c\n[<ffffffd02e6ead80>] power_actor_set_power+0x114/0x1d4\n[<ffffffd02e6fac24>] allocate_power+0xaec/0xde0\n[<ffffffd02e6f9f80>] power_allocator_throttle+0x3ec/0x5a4\n[<ffffffd02e6ea888>] handle_thermal_trip+0x160/0x294\n[<ffffffd02e6edd08>] thermal_zone_device_check+0xe4/0x154\n[<ffffffd02d351cb4>] process_one_work+0x5e4/0xe28\n[<ffffffd02d352f44>] worker_thread+0xa4c/0xfac\n[<ffffffd02d360124>] kthread+0x33c/0x358\n[<ffffffd02d289940>] ret_from_fork+0xc/0x18", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36776", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36776", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36776", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36776", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36776", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36776" + } + }, + "CVE-2020-36777": { + "affected_versions": "v4.5-rc1 to v5.13-rc1", + "breaks": "0230d60e4661d9ced6fb0b9a30f182ebdafbba7a", + "cmt_msg": "media: dvbdev: Fix memory leak in dvb_media_device_free()", + "fixes": "bf9a40ae8d722f281a2721779595d6df1c33a0bf", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: dvbdev: Fix memory leak in dvb_media_device_free()\n\ndvb_media_device_free() is leaking memory. Free `dvbdev->adapter->conn`\nbefore setting it to NULL, as documented in include/media/media-device.h:\n\"The media_entity instance itself must be freed explicitly by the driver\nif required.\"", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36777", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36777", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36777", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36777", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36777", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36777" + } + }, + "CVE-2020-36778": { + "affected_versions": "v5.6-rc1 to v5.13-rc1", + "breaks": "10b17004a74c384c6f410af355b0d6d7a168f613", + "cmt_msg": "i2c: xiic: fix reference leak when pm_runtime_get_sync fails", + "fixes": "a85c5c7a3aa8041777ff691400b4046e56149fd3", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: xiic: fix reference leak when pm_runtime_get_sync fails\n\nThe PM reference count is not expected to be incremented on\nreturn in xiic_xfer and xiic_i2c_remove.\n\nHowever, pm_runtime_get_sync will increment the PM reference\ncount even failed. Forgetting to putting operation will result\nin a reference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36778", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36778", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36778", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36778", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36778", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36778" + } + }, + "CVE-2020-36779": { + "affected_versions": "v5.6-rc1 to v5.13-rc1", + "breaks": "ea6dd25deeb5b797a145be7f860e3085e7d104c3", + "cmt_msg": "i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails", + "fixes": "2c662660ce2bd3b09dae21a9a9ac9395e1e6c00b", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: stm32f7: fix reference leak when pm_runtime_get_sync fails\n\nThe PM reference count is not expected to be incremented on\nreturn in these stm32f7_i2c_xx serious functions.\n\nHowever, pm_runtime_get_sync will increment the PM reference\ncount even failed. Forgetting to putting operation will result\nin a reference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36779", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36779", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36779", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36779", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36779", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36779" + } + }, + "CVE-2020-36780": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "i2c: sprd: fix reference leak when pm_runtime_get_sync fails", + "fixes": "3a4f326463117cee3adcb72999ca34a9aaafda93", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: sprd: fix reference leak when pm_runtime_get_sync fails\n\nThe PM reference count is not expected to be incremented on\nreturn in sprd_i2c_master_xfer() and sprd_i2c_remove().\n\nHowever, pm_runtime_get_sync will increment the PM reference\ncount even failed. Forgetting to putting operation will result\nin a reference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36780", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36780", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36780", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36780", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36780", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36780" + } + }, + "CVE-2020-36781": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "i2c: imx: fix reference leak when pm_runtime_get_sync fails", + "fixes": "47ff617217ca6a13194fcb35c6c3a0c57c080693", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: imx: fix reference leak when pm_runtime_get_sync fails\n\nIn i2c_imx_xfer() and i2c_imx_remove(), the pm reference count\nis not expected to be incremented on return.\n\nHowever, pm_runtime_get_sync will increment pm reference count\neven failed. Forgetting to putting operation will result in a\nreference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36781", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36781", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36781", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36781", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36781", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36781" + } + }, + "CVE-2020-36782": { + "affected_versions": "v4.16-rc1 to v5.13-rc1", + "breaks": "13d6eb20fc79a1e606307256dad4098375539a09", + "cmt_msg": "i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails", + "fixes": "278e5bbdb9a94fa063c0f9bcde2479d0b8042462", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails\n\nThe PM reference count is not expected to be incremented on\nreturn in lpi2c_imx_master_enable.\n\nHowever, pm_runtime_get_sync will increment the PM reference\ncount even failed. Forgetting to putting operation will result\nin a reference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36782", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36782", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36782", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36782", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36782", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36782" + } + }, + "CVE-2020-36783": { + "affected_versions": "v4.15-rc1 to v5.13-rc1", + "breaks": "93222bd9b966105f43418fd336654ad10045783a", + "cmt_msg": "i2c: img-scb: fix reference leak when pm_runtime_get_sync fails", + "fixes": "223125e37af8a641ea4a09747a6a52172fc4b903", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: img-scb: fix reference leak when pm_runtime_get_sync fails\n\nThe PM reference count is not expected to be incremented on\nreturn in functions img_i2c_xfer and img_i2c_init.\n\nHowever, pm_runtime_get_sync will increment the PM reference\ncount even failed. Forgetting to putting operation will result\nin a reference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36783", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36783", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36783", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36783", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36783", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36783" + } + }, + "CVE-2020-36784": { + "affected_versions": "v4.5-rc1 to v5.13-rc1", + "breaks": "7fa32329ca03148fb2c07b4ef3247b8fc0488d6a", + "cmt_msg": "i2c: cadence: fix reference leak when pm_runtime_get_sync fails", + "fixes": "23ceb8462dc6f4b4decdb5536a7e5fc477cdf0b6", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: cadence: fix reference leak when pm_runtime_get_sync fails\n\nThe PM reference count is not expected to be incremented on\nreturn in functions cdns_i2c_master_xfer and cdns_reg_slave.\n\nHowever, pm_runtime_get_sync will increment pm usage counter\neven failed. Forgetting to putting operation will result in a\nreference leak here.\n\nReplace it with pm_runtime_resume_and_get to keep usage\ncounter balanced.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36784", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36784", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36784", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36784", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36784", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36784" + } + }, + "CVE-2020-36785": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "ad85094b293e40e7a2f831b0311a389d952ebd5e", + "cmt_msg": "media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()", + "fixes": "ba11bbf303fafb33989e95473e409f6ab412b18d", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()\n\nThe \"s3a_buf\" is freed along with all the other items on the\n\"asd->s3a_stats\" list. It leads to a double free and a use after free.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36785", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36785", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36785", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36785", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36785", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36785" + } + }, + "CVE-2020-36786": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "9289cdf399922a1bd801a8cd946a79581c00a380", + "cmt_msg": "media: [next] staging: media: atomisp: fix memory leak of object flash", + "fixes": "6045b01dd0e3cd3759eafe7f290ed04c957500b1", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: [next] staging: media: atomisp: fix memory leak of object flash\n\nIn the case where the call to lm3554_platform_data_func returns an\nerror there is a memory leak on the error return path of object\nflash. Fix this by adding an error return path that will free\nflash and rename labels fail2 to fail3 and fail1 to fail2.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36786", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36786", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36786", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36786", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36786", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36786" + } + }, + "CVE-2020-36787": { + "affected_versions": "v5.0-rc1 to v5.13-rc1", + "breaks": "d2b4387f3bdf016e266d23cf657465f557721488", + "cmt_msg": "media: aspeed: fix clock handling logic", + "fixes": "3536169f8531c2c5b153921dc7d1ac9fd570cda7", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: aspeed: fix clock handling logic\n\nVideo engine uses eclk and vclk for its clock sources and its reset\ncontrol is coupled with eclk so the current clock enabling sequence works\nlike below.\n\n Enable eclk\n De-assert Video Engine reset\n 10ms delay\n Enable vclk\n\nIt introduces improper reset on the Video Engine hardware and eventually\nthe hardware generates unexpected DMA memory transfers that can corrupt\nmemory region in random and sporadic patterns. This issue is observed\nvery rarely on some specific AST2500 SoCs but it causes a critical\nkernel panic with making a various shape of signature so it's extremely\nhard to debug. Moreover, the issue is observed even when the video\nengine is not actively used because udevd turns on the video engine\nhardware for a short time to make a query in every boot.\n\nTo fix this issue, this commit changes the clock handling logic to make\nthe reset de-assertion triggered after enabling both eclk and vclk. Also,\nit adds clk_unprepare call for a case when probe fails.\n\nclk: ast2600: fix reset settings for eclk and vclk\nVideo engine reset setting should be coupled with eclk to match it\nwith the setting for previous Aspeed SoCs which is defined in\nclk-aspeed.c since all Aspeed SoCs are sharing a single video engine\ndriver. Also, reset bit 6 is defined as 'Video Engine' reset in\ndatasheet so it should be de-asserted when eclk is enabled. This\ncommit fixes the setting.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-36787", + "ExploitDB": "https://www.exploit-db.com/search?cve=2020-36787", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2020-36787", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2020-36787", + "SUSE": "https://www.suse.com/security/cve/CVE-2020-36787", + "Ubuntu": "https://ubuntu.com/security/CVE-2020-36787" + } + }, "CVE-2020-3702": { "affected_versions": "v2.6.12-rc2 to v5.12-rc1-dontuse", "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", @@ -70822,8 +71077,8 @@ "cwe": "Out-of-bounds Write", "fixes": "35d2969ea3c7d32aee78066b1f3cf61a0d935a4e", "last_affected_version": "5.15.0", - "last_modified": "2023-12-06", - "nvd_text": "A heap-based buffer overflow flaw was found in the Linux kernel FireDTV media card driver, where the user calls the CA_SEND_MSG ioctl. This flaw allows a local user of the host machine to crash the system or escalate privileges on the system. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.", + "last_modified": "2024-04-09", + "nvd_text": "The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandles bounds checking.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-42739", "ExploitDB": "https://www.exploit-db.com/search?cve=2021-42739", @@ -71513,6 +71768,4544 @@ "Ubuntu": "https://ubuntu.com/security/CVE-2021-46283" } }, + "CVE-2021-46904": { + "affected_versions": "v2.6.27-rc1 to v5.12-rc7", + "breaks": "72dc1c096c7051a48ab1dbb12f71976656b55eb5", + "cmt_msg": "net: hso: fix null-ptr-deref during tty device unregistration", + "fixes": "8a12f8836145ffe37e9c8733dce18c22fb668b66", + "last_affected_version": "5.11.13", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: hso: fix null-ptr-deref during tty device unregistration\n\nMultiple ttys try to claim the same the minor number causing a double\nunregistration of the same device. The first unregistration succeeds\nbut the next one results in a null-ptr-deref.\n\nThe get_free_serial_index() function returns an available minor number\nbut doesn't assign it immediately. The assignment is done by the caller\nlater. But before this assignment, calls to get_free_serial_index()\nwould return the same minor number.\n\nFix this by modifying get_free_serial_index to assign the minor number\nimmediately after one is found to be and rename it to obtain_minor()\nto better reflect what it does. Similary, rename set_serial_by_index()\nto release_minor() and modify it to free up the minor number of the\ngiven hso_serial. Every obtain_minor() should have corresponding\nrelease_minor() call.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46904", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46904", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46904", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46904", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46904", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46904" + } + }, + "CVE-2021-46905": { + "affected_versions": "v5.12-rc7 to v5.13-rc1", + "breaks": "8a12f8836145ffe37e9c8733dce18c22fb668b66", + "cmt_msg": "net: hso: fix NULL-deref on disconnect regression", + "fixes": "2ad5692db72874f02b9ad551d26345437ea4f7f3", + "last_affected_version": "5.12.0", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: hso: fix NULL-deref on disconnect regression\n\nCommit 8a12f8836145 (\"net: hso: fix null-ptr-deref during tty device\nunregistration\") fixed the racy minor allocation reported by syzbot, but\nintroduced an unconditional NULL-pointer dereference on every disconnect\ninstead.\n\nSpecifically, the serial device table must no longer be accessed after\nthe minor has been released by hso_serial_tty_unregister().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46905", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46905", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46905", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46905", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46905", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46905" + } + }, + "CVE-2021-46906": { + "affected_versions": "v2.6.12-rc2 to v5.13-rc5", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "HID: usbhid: fix info leak in hid_submit_ctrl", + "fixes": "6be388f4a35d2ce5ef7dbf635a8964a5da7f799f", + "last_affected_version": "5.12.11", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nHID: usbhid: fix info leak in hid_submit_ctrl\n\nIn hid_submit_ctrl(), the way of calculating the report length doesn't\ntake into account that report->size can be zero. When running the\nsyzkaller reproducer, a report of size 0 causes hid_submit_ctrl) to\ncalculate transfer_buffer_length as 16384. When this urb is passed to\nthe usb core layer, KMSAN reports an info leak of 16384 bytes.\n\nTo fix this, first modify hid_report_len() to account for the zero\nreport size case by using DIV_ROUND_UP for the division. Then, call it\nfrom hid_submit_ctrl().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46906", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46906", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46906", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46906", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46906", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46906" + } + }, + "CVE-2021-46908": { + "affected_versions": "unk to v5.12-rc8", + "breaks": "", + "cmt_msg": "bpf: Use correct permission flag for mixed signed bounds arithmetic", + "fixes": "9601148392520e2e134936e76788fc2a6371e7be", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Use correct permission flag for mixed signed bounds arithmetic\n\nWe forbid adding unknown scalars with mixed signed bounds due to the\nspectre v1 masking mitigation. Hence this also needs bypass_spec_v1\nflag instead of allow_ptr_leaks.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46908", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46908", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46908", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46908", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46908", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46908" + } + }, + "CVE-2021-46909": { + "affected_versions": "v4.13-rc1 to v5.12-rc8", + "breaks": "30fdfb929e82450bbf3d0e0aba56efbc29b52b52", + "cmt_msg": "ARM: footbridge: fix PCI interrupt mapping", + "fixes": "30e3b4f256b4e366a61658c294f6a21b8626dda7", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nARM: footbridge: fix PCI interrupt mapping\n\nSince commit 30fdfb929e82 (\"PCI: Add a call to pci_assign_irq() in\npci_device_probe()\"), the PCI code will call the IRQ mapping function\nwhenever a PCI driver is probed. If these are marked as __init, this\ncauses an oops if a PCI driver is loaded or bound after the kernel has\ninitialised.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46909", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46909", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46909", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46909", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46909", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46909" + } + }, + "CVE-2021-46910": { + "affected_versions": "v5.11-rc1 to v5.12-rc8", + "breaks": "2a15ba82fa6ca3f35502b3060f22118a938d2889", + "cmt_msg": "ARM: 9063/1: mm: reduce maximum number of CPUs if DEBUG_KMAP_LOCAL is enabled", + "fixes": "d624833f5984d484c5e3196f34b926f9e71dafee", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nARM: 9063/1: mm: reduce maximum number of CPUs if DEBUG_KMAP_LOCAL is enabled\n\nThe debugging code for kmap_local() doubles the number of per-CPU fixmap\nslots allocated for kmap_local(), in order to use half of them as guard\nregions. This causes the fixmap region to grow downwards beyond the start\nof its reserved window if the supported number of CPUs is large, and collide\nwith the newly added virtual DT mapping right below it, which is obviously\nnot good.\n\nOne manifestation of this is EFI boot on a kernel built with NR_CPUS=32\nand CONFIG_DEBUG_KMAP_LOCAL=y, which may pass the FDT in highmem, resulting\nin block entries below the fixmap region that the fixmap code misidentifies\nas fixmap table entries, and subsequently tries to dereference using a\nphys-to-virt translation that is only valid for lowmem. This results in a\ncryptic splat such as the one below.\n\n ftrace: allocating 45548 entries in 89 pages\n 8<--- cut here ---\n Unable to handle kernel paging request at virtual address fc6006f0\n pgd = (ptrval)\n [fc6006f0] *pgd=80000040207003, *pmd=00000000\n Internal error: Oops: a06 [#1] SMP ARM\n Modules linked in:\n CPU: 0 PID: 0 Comm: swapper Not tainted 5.11.0+ #382\n Hardware name: Generic DT based system\n PC is at cpu_ca15_set_pte_ext+0x24/0x30\n LR is at __set_fixmap+0xe4/0x118\n pc : [<c041ac9c>] lr : [<c04189d8>] psr: 400000d3\n sp : c1601ed8 ip : 00400000 fp : 00800000\n r10: 0000071f r9 : 00421000 r8 : 00c00000\n r7 : 00c00000 r6 : 0000071f r5 : ffade000 r4 : 4040171f\n r3 : 00c00000 r2 : 4040171f r1 : c041ac78 r0 : fc6006f0\n Flags: nZcv IRQs off FIQs off Mode SVC_32 ISA ARM Segment none\n Control: 30c5387d Table: 40203000 DAC: 00000001\n Process swapper (pid: 0, stack limit = 0x(ptrval))\n\nSo let's limit CONFIG_NR_CPUS to 16 when CONFIG_DEBUG_KMAP_LOCAL=y. Also,\nfix the BUILD_BUG_ON() check that was supposed to catch this, by checking\nwhether the region grows below the start address rather than above the end\naddress.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46910", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46910", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46910", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46910", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46910", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46910" + } + }, + "CVE-2021-46911": { + "affected_versions": "v5.7-rc1 to v5.12-rc8", + "breaks": "5a4b9fe7fece62ecab6fb28fe92362f83b41c33e", + "cmt_msg": "ch_ktls: Fix kernel panic", + "fixes": "1a73e427b824133940c2dd95ebe26b6dce1cbf10", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nch_ktls: Fix kernel panic\n\nTaking page refcount is not ideal and causes kernel panic\nsometimes. It's better to take tx_ctx lock for the complete\nskb transmit, to avoid page cleanup if ACK received in middle.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46911", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46911", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46911", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46911", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46911", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46911" + } + }, + "CVE-2021-46912": { + "affected_versions": "v5.7-rc1 to v5.12-rc8", + "breaks": "9cb8e048e5d93825ec5e8dfb5b8df4987ea25745", + "cmt_msg": "net: Make tcp_allowed_congestion_control readonly in non-init netns", + "fixes": "97684f0970f6e112926de631fdd98d9693c7e5c1", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: Make tcp_allowed_congestion_control readonly in non-init netns\n\nCurrently, tcp_allowed_congestion_control is global and writable;\nwriting to it in any net namespace will leak into all other net\nnamespaces.\n\ntcp_available_congestion_control and tcp_allowed_congestion_control are\nthe only sysctls in ipv4_net_table (the per-netns sysctl table) with a\nNULL data pointer; their handlers (proc_tcp_available_congestion_control\nand proc_allowed_congestion_control) have no other way of referencing a\nstruct net. Thus, they operate globally.\n\nBecause ipv4_net_table does not use designated initializers, there is no\neasy way to fix up this one \"bad\" table entry. However, the data pointer\nupdating logic shouldn't be applied to NULL pointers anyway, so we\ninstead force these entries to be read-only.\n\nThese sysctls used to exist in ipv4_table (init-net only), but they were\nmoved to the per-net ipv4_net_table, presumably without realizing that\ntcp_allowed_congestion_control was writable and thus introduced a leak.\n\nBecause the intent of that commit was only to know (i.e. read) \"which\ncongestion algorithms are available or allowed\", this read-only solution\nshould be sufficient.\n\nThe logic added in recent commit\n31c4d2f160eb: (\"net: Ensure net namespace isolation of sysctls\")\ndoes not and cannot check for NULL data pointers, because\nother table entries (e.g. /proc/sys/net/netfilter/nf_log/) have\n.data=NULL but use other methods (.extra2) to access the struct net.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46912", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46912", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46912", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46912", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46912", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46912" + } + }, + "CVE-2021-46913": { + "affected_versions": "v5.7-rc1 to v5.12-rc8", + "breaks": "4094445229760d0d31a4190dfe88fe815c9fc34e", + "cmt_msg": "netfilter: nftables: clone set element expression template", + "fixes": "4d8f9065830e526c83199186c5f56a6514f457d2", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nftables: clone set element expression template\n\nmemcpy() breaks when using connlimit in set elements. Use\nnft_expr_clone() to initialize the connlimit expression list, otherwise\nconnlimit garbage collector crashes when walking on the list head copy.\n\n[ 493.064656] Workqueue: events_power_efficient nft_rhash_gc [nf_tables]\n[ 493.064685] RIP: 0010:find_or_evict+0x5a/0x90 [nf_conncount]\n[ 493.064694] Code: 2b 43 40 83 f8 01 77 0d 48 c7 c0 f5 ff ff ff 44 39 63 3c 75 df 83 6d 18 01 48 8b 43 08 48 89 de 48 8b 13 48 8b 3d ee 2f 00 00 <48> 89 42 08 48 89 10 48 b8 00 01 00 00 00 00 ad de 48 89 03 48 83\n[ 493.064699] RSP: 0018:ffffc90000417dc0 EFLAGS: 00010297\n[ 493.064704] RAX: 0000000000000000 RBX: ffff888134f38410 RCX: 0000000000000000\n[ 493.064708] RDX: 0000000000000000 RSI: ffff888134f38410 RDI: ffff888100060cc0\n[ 493.064711] RBP: ffff88812ce594a8 R08: ffff888134f38438 R09: 00000000ebb9025c\n[ 493.064714] R10: ffffffff8219f838 R11: 0000000000000017 R12: 0000000000000001\n[ 493.064718] R13: ffffffff82146740 R14: ffff888134f38410 R15: 0000000000000000\n[ 493.064721] FS: 0000000000000000(0000) GS:ffff88840e440000(0000) knlGS:0000000000000000\n[ 493.064725] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 493.064729] CR2: 0000000000000008 CR3: 00000001330aa002 CR4: 00000000001706e0\n[ 493.064733] Call Trace:\n[ 493.064737] nf_conncount_gc_list+0x8f/0x150 [nf_conncount]\n[ 493.064746] nft_rhash_gc+0x106/0x390 [nf_tables]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46913", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46913", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46913", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46913", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46913", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46913" + } + }, + "CVE-2021-46914": { + "affected_versions": "v5.9-rc1 to v5.12-rc8", + "breaks": "6f82b25587354ce7c9c42e0b53d8b0770b900847", + "cmt_msg": "ixgbe: fix unbalanced device enable/disable in suspend/resume", + "fixes": "debb9df311582c83fe369baa35fa4b92e8a9c58a", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nixgbe: fix unbalanced device enable/disable in suspend/resume\n\npci_disable_device() called in __ixgbe_shutdown() decreases\ndev->enable_cnt by 1. pci_enable_device_mem() which increases\ndev->enable_cnt by 1, was removed from ixgbe_resume() in commit\n6f82b2558735 (\"ixgbe: use generic power management\"). This caused\nunbalanced increase/decrease. So add pci_enable_device_mem() back.\n\nFix the following call trace.\n\n ixgbe 0000:17:00.1: disabling already-disabled device\n Call Trace:\n __ixgbe_shutdown+0x10a/0x1e0 [ixgbe]\n ixgbe_suspend+0x32/0x70 [ixgbe]\n pci_pm_suspend+0x87/0x160\n ? pci_pm_freeze+0xd0/0xd0\n dpm_run_callback+0x42/0x170\n __device_suspend+0x114/0x460\n async_suspend+0x1f/0xa0\n async_run_entry_fn+0x3c/0xf0\n process_one_work+0x1dd/0x410\n worker_thread+0x34/0x3f0\n ? cancel_delayed_work+0x90/0x90\n kthread+0x14c/0x170\n ? kthread_park+0x90/0x90\n ret_from_fork+0x1f/0x30", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46914", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46914", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46914", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46914", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46914", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46914" + } + }, + "CVE-2021-46915": { + "affected_versions": "v4.13 to v5.12-rc8", + "breaks": "c26844eda9d4fdbd266660e3b3de2d0270e3a1ed", + "cmt_msg": "netfilter: nft_limit: avoid possible divide error in nft_limit_init", + "fixes": "b895bdf5d643b6feb7c60856326dd4feb6981560", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_limit: avoid possible divide error in nft_limit_init\n\ndiv_u64() divides u64 by u32.\n\nnft_limit_init() wants to divide u64 by u64, use the appropriate\nmath function (div64_u64)\n\ndivide error: 0000 [#1] PREEMPT SMP KASAN\nCPU: 1 PID: 8390 Comm: syz-executor188 Not tainted 5.12.0-rc4-syzkaller #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011\nRIP: 0010:div_u64_rem include/linux/math64.h:28 [inline]\nRIP: 0010:div_u64 include/linux/math64.h:127 [inline]\nRIP: 0010:nft_limit_init+0x2a2/0x5e0 net/netfilter/nft_limit.c:85\nCode: ef 4c 01 eb 41 0f 92 c7 48 89 de e8 38 a5 22 fa 4d 85 ff 0f 85 97 02 00 00 e8 ea 9e 22 fa 4c 0f af f3 45 89 ed 31 d2 4c 89 f0 <49> f7 f5 49 89 c6 e8 d3 9e 22 fa 48 8d 7d 48 48 b8 00 00 00 00 00\nRSP: 0018:ffffc90009447198 EFLAGS: 00010246\nRAX: 0000000000000000 RBX: 0000200000000000 RCX: 0000000000000000\nRDX: 0000000000000000 RSI: ffffffff875152e6 RDI: 0000000000000003\nRBP: ffff888020f80908 R08: 0000200000000000 R09: 0000000000000000\nR10: ffffffff875152d8 R11: 0000000000000000 R12: ffffc90009447270\nR13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000\nFS: 000000000097a300(0000) GS:ffff8880b9d00000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00000000200001c4 CR3: 0000000026a52000 CR4: 00000000001506e0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n nf_tables_newexpr net/netfilter/nf_tables_api.c:2675 [inline]\n nft_expr_init+0x145/0x2d0 net/netfilter/nf_tables_api.c:2713\n nft_set_elem_expr_alloc+0x27/0x280 net/netfilter/nf_tables_api.c:5160\n nf_tables_newset+0x1997/0x3150 net/netfilter/nf_tables_api.c:4321\n nfnetlink_rcv_batch+0x85a/0x21b0 net/netfilter/nfnetlink.c:456\n nfnetlink_rcv_skb_batch net/netfilter/nfnetlink.c:580 [inline]\n nfnetlink_rcv+0x3af/0x420 net/netfilter/nfnetlink.c:598\n netlink_unicast_kernel net/netlink/af_netlink.c:1312 [inline]\n netlink_unicast+0x533/0x7d0 net/netlink/af_netlink.c:1338\n netlink_sendmsg+0x856/0xd90 net/netlink/af_netlink.c:1927\n sock_sendmsg_nosec net/socket.c:654 [inline]\n sock_sendmsg+0xcf/0x120 net/socket.c:674\n ____sys_sendmsg+0x6e8/0x810 net/socket.c:2350\n ___sys_sendmsg+0xf3/0x170 net/socket.c:2404\n __sys_sendmsg+0xe5/0x1b0 net/socket.c:2433\n do_syscall_64+0x2d/0x70 arch/x86/entry/common.c:46\n entry_SYSCALL_64_after_hwframe+0x44/0xae", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46915", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46915", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46915", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46915", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46915", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46915" + } + }, + "CVE-2021-46916": { + "affected_versions": "v5.11-rc1 to v5.12-rc8", + "breaks": "b02e5a0ebb172c8276cea3151942aac681f7a4a6", + "cmt_msg": "ixgbe: Fix NULL pointer dereference in ethtool loopback test", + "fixes": "31166efb1cee348eb6314e9c0095d84cbeb66b9d", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nixgbe: Fix NULL pointer dereference in ethtool loopback test\n\nThe ixgbe driver currently generates a NULL pointer dereference when\nperforming the ethtool loopback test. This is due to the fact that there\nisn't a q_vector associated with the test ring when it is setup as\ninterrupts are not normally added to the test rings.\n\nTo address this I have added code that will check for a q_vector before\nreturning a napi_id value. If a q_vector is not present it will return a\nvalue of 0.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46916", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46916", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46916", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46916", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46916", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46916" + } + }, + "CVE-2021-46917": { + "affected_versions": "v5.8-rc6 to v5.12-rc8", + "breaks": "da32b28c95a79e399e18c03f8178f41aec9c66e4", + "cmt_msg": "dmaengine: idxd: fix wq cleanup of WQCFG registers", + "fixes": "ea9aadc06a9f10ad20a90edc0a484f1147d88a7a", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: fix wq cleanup of WQCFG registers\n\nA pre-release silicon erratum workaround where wq reset does not clear\nWQCFG registers was leaked into upstream code. Use wq reset command\ninstead of blasting the MMIO region. This also address an issue where\nwe clobber registers in future devices.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46917", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46917", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46917", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46917", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46917", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46917" + } + }, + "CVE-2021-46918": { + "affected_versions": "v5.11-rc1 to v5.12-rc8", + "breaks": "8e50d392652f20616a136165dff516b86baf5e49", + "cmt_msg": "dmaengine: idxd: clear MSIX permission entry on shutdown", + "fixes": "6df0e6c57dfc064af330071f372f11aa8c584997", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: clear MSIX permission entry on shutdown\n\nAdd disabling/clearing of MSIX permission entries on device shutdown to\nmirror the enabling of the MSIX entries on probe. Current code left the\nMSIX enabled and the pasid entries still programmed at device shutdown.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46918", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46918", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46918", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46918", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46918", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46918" + } + }, + "CVE-2021-46919": { + "affected_versions": "v5.6-rc1 to v5.12-rc8", + "breaks": "c52ca478233c172b2d322b5241d6279a8661cbba", + "cmt_msg": "dmaengine: idxd: fix wq size store permission state", + "fixes": "0fff71c5a311e1264988179f7dcc217fda15fadd", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: fix wq size store permission state\n\nWQ size can only be changed when the device is disabled. Current code\nallows change when device is enabled but wq is disabled. Change the check\nto detect device state.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46919", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46919", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46919", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46919", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46919", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46919" + } + }, + "CVE-2021-46920": { + "affected_versions": "v5.6-rc1 to v5.12-rc8", + "breaks": "bfe1d56091c1a404b3d4ce7e9809d745fc4453bb", + "cmt_msg": "dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback", + "fixes": "ea941ac294d75d0ace50797aebf0056f6f8f7a7f", + "last_affected_version": "5.11.15", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback\n\nCurrent code blindly writes over the SWERR and the OVERFLOW bits. Write\nback the bits actually read instead so the driver avoids clobbering the\nOVERFLOW bit that comes after the register is read.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46920", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46920", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46920", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46920", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46920", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46920" + } + }, + "CVE-2021-46921": { + "affected_versions": "v4.15-rc1 to v5.12", + "breaks": "b519b56e378ee82caf9b079b04f5db87dedc3251", + "cmt_msg": "locking/qrwlock: Fix ordering in queued_write_lock_slowpath()", + "fixes": "84a24bf8c52e66b7ac89ada5e3cfbe72d65c1896", + "last_affected_version": "5.11", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nlocking/qrwlock: Fix ordering in queued_write_lock_slowpath()\n\nWhile this code is executed with the wait_lock held, a reader can\nacquire the lock without holding wait_lock. The writer side loops\nchecking the value with the atomic_cond_read_acquire(), but only truly\nacquires the lock when the compare-and-exchange is completed\nsuccessfully which isn\u2019t ordered. This exposes the window between the\nacquire and the cmpxchg to an A-B-A problem which allows reads\nfollowing the lock acquisition to observe values speculatively before\nthe write lock is truly acquired.\n\nWe've seen a problem in epoll where the reader does a xchg while\nholding the read lock, but the writer can see a value change out from\nunder it.\n\n Writer | Reader\n --------------------------------------------------------------------------------\n ep_scan_ready_list() |\n |- write_lock_irq() |\n |- queued_write_lock_slowpath() |\n\t|- atomic_cond_read_acquire() |\n\t\t\t\t | read_lock_irqsave(&ep->lock, flags);\n --> (observes value before unlock) | chain_epi_lockless()\n | | epi->next = xchg(&ep->ovflist, epi);\n | | read_unlock_irqrestore(&ep->lock, flags);\n | |\n | atomic_cmpxchg_relaxed() |\n |-- READ_ONCE(ep->ovflist); |\n\nA core can order the read of the ovflist ahead of the\natomic_cmpxchg_relaxed(). Switching the cmpxchg to use acquire\nsemantics addresses this issue at which point the atomic_cond_read can\nbe switched to use relaxed semantics.\n\n[peterz: use try_cmpxchg()]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46921", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46921", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46921", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46921", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46921", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46921" + } + }, + "CVE-2021-46922": { + "affected_versions": "v5.12-rc1-dontuse to v5.12", + "breaks": "8c657a0590de585b1115847c17b34a58025f2f4b", + "cmt_msg": "KEYS: trusted: Fix TPM reservation for seal/unseal", + "fixes": "9d5171eab462a63e2fbebfccf6026e92be018f20", + "last_affected_version": "5.11", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKEYS: trusted: Fix TPM reservation for seal/unseal\n\nThe original patch 8c657a0590de (\"KEYS: trusted: Reserve TPM for seal\nand unseal operations\") was correct on the mailing list:\n\nhttps://lore.kernel.org/linux-integrity/20210128235621.127925-4-jarkko@kernel.org/\n\nBut somehow got rebased so that the tpm_try_get_ops() in\ntpm2_seal_trusted() got lost. This causes an imbalanced put of the\nTPM ops and causes oopses on TIS based hardware.\n\nThis fix puts back the lost tpm_try_get_ops()", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46922", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46922", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46922", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46922", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46922", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46922" + } + }, + "CVE-2021-46923": { + "affected_versions": "v5.12-rc1-dontuse to v5.16-rc8", + "breaks": "9caccd41541a6f7d6279928d9f971f6642c361af", + "cmt_msg": "fs/mount_setattr: always cleanup mount_kattr", + "fixes": "012e332286e2bb9f6ac77d195f17e74b2963d663", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/mount_setattr: always cleanup mount_kattr\n\nMake sure that finish_mount_kattr() is called after mount_kattr was\nsuccesfully built in both the success and failure case to prevent\nleaking any references we took when we built it. We returned early if\npath lookup failed thereby risking to leak an additional reference we\ntook when building mount_kattr when an idmapped mount was requested.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46923", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46923", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46923", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46923", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46923", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46923" + } + }, + "CVE-2021-46924": { + "affected_versions": "v3.16-rc1 to v5.16-rc8", + "breaks": "68957303f44a501af5cf37913208a2acaa6bcdf1", + "cmt_msg": "NFC: st21nfca: Fix memory leak in device probe and remove", + "fixes": "1b9dadba502234eea7244879b8d5d126bfaf9f0c", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nNFC: st21nfca: Fix memory leak in device probe and remove\n\n'phy->pending_skb' is alloced when device probe, but forgot to free\nin the error handling path and remove path, this cause memory leak\nas follows:\n\nunreferenced object 0xffff88800bc06800 (size 512):\n comm \"8\", pid 11775, jiffies 4295159829 (age 9.032s)\n hex dump (first 32 bytes):\n 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................\n 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................\n backtrace:\n [<00000000d66c09ce>] __kmalloc_node_track_caller+0x1ed/0x450\n [<00000000c93382b3>] kmalloc_reserve+0x37/0xd0\n [<000000005fea522c>] __alloc_skb+0x124/0x380\n [<0000000019f29f9a>] st21nfca_hci_i2c_probe+0x170/0x8f2\n\nFix it by freeing 'pending_skb' in error and remove.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46924", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46924", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46924", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46924", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46924", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46924" + } + }, + "CVE-2021-46925": { + "affected_versions": "v4.11-rc1 to v5.16-rc8", + "breaks": "5f08318f617b05b6ee389d8bd174c7af921ebf19", + "cmt_msg": "net/smc: fix kernel panic caused by race of smc_sock", + "fixes": "349d43127dac00c15231e8ffbcaabd70f7b0e544", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/smc: fix kernel panic caused by race of smc_sock\n\nA crash occurs when smc_cdc_tx_handler() tries to access smc_sock\nbut smc_release() has already freed it.\n\n[ 4570.695099] BUG: unable to handle page fault for address: 000000002eae9e88\n[ 4570.696048] #PF: supervisor write access in kernel mode\n[ 4570.696728] #PF: error_code(0x0002) - not-present page\n[ 4570.697401] PGD 0 P4D 0\n[ 4570.697716] Oops: 0002 [#1] PREEMPT SMP NOPTI\n[ 4570.698228] CPU: 0 PID: 0 Comm: swapper/0 Not tainted 5.16.0-rc4+ #111\n[ 4570.699013] Hardware name: Alibaba Cloud Alibaba Cloud ECS, BIOS 8c24b4c 04/0\n[ 4570.699933] RIP: 0010:_raw_spin_lock+0x1a/0x30\n<...>\n[ 4570.711446] Call Trace:\n[ 4570.711746] <IRQ>\n[ 4570.711992] smc_cdc_tx_handler+0x41/0xc0\n[ 4570.712470] smc_wr_tx_tasklet_fn+0x213/0x560\n[ 4570.712981] ? smc_cdc_tx_dismisser+0x10/0x10\n[ 4570.713489] tasklet_action_common.isra.17+0x66/0x140\n[ 4570.714083] __do_softirq+0x123/0x2f4\n[ 4570.714521] irq_exit_rcu+0xc4/0xf0\n[ 4570.714934] common_interrupt+0xba/0xe0\n\nThough smc_cdc_tx_handler() checked the existence of smc connection,\nsmc_release() may have already dismissed and released the smc socket\nbefore smc_cdc_tx_handler() further visits it.\n\nsmc_cdc_tx_handler() |smc_release()\nif (!conn) |\n |\n |smc_cdc_tx_dismiss_slots()\n | smc_cdc_tx_dismisser()\n |\n |sock_put(&smc->sk) <- last sock_put,\n | smc_sock freed\nbh_lock_sock(&smc->sk) (panic) |\n\nTo make sure we won't receive any CDC messages after we free the\nsmc_sock, add a refcount on the smc_connection for inflight CDC\nmessage(posted to the QP but haven't received related CQE), and\ndon't release the smc_connection until all the inflight CDC messages\nhaven been done, for both success or failed ones.\n\nUsing refcount on CDC messages brings another problem: when the link\nis going to be destroyed, smcr_link_clear() will reset the QP, which\nthen remove all the pending CQEs related to the QP in the CQ. To make\nsure all the CQEs will always come back so the refcount on the\nsmc_connection can always reach 0, smc_ib_modify_qp_reset() was replaced\nby smc_ib_modify_qp_error().\nAnd remove the timeout in smc_wr_tx_wait_no_pending_sends() since we\nneed to wait for all pending WQEs done, or we may encounter use-after-\nfree when handling CQEs.\n\nFor IB device removal routine, we need to wait for all the QPs on that\ndevice been destroyed before we can destroy CQs on the device, or\nthe refcount on smc_connection won't reach 0 and smc_sock cannot be\nreleased.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46925", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46925", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46925", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46925", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46925", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46925" + } + }, + "CVE-2021-46926": { + "affected_versions": "v2.6.12-rc2 to v5.16-rc7", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "ALSA: hda: intel-sdw-acpi: harden detection of controller", + "fixes": "385f287f9853da402d94278e59f594501c1d1dad", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: hda: intel-sdw-acpi: harden detection of controller\n\nThe existing code currently sets a pointer to an ACPI handle before\nchecking that it's actually a SoundWire controller. This can lead to\nissues where the graph walk continues and eventually fails, but the\npointer was set already.\n\nThis patch changes the logic so that the information provided to\nthe caller is set when a controller is found.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46926", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46926", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46926", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46926", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46926", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46926" + } + }, + "CVE-2021-46927": { + "affected_versions": "v5.15-rc1 to v5.16-rc8", + "breaks": "5b78ed24e8ec48602c1d6f5a188e58d000c81e2b", + "cmt_msg": "nitro_enclaves: Use get_user_pages_unlocked() call to handle mmap assert", + "fixes": "3a0152b219523227c2a62a0a122cf99608287176", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnitro_enclaves: Use get_user_pages_unlocked() call to handle mmap assert\n\nAfter commit 5b78ed24e8ec (\"mm/pagemap: add mmap_assert_locked()\nannotations to find_vma*()\"), the call to get_user_pages() will trigger\nthe mmap assert.\n\nstatic inline void mmap_assert_locked(struct mm_struct *mm)\n{\n\tlockdep_assert_held(&mm->mmap_lock);\n\tVM_BUG_ON_MM(!rwsem_is_locked(&mm->mmap_lock), mm);\n}\n\n[ 62.521410] kernel BUG at include/linux/mmap_lock.h:156!\n...........................................................\n[ 62.538938] RIP: 0010:find_vma+0x32/0x80\n...........................................................\n[ 62.605889] Call Trace:\n[ 62.608502] <TASK>\n[ 62.610956] ? lock_timer_base+0x61/0x80\n[ 62.614106] find_extend_vma+0x19/0x80\n[ 62.617195] __get_user_pages+0x9b/0x6a0\n[ 62.620356] __gup_longterm_locked+0x42d/0x450\n[ 62.623721] ? finish_wait+0x41/0x80\n[ 62.626748] ? __kmalloc+0x178/0x2f0\n[ 62.629768] ne_set_user_memory_region_ioctl.isra.0+0x225/0x6a0 [nitro_enclaves]\n[ 62.635776] ne_enclave_ioctl+0x1cf/0x6d7 [nitro_enclaves]\n[ 62.639541] __x64_sys_ioctl+0x82/0xb0\n[ 62.642620] do_syscall_64+0x3b/0x90\n[ 62.645642] entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nUse get_user_pages_unlocked() when setting the enclave memory regions.\nThat's a similar pattern as mmap_read_lock() used together with\nget_user_pages().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46927", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46927", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46927", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46927", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46927", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46927" + } + }, + "CVE-2021-46928": { + "affected_versions": "v2.6.12-rc2 to v5.16-rc7", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "parisc: Clear stale IIR value on instruction access rights trap", + "fixes": "484730e5862f6b872dca13840bed40fd7c60fa26", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nparisc: Clear stale IIR value on instruction access rights trap\n\nWhen a trap 7 (Instruction access rights) occurs, this means the CPU\ncouldn't execute an instruction due to missing execute permissions on\nthe memory region. In this case it seems the CPU didn't even fetched\nthe instruction from memory and thus did not store it in the cr19 (IIR)\nregister before calling the trap handler. So, the trap handler will find\nsome random old stale value in cr19.\n\nThis patch simply overwrites the stale IIR value with a constant magic\n\"bad food\" value (0xbaadf00d), in the hope people don't start to try to\nunderstand the various random IIR values in trap 7 dumps.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46928", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46928", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46928", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46928", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46928", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46928" + } + }, + "CVE-2021-46929": { + "affected_versions": "v4.14-rc1 to v5.16-rc8", + "breaks": "d25adbeb0cdb860fb39e09cdd025e9cfc954c5ab", + "cmt_msg": "sctp: use call_rcu to free endpoint", + "fixes": "5ec7d18d1813a5bead0b495045606c93873aecbb", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: use call_rcu to free endpoint\n\nThis patch is to delay the endpoint free by calling call_rcu() to fix\nanother use-after-free issue in sctp_sock_dump():\n\n BUG: KASAN: use-after-free in __lock_acquire+0x36d9/0x4c20\n Call Trace:\n __lock_acquire+0x36d9/0x4c20 kernel/locking/lockdep.c:3218\n lock_acquire+0x1ed/0x520 kernel/locking/lockdep.c:3844\n __raw_spin_lock_bh include/linux/spinlock_api_smp.h:135 [inline]\n _raw_spin_lock_bh+0x31/0x40 kernel/locking/spinlock.c:168\n spin_lock_bh include/linux/spinlock.h:334 [inline]\n __lock_sock+0x203/0x350 net/core/sock.c:2253\n lock_sock_nested+0xfe/0x120 net/core/sock.c:2774\n lock_sock include/net/sock.h:1492 [inline]\n sctp_sock_dump+0x122/0xb20 net/sctp/diag.c:324\n sctp_for_each_transport+0x2b5/0x370 net/sctp/socket.c:5091\n sctp_diag_dump+0x3ac/0x660 net/sctp/diag.c:527\n __inet_diag_dump+0xa8/0x140 net/ipv4/inet_diag.c:1049\n inet_diag_dump+0x9b/0x110 net/ipv4/inet_diag.c:1065\n netlink_dump+0x606/0x1080 net/netlink/af_netlink.c:2244\n __netlink_dump_start+0x59a/0x7c0 net/netlink/af_netlink.c:2352\n netlink_dump_start include/linux/netlink.h:216 [inline]\n inet_diag_handler_cmd+0x2ce/0x3f0 net/ipv4/inet_diag.c:1170\n __sock_diag_cmd net/core/sock_diag.c:232 [inline]\n sock_diag_rcv_msg+0x31d/0x410 net/core/sock_diag.c:263\n netlink_rcv_skb+0x172/0x440 net/netlink/af_netlink.c:2477\n sock_diag_rcv+0x2a/0x40 net/core/sock_diag.c:274\n\nThis issue occurs when asoc is peeled off and the old sk is freed after\ngetting it by asoc->base.sk and before calling lock_sock(sk).\n\nTo prevent the sk free, as a holder of the sk, ep should be alive when\ncalling lock_sock(). This patch uses call_rcu() and moves sock_put and\nep free into sctp_endpoint_destroy_rcu(), so that it's safe to try to\nhold the ep under rcu_read_lock in sctp_transport_traverse_process().\n\nIf sctp_endpoint_hold() returns true, it means this ep is still alive\nand we have held it and can continue to dump it; If it returns false,\nit means this ep is dead and can be freed after rcu_read_unlock, and\nwe should skip it.\n\nIn sctp_sock_dump(), after locking the sk, if this ep is different from\ntsp->asoc->ep, it means during this dumping, this asoc was peeled off\nbefore calling lock_sock(), and the sk should be skipped; If this ep is\nthe same with tsp->asoc->ep, it means no peeloff happens on this asoc,\nand due to lock_sock, no peeloff will happen either until release_sock.\n\nNote that delaying endpoint free won't delay the port release, as the\nport release happens in sctp_endpoint_destroy() before calling call_rcu().\nAlso, freeing endpoint by call_rcu() makes it safe to access the sk by\nasoc->base.sk in sctp_assocs_seq_show() and sctp_rcv().\n\nThanks Jones to bring this issue up.\n\nv1->v2:\n - improve the changelog.\n - add kfree(ep) into sctp_endpoint_destroy_rcu(), as Jakub noticed.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46929", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46929", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46929", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46929", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46929", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46929" + } + }, + "CVE-2021-46930": { + "affected_versions": "v5.2-rc1 to v5.16-rc8", + "breaks": "83374e035b6286731c5aa617844c7b724294c2a7", + "cmt_msg": "usb: mtu3: fix list_head check warning", + "fixes": "8c313e3bfd9adae8d5c4ba1cc696dcbc86fbf9bf", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: mtu3: fix list_head check warning\n\nThis is caused by uninitialization of list_head.\n\nBUG: KASAN: use-after-free in __list_del_entry_valid+0x34/0xe4\n\nCall trace:\ndump_backtrace+0x0/0x298\nshow_stack+0x24/0x34\ndump_stack+0x130/0x1a8\nprint_address_description+0x88/0x56c\n__kasan_report+0x1b8/0x2a0\nkasan_report+0x14/0x20\n__asan_load8+0x9c/0xa0\n__list_del_entry_valid+0x34/0xe4\nmtu3_req_complete+0x4c/0x300 [mtu3]\nmtu3_gadget_stop+0x168/0x448 [mtu3]\nusb_gadget_unregister_driver+0x204/0x3a0\nunregister_gadget_item+0x44/0xa4", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46930", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46930", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46930", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46930", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46930", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46930" + } + }, + "CVE-2021-46931": { + "affected_versions": "v5.7-rc1 to v5.16-rc8", + "breaks": "5f29458b77d51c104554575b73184c243930aa87", + "cmt_msg": "net/mlx5e: Wrap the tx reporter dump callback to extract the sq", + "fixes": "918fc3855a6507a200e9cf22c20be852c0982687", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: Wrap the tx reporter dump callback to extract the sq\n\nFunction mlx5e_tx_reporter_dump_sq() casts its void * argument to struct\nmlx5e_txqsq *, but in TX-timeout-recovery flow the argument is actually\nof type struct mlx5e_tx_timeout_ctx *.\n\n mlx5_core 0000:08:00.1 enp8s0f1: TX timeout detected\n mlx5_core 0000:08:00.1 enp8s0f1: TX timeout on queue: 1, SQ: 0x11ec, CQ: 0x146d, SQ Cons: 0x0 SQ Prod: 0x1, usecs since last trans: 21565000\n BUG: stack guard page was hit at 0000000093f1a2de (stack is 00000000b66ea0dc..000000004d932dae)\n kernel stack overflow (page fault): 0000 [#1] SMP NOPTI\n CPU: 5 PID: 95 Comm: kworker/u20:1 Tainted: G W OE 5.13.0_mlnx #1\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014\n Workqueue: mlx5e mlx5e_tx_timeout_work [mlx5_core]\n RIP: 0010:mlx5e_tx_reporter_dump_sq+0xd3/0x180\n [mlx5_core]\n Call Trace:\n mlx5e_tx_reporter_dump+0x43/0x1c0 [mlx5_core]\n devlink_health_do_dump.part.91+0x71/0xd0\n devlink_health_report+0x157/0x1b0\n mlx5e_reporter_tx_timeout+0xb9/0xf0 [mlx5_core]\n ? mlx5e_tx_reporter_err_cqe_recover+0x1d0/0x1d0\n [mlx5_core]\n ? mlx5e_health_queue_dump+0xd0/0xd0 [mlx5_core]\n ? update_load_avg+0x19b/0x550\n ? set_next_entity+0x72/0x80\n ? pick_next_task_fair+0x227/0x340\n ? finish_task_switch+0xa2/0x280\n mlx5e_tx_timeout_work+0x83/0xb0 [mlx5_core]\n process_one_work+0x1de/0x3a0\n worker_thread+0x2d/0x3c0\n ? process_one_work+0x3a0/0x3a0\n kthread+0x115/0x130\n ? kthread_park+0x90/0x90\n ret_from_fork+0x1f/0x30\n --[ end trace 51ccabea504edaff ]---\n RIP: 0010:mlx5e_tx_reporter_dump_sq+0xd3/0x180\n PKRU: 55555554\n Kernel panic - not syncing: Fatal exception\n Kernel Offset: disabled\n end Kernel panic - not syncing: Fatal exception\n\nTo fix this bug add a wrapper for mlx5e_tx_reporter_dump_sq() which\nextracts the sq from struct mlx5e_tx_timeout_ctx and set it as the\nTX-timeout-recovery flow dump callback.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46931", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46931", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46931", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46931", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46931", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46931" + } + }, + "CVE-2021-46932": { + "affected_versions": "v2.6.23-rc1 to v5.16-rc8", + "breaks": "5a6eb676d3bc4d7a6feab200a92437b62ad298da", + "cmt_msg": "Input: appletouch - initialize work before device registration", + "fixes": "9f3ccdc3f6ef10084ceb3a47df0961bec6196fd0", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nInput: appletouch - initialize work before device registration\n\nSyzbot has reported warning in __flush_work(). This warning is caused by\nwork->func == NULL, which means missing work initialization.\n\nThis may happen, since input_dev->close() calls\ncancel_work_sync(&dev->work), but dev->work initalization happens _after_\ninput_register_device() call.\n\nSo this patch moves dev->work initialization before registering input\ndevice", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46932", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46932", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46932", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46932", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46932", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46932" + } + }, + "CVE-2021-46933": { + "affected_versions": "v4.0-rc1 to v5.16-rc8", + "breaks": "5e33f6fdf735cda1d4580fe6f1878da05718fe73", + "cmt_msg": "usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear.", + "fixes": "b1e0887379422975f237d43d8839b751a6bcf154", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear.\n\nffs_data_clear is indirectly called from both ffs_fs_kill_sb and\nffs_ep0_release, so it ends up being called twice when userland closes ep0\nand then unmounts f_fs.\nIf userland provided an eventfd along with function's USB descriptors, it\nends up calling eventfd_ctx_put as many times, causing a refcount\nunderflow.\nNULL-ify ffs_eventfd to prevent these extraneous eventfd_ctx_put calls.\n\nAlso, set epfiles to NULL right after de-allocating it, for readability.\n\nFor completeness, ffs_data_clear actually ends up being called thrice, the\nlast call being before the whole ffs structure gets freed, so when this\nspecific sequence happens there is a second underflow happening (but not\nbeing reported):\n\n/sys/kernel/debug/tracing# modprobe usb_f_fs\n/sys/kernel/debug/tracing# echo ffs_data_clear > set_ftrace_filter\n/sys/kernel/debug/tracing# echo function > current_tracer\n/sys/kernel/debug/tracing# echo 1 > tracing_on\n(setup gadget, run and kill function userland process, teardown gadget)\n/sys/kernel/debug/tracing# echo 0 > tracing_on\n/sys/kernel/debug/tracing# cat trace\n smartcard-openp-436 [000] ..... 1946.208786: ffs_data_clear <-ffs_data_closed\n smartcard-openp-431 [000] ..... 1946.279147: ffs_data_clear <-ffs_data_closed\n smartcard-openp-431 [000] .n... 1946.905512: ffs_data_clear <-ffs_data_put\n\nWarning output corresponding to above trace:\n[ 1946.284139] WARNING: CPU: 0 PID: 431 at lib/refcount.c:28 refcount_warn_saturate+0x110/0x15c\n[ 1946.293094] refcount_t: underflow; use-after-free.\n[ 1946.298164] Modules linked in: usb_f_ncm(E) u_ether(E) usb_f_fs(E) hci_uart(E) btqca(E) btrtl(E) btbcm(E) btintel(E) bluetooth(E) nls_ascii(E) nls_cp437(E) vfat(E) fat(E) bcm2835_v4l2(CE) bcm2835_mmal_vchiq(CE) videobuf2_vmalloc(E) videobuf2_memops(E) sha512_generic(E) videobuf2_v4l2(E) sha512_arm(E) videobuf2_common(E) videodev(E) cpufreq_dt(E) snd_bcm2835(CE) brcmfmac(E) mc(E) vc4(E) ctr(E) brcmutil(E) snd_soc_core(E) snd_pcm_dmaengine(E) drbg(E) snd_pcm(E) snd_timer(E) snd(E) soundcore(E) drm_kms_helper(E) cec(E) ansi_cprng(E) rc_core(E) syscopyarea(E) raspberrypi_cpufreq(E) sysfillrect(E) sysimgblt(E) cfg80211(E) max17040_battery(OE) raspberrypi_hwmon(E) fb_sys_fops(E) regmap_i2c(E) ecdh_generic(E) rfkill(E) ecc(E) bcm2835_rng(E) rng_core(E) vchiq(CE) leds_gpio(E) libcomposite(E) fuse(E) configfs(E) ip_tables(E) x_tables(E) autofs4(E) ext4(E) crc16(E) mbcache(E) jbd2(E) crc32c_generic(E) sdhci_iproc(E) sdhci_pltfm(E) sdhci(E)\n[ 1946.399633] CPU: 0 PID: 431 Comm: smartcard-openp Tainted: G C OE 5.15.0-1-rpi #1 Debian 5.15.3-1\n[ 1946.417950] Hardware name: BCM2835\n[ 1946.425442] Backtrace:\n[ 1946.432048] [<c08d60a0>] (dump_backtrace) from [<c08d62ec>] (show_stack+0x20/0x24)\n[ 1946.448226] r7:00000009 r6:0000001c r5:c04a948c r4:c0a64e2c\n[ 1946.458412] [<c08d62cc>] (show_stack) from [<c08d9ae0>] (dump_stack+0x28/0x30)\n[ 1946.470380] [<c08d9ab8>] (dump_stack) from [<c0123500>] (__warn+0xe8/0x154)\n[ 1946.482067] r5:c04a948c r4:c0a71dc8\n[ 1946.490184] [<c0123418>] (__warn) from [<c08d6948>] (warn_slowpath_fmt+0xa0/0xe4)\n[ 1946.506758] r7:00000009 r6:0000001c r5:c0a71dc8 r4:c0a71e04\n[ 1946.517070] [<c08d68ac>] (warn_slowpath_fmt) from [<c04a948c>] (refcount_warn_saturate+0x110/0x15c)\n[ 1946.535309] r8:c0100224 r7:c0dfcb84 r6:ffffffff r5:c3b84c00 r4:c24a17c0\n[ 1946.546708] [<c04a937c>] (refcount_warn_saturate) from [<c0380134>] (eventfd_ctx_put+0x48/0x74)\n[ 1946.564476] [<c03800ec>] (eventfd_ctx_put) from [<bf5464e8>] (ffs_data_clear+0xd0/0x118 [usb_f_fs])\n[ 1946.582664] r5:c3b84c00 r4:c2695b00\n[ 1946.590668] [<bf546418>] (ffs_data_clear [usb_f_fs]) from [<bf547cc0>] (ffs_data_closed+0x9c/0x150 [usb_f_fs])\n[ 1946.609608] r5:bf54d014 r4:c2695b00\n[ 1946.617522] [<bf547c24>] (ffs_data_closed [usb_f_fs]) from [<bf547da0>] (ffs_fs_kill_sb+0x2c/0x30 [usb_f_fs])\n[ 1946.636217] r7:c0dfcb\n---truncated---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46933", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46933", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46933", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46933", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46933", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46933" + } + }, + "CVE-2021-46934": { + "affected_versions": "v4.15-rc1 to v5.16-rc8", + "breaks": "7d5cb45655f2e9e37ef75d18f50c0072ef14a38b", + "cmt_msg": "i2c: validate user data in compat ioctl", + "fixes": "bb436283e25aaf1533ce061605d23a9564447bdf", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: validate user data in compat ioctl\n\nWrong user data may cause warning in i2c_transfer(), ex: zero msgs.\nUserspace should not be able to trigger warnings, so this patch adds\nvalidation checks for user data in compact ioctl to prevent reported\nwarnings", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46934", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46934", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46934", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46934", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46934", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46934" + } + }, + "CVE-2021-46935": { + "affected_versions": "v4.14-rc1 to v5.16-rc8", + "breaks": "74310e06be4d74dcf67cd108366710dee5c576d5", + "cmt_msg": "binder: fix async_free_space accounting for empty parcels", + "fixes": "cfd0d84ba28c18b531648c9d4a35ecca89ad9901", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbinder: fix async_free_space accounting for empty parcels\n\nIn 4.13, commit 74310e06be4d (\"android: binder: Move buffer out of area shared with user space\")\nfixed a kernel structure visibility issue. As part of that patch,\nsizeof(void *) was used as the buffer size for 0-length data payloads so\nthe driver could detect abusive clients sending 0-length asynchronous\ntransactions to a server by enforcing limits on async_free_size.\n\nUnfortunately, on the \"free\" side, the accounting of async_free_space\ndid not add the sizeof(void *) back. The result was that up to 8-bytes of\nasync_free_space were leaked on every async transaction of 8-bytes or\nless. These small transactions are uncommon, so this accounting issue\nhas gone undetected for several years.\n\nThe fix is to use \"buffer_size\" (the allocated buffer size) instead of\n\"size\" (the logical buffer size) when updating the async_free_space\nduring the free operation. These are the same except for this\ncorner case of asynchronous transactions with payloads < 8 bytes.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46935", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46935", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46935", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46935", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46935", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46935" + } + }, + "CVE-2021-46936": { + "affected_versions": "v2.6.27-rc1 to v5.16-rc8", + "breaks": "61a7e26028b94805fd686a6dc9dbd9941f8f19b0", + "cmt_msg": "net: fix use-after-free in tw_timer_handler", + "fixes": "e22e45fc9e41bf9fcc1e92cfb78eb92786728ef0", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: fix use-after-free in tw_timer_handler\n\nA real world panic issue was found as follow in Linux 5.4.\n\n BUG: unable to handle page fault for address: ffffde49a863de28\n PGD 7e6fe62067 P4D 7e6fe62067 PUD 7e6fe63067 PMD f51e064067 PTE 0\n RIP: 0010:tw_timer_handler+0x20/0x40\n Call Trace:\n <IRQ>\n call_timer_fn+0x2b/0x120\n run_timer_softirq+0x1ef/0x450\n __do_softirq+0x10d/0x2b8\n irq_exit+0xc7/0xd0\n smp_apic_timer_interrupt+0x68/0x120\n apic_timer_interrupt+0xf/0x20\n\nThis issue was also reported since 2017 in the thread [1],\nunfortunately, the issue was still can be reproduced after fixing\nDCCP.\n\nThe ipv4_mib_exit_net is called before tcp_sk_exit_batch when a net\nnamespace is destroyed since tcp_sk_ops is registered befrore\nipv4_mib_ops, which means tcp_sk_ops is in the front of ipv4_mib_ops\nin the list of pernet_list. There will be a use-after-free on\nnet->mib.net_statistics in tw_timer_handler after ipv4_mib_exit_net\nif there are some inflight time-wait timers.\n\nThis bug is not introduced by commit f2bf415cfed7 (\"mib: add net to\nNET_ADD_STATS_BH\") since the net_statistics is a global variable\ninstead of dynamic allocation and freeing. Actually, commit\n61a7e26028b9 (\"mib: put net statistics on struct net\") introduces\nthe bug since it put net statistics on struct net and free it when\nnet namespace is destroyed.\n\nMoving init_ipv4_mibs() to the front of tcp_init() to fix this bug\nand replace pr_crit() with panic() since continuing is meaningless\nwhen init_ipv4_mibs() fails.\n\n[1] https://groups.google.com/g/syzkaller/c/p1tn-_Kc6l4/m/smuL_FMAAgAJ?pli=1", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46936", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46936", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46936", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46936", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46936", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46936" + } + }, + "CVE-2021-46937": { + "affected_versions": "v5.15-rc1 to v5.16-rc8", + "breaks": "4bc05954d0076655cfaf6f0135585bdc20cd6b11", + "cmt_msg": "mm/damon/dbgfs: fix 'struct pid' leaks in 'dbgfs_target_ids_write()'", + "fixes": "ebb3f994dd92f8fb4d70c7541091216c1e10cb71", + "last_affected_version": "5.15.12", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm/damon/dbgfs: fix 'struct pid' leaks in 'dbgfs_target_ids_write()'\n\nDAMON debugfs interface increases the reference counts of 'struct pid's\nfor targets from the 'target_ids' file write callback\n('dbgfs_target_ids_write()'), but decreases the counts only in DAMON\nmonitoring termination callback ('dbgfs_before_terminate()').\n\nTherefore, when 'target_ids' file is repeatedly written without DAMON\nmonitoring start/termination, the reference count is not decreased and\ntherefore memory for the 'struct pid' cannot be freed. This commit\nfixes this issue by decreasing the reference counts when 'target_ids' is\nwritten.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46937", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46937", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46937", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46937", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46937", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46937" + } + }, + "CVE-2021-46938": { + "affected_versions": "v4.6-rc1 to v5.13-rc1", + "breaks": "1c357a1e86a4227a6b6059f2de118ae47659cebc", + "cmt_msg": "dm rq: fix double free of blk_mq_tag_set in dev remove after table load fails", + "fixes": "8e947c8f4a5620df77e43c9c75310dc510250166", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndm rq: fix double free of blk_mq_tag_set in dev remove after table load fails\n\nWhen loading a device-mapper table for a request-based mapped device,\nand the allocation/initialization of the blk_mq_tag_set for the device\nfails, a following device remove will cause a double free.\n\nE.g. (dmesg):\n device-mapper: core: Cannot initialize queue for request-based dm-mq mapped device\n device-mapper: ioctl: unable to set up device queue for new table.\n Unable to handle kernel pointer dereference in virtual kernel address space\n Failing address: 0305e098835de000 TEID: 0305e098835de803\n Fault in home space mode while using kernel ASCE.\n AS:000000025efe0007 R3:0000000000000024\n Oops: 0038 ilc:3 [#1] SMP\n Modules linked in: ... lots of modules ...\n Supported: Yes, External\n CPU: 0 PID: 7348 Comm: multipathd Kdump: loaded Tainted: G W X 5.3.18-53-default #1 SLE15-SP3\n Hardware name: IBM 8561 T01 7I2 (LPAR)\n Krnl PSW : 0704e00180000000 000000025e368eca (kfree+0x42/0x330)\n R:0 T:1 IO:1 EX:1 Key:0 M:1 W:0 P:0 AS:3 CC:2 PM:0 RI:0 EA:3\n Krnl GPRS: 000000000000004a 000000025efe5230 c1773200d779968d 0000000000000000\n 000000025e520270 000000025e8d1b40 0000000000000003 00000007aae10000\n 000000025e5202a2 0000000000000001 c1773200d779968d 0305e098835de640\n 00000007a8170000 000003ff80138650 000000025e5202a2 000003e00396faa8\n Krnl Code: 000000025e368eb8: c4180041e100 lgrl %r1,25eba50b8\n 000000025e368ebe: ecba06b93a55 risbg %r11,%r10,6,185,58\n #000000025e368ec4: e3b010000008 ag %r11,0(%r1)\n >000000025e368eca: e310b0080004 lg %r1,8(%r11)\n 000000025e368ed0: a7110001 tmll %r1,1\n 000000025e368ed4: a7740129 brc 7,25e369126\n 000000025e368ed8: e320b0080004 lg %r2,8(%r11)\n 000000025e368ede: b904001b lgr %r1,%r11\n Call Trace:\n [<000000025e368eca>] kfree+0x42/0x330\n [<000000025e5202a2>] blk_mq_free_tag_set+0x72/0xb8\n [<000003ff801316a8>] dm_mq_cleanup_mapped_device+0x38/0x50 [dm_mod]\n [<000003ff80120082>] free_dev+0x52/0xd0 [dm_mod]\n [<000003ff801233f0>] __dm_destroy+0x150/0x1d0 [dm_mod]\n [<000003ff8012bb9a>] dev_remove+0x162/0x1c0 [dm_mod]\n [<000003ff8012a988>] ctl_ioctl+0x198/0x478 [dm_mod]\n [<000003ff8012ac8a>] dm_ctl_ioctl+0x22/0x38 [dm_mod]\n [<000000025e3b11ee>] ksys_ioctl+0xbe/0xe0\n [<000000025e3b127a>] __s390x_sys_ioctl+0x2a/0x40\n [<000000025e8c15ac>] system_call+0xd8/0x2c8\n Last Breaking-Event-Address:\n [<000000025e52029c>] blk_mq_free_tag_set+0x6c/0xb8\n Kernel panic - not syncing: Fatal exception: panic_on_oops\n\nWhen allocation/initialization of the blk_mq_tag_set fails in\ndm_mq_init_request_queue(), it is uninitialized/freed, but the pointer\nis not reset to NULL; so when dev_remove() later gets into\ndm_mq_cleanup_mapped_device() it sees the pointer and tries to\nuninitialize and free it again.\n\nFix this by setting the pointer to NULL in dm_mq_init_request_queue()\nerror-handling. Also set it to NULL in dm_mq_cleanup_mapped_device().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46938", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46938", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46938", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46938", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46938", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46938" + } + }, + "CVE-2021-46939": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "tracing: Restructure trace_clock_global() to never block", + "fixes": "aafe104aa9096827a429bc1358f8260ee565b7cc", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntracing: Restructure trace_clock_global() to never block\n\nIt was reported that a fix to the ring buffer recursion detection would\ncause a hung machine when performing suspend / resume testing. The\nfollowing backtrace was extracted from debugging that case:\n\nCall Trace:\n trace_clock_global+0x91/0xa0\n __rb_reserve_next+0x237/0x460\n ring_buffer_lock_reserve+0x12a/0x3f0\n trace_buffer_lock_reserve+0x10/0x50\n __trace_graph_return+0x1f/0x80\n trace_graph_return+0xb7/0xf0\n ? trace_clock_global+0x91/0xa0\n ftrace_return_to_handler+0x8b/0xf0\n ? pv_hash+0xa0/0xa0\n return_to_handler+0x15/0x30\n ? ftrace_graph_caller+0xa0/0xa0\n ? trace_clock_global+0x91/0xa0\n ? __rb_reserve_next+0x237/0x460\n ? ring_buffer_lock_reserve+0x12a/0x3f0\n ? trace_event_buffer_lock_reserve+0x3c/0x120\n ? trace_event_buffer_reserve+0x6b/0xc0\n ? trace_event_raw_event_device_pm_callback_start+0x125/0x2d0\n ? dpm_run_callback+0x3b/0xc0\n ? pm_ops_is_empty+0x50/0x50\n ? platform_get_irq_byname_optional+0x90/0x90\n ? trace_device_pm_callback_start+0x82/0xd0\n ? dpm_run_callback+0x49/0xc0\n\nWith the following RIP:\n\nRIP: 0010:native_queued_spin_lock_slowpath+0x69/0x200\n\nSince the fix to the recursion detection would allow a single recursion to\nhappen while tracing, this lead to the trace_clock_global() taking a spin\nlock and then trying to take it again:\n\nring_buffer_lock_reserve() {\n trace_clock_global() {\n arch_spin_lock() {\n queued_spin_lock_slowpath() {\n /* lock taken */\n (something else gets traced by function graph tracer)\n ring_buffer_lock_reserve() {\n trace_clock_global() {\n arch_spin_lock() {\n queued_spin_lock_slowpath() {\n /* DEAD LOCK! */\n\nTracing should *never* block, as it can lead to strange lockups like the\nabove.\n\nRestructure the trace_clock_global() code to instead of simply taking a\nlock to update the recorded \"prev_time\" simply use it, as two events\nhappening on two different CPUs that calls this at the same time, really\ndoesn't matter which one goes first. Use a trylock to grab the lock for\nupdating the prev_time, and if it fails, simply try again the next time.\nIf it failed to be taken, that means something else is already updating\nit.\n\n\nBugzilla: https://bugzilla.kernel.org/show_bug.cgi?id=212761", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46939", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46939", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46939", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46939", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46939", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46939" + } + }, + "CVE-2021-46940": { + "affected_versions": "v5.10-rc4 to v5.13-rc1", + "breaks": "9972d5d84d76982606806b2ce887f70c2f8ba60a", + "cmt_msg": "tools/power turbostat: Fix offset overflow issue in index converting", + "fixes": "13a779de4175df602366d129e41782ad7168cef0", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntools/power turbostat: Fix offset overflow issue in index converting\n\nThe idx_to_offset() function returns type int (32-bit signed), but\nMSR_PKG_ENERGY_STAT is u32 and would be interpreted as a negative number.\nThe end result is that it hits the if (offset < 0) check in update_msr_sum()\nwhich prevents the timer callback from updating the stat in the background when\nlong durations are used. The similar issue exists in offset_to_idx() and\nupdate_msr_sum(). Fix this issue by converting the 'int' to 'off_t' accordingly.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46940", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46940", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46940", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46940", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46940", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46940" + } + }, + "CVE-2021-46941": { + "affected_versions": "v4.12-rc1 to v5.13-rc1", + "breaks": "41ce1456e1dbbc7355d0fcc10cf7c337c13def24", + "cmt_msg": "usb: dwc3: core: Do core softreset when switch mode", + "fixes": "f88359e1588b85cf0e8209ab7d6620085f3441d9", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: dwc3: core: Do core softreset when switch mode\n\n\nAccording to the programming guide, to switch mode for DRD controller,\nthe driver needs to do the following.\n\nTo switch from device to host:\n1. Reset controller with GCTL.CoreSoftReset\n2. Set GCTL.PrtCapDir(host mode)\n3. Reset the host with USBCMD.HCRESET\n4. Then follow up with the initializing host registers sequence\n\nTo switch from host to device:\n1. Reset controller with GCTL.CoreSoftReset\n2. Set GCTL.PrtCapDir(device mode)\n3. Reset the device with DCTL.CSftRst\n4. Then follow up with the initializing registers sequence\n\nCurrently we're missing step 1) to do GCTL.CoreSoftReset and step 3) of\nswitching from host to device. John Stult reported a lockup issue seen\nwith HiKey960 platform without these steps[1]. Similar issue is observed\nwith Ferry's testing platform[2].\n\nSo, apply the required steps along with some fixes to Yu Chen's and John\nStultz's version. The main fixes to their versions are the missing wait\nfor clocks synchronization before clearing GCTL.CoreSoftReset and only\napply DCTL.CSftRst when switching from host to device.\n\n[1] https://lore.kernel.org/linux-usb/20210108015115.27920-1-john.stultz@linaro.org/\n[2] https://lore.kernel.org/linux-usb/0ba7a6ba-e6a7-9cd4-0695-64fc927e01f1@gmail.com/", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46941", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46941", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46941", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46941", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46941", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46941" + } + }, + "CVE-2021-46942": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "37d1e2e3642e2380750d7f35279180826f29660e", + "cmt_msg": "io_uring: fix shared sqpoll cancellation hangs", + "fixes": "734551df6f9bedfbefcd113ede665945e9de0b99", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring: fix shared sqpoll cancellation hangs\n\n[ 736.982891] INFO: task iou-sqp-4294:4295 blocked for more than 122 seconds.\n[ 736.982897] Call Trace:\n[ 736.982901] schedule+0x68/0xe0\n[ 736.982903] io_uring_cancel_sqpoll+0xdb/0x110\n[ 736.982908] io_sqpoll_cancel_cb+0x24/0x30\n[ 736.982911] io_run_task_work_head+0x28/0x50\n[ 736.982913] io_sq_thread+0x4e3/0x720\n\nWe call io_uring_cancel_sqpoll() one by one for each ctx either in\nsq_thread() itself or via task works, and it's intended to cancel all\nrequests of a specified context. However the function uses per-task\ncounters to track the number of inflight requests, so it counts more\nrequests than available via currect io_uring ctx and goes to sleep for\nthem to appear (e.g. from IRQ), that will never happen.\n\nCancel a bit more than before, i.e. all ctxs that share sqpoll\nand continue to use shared counters. Don't forget that we should not\nremove ctx from the list before running that task_work sqpoll-cancel,\notherwise the function wouldn't be able to find the context and will\nhang.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46942", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46942", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46942", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46942", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46942", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46942" + } + }, + "CVE-2021-46943": { + "affected_versions": "v5.2-rc1 to v5.13-rc1", + "breaks": "6d5f26f2e045f2377b524516194657c00efbbce8", + "cmt_msg": "media: staging/intel-ipu3: Fix set_fmt error handling", + "fixes": "ad91849996f9dd79741a961fd03585a683b08356", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: staging/intel-ipu3: Fix set_fmt error handling\n\nIf there in an error during a set_fmt, do not overwrite the previous\nsizes with the invalid config.\n\nWithout this patch, v4l2-compliance ends up allocating 4GiB of RAM and\ncausing the following OOPs\n\n[ 38.662975] ipu3-imgu 0000:00:05.0: swiotlb buffer is full (sz: 4096 bytes)\n[ 38.662980] DMA: Out of SW-IOMMU space for 4096 bytes at device 0000:00:05.0\n[ 38.663010] general protection fault: 0000 [#1] PREEMPT SMP", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46943", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46943", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46943", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46943", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46943", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46943" + } + }, + "CVE-2021-46944": { + "affected_versions": "v5.2-rc1 to v5.13-rc1", + "breaks": "6d5f26f2e045f2377b524516194657c00efbbce8", + "cmt_msg": "media: staging/intel-ipu3: Fix memory leak in imu_fmt", + "fixes": "3630901933afba1d16c462b04d569b7576339223", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: staging/intel-ipu3: Fix memory leak in imu_fmt\n\nWe are losing the reference to an allocated memory if try. Change the\norder of the check to avoid that.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46944", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46944", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46944", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46944", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46944", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46944" + } + }, + "CVE-2021-46945": { + "affected_versions": "v5.11-rc1 to v5.13-rc1", + "breaks": "014c9caa29d3a44e0de695c99ef18bec3e887d52", + "cmt_msg": "ext4: always panic when errors=panic is specified", + "fixes": "ac2f7ca51b0929461ea49918f27c11b680f28995", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\next4: always panic when errors=panic is specified\n\nBefore commit 014c9caa29d3 (\"ext4: make ext4_abort() use\n__ext4_error()\"), the following series of commands would trigger a\npanic:\n\n1. mount /dev/sda -o ro,errors=panic test\n2. mount /dev/sda -o remount,abort test\n\nAfter commit 014c9caa29d3, remounting a file system using the test\nmount option \"abort\" will no longer trigger a panic. This commit will\nrestore the behaviour immediately before commit 014c9caa29d3.\n(However, note that the Linux kernel's behavior has not been\nconsistent; some previous kernel versions, including 5.4 and 4.19\nsimilarly did not panic after using the mount option \"abort\".)\n\nThis also makes a change to long-standing behaviour; namely, the\nfollowing series commands will now cause a panic, when previously it\ndid not:\n\n1. mount /dev/sda -o ro,errors=panic test\n2. echo test > /sys/fs/ext4/sda/trigger_fs_error\n\nHowever, this makes ext4's behaviour much more consistent, so this is\na good thing.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46945", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46945", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46945", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46945", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46945", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46945" + } + }, + "CVE-2021-46947": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "e26ca4b535820b1445dcef3c0f82b3fb5b45108b", + "cmt_msg": "sfc: adjust efx->xdp_tx_queue_count with the real number of initialized queues", + "fixes": "99ba0ea616aabdc8e26259fd722503e012199a76", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsfc: adjust efx->xdp_tx_queue_count with the real number of initialized queues\n\nefx->xdp_tx_queue_count is initially initialized to num_possible_cpus() and is\nlater used to allocate and traverse efx->xdp_tx_queues lookup array. However,\nwe may end up not initializing all the array slots with real queues during\nprobing. This results, for example, in a NULL pointer dereference, when running\n\"# ethtool -S <iface>\", similar to below\n\n[2570283.664955][T4126959] BUG: kernel NULL pointer dereference, address: 00000000000000f8\n[2570283.681283][T4126959] #PF: supervisor read access in kernel mode\n[2570283.695678][T4126959] #PF: error_code(0x0000) - not-present page\n[2570283.710013][T4126959] PGD 0 P4D 0\n[2570283.721649][T4126959] Oops: 0000 [#1] SMP PTI\n[2570283.734108][T4126959] CPU: 23 PID: 4126959 Comm: ethtool Tainted: G O 5.10.20-cloudflare-2021.3.1 #1\n[2570283.752641][T4126959] Hardware name: <redacted>\n[2570283.781408][T4126959] RIP: 0010:efx_ethtool_get_stats+0x2ca/0x330 [sfc]\n[2570283.796073][T4126959] Code: 00 85 c0 74 39 48 8b 95 a8 0f 00 00 48 85 d2 74 2d 31 c0 eb 07 48 8b 95 a8 0f 00 00 48 63 c8 49 83 c4 08 83 c0 01 48 8b 14 ca <48> 8b 92 f8 00 00 00 49 89 54 24 f8 39 85 a0 0f 00 00 77 d7 48 8b\n[2570283.831259][T4126959] RSP: 0018:ffffb79a77657ce8 EFLAGS: 00010202\n[2570283.845121][T4126959] RAX: 0000000000000019 RBX: ffffb799cd0c9280 RCX: 0000000000000018\n[2570283.860872][T4126959] RDX: 0000000000000000 RSI: ffff96dd970ce000 RDI: 0000000000000005\n[2570283.876525][T4126959] RBP: ffff96dd86f0a000 R08: ffff96dd970ce480 R09: 000000000000005f\n[2570283.892014][T4126959] R10: ffffb799cd0c9fff R11: ffffb799cd0c9000 R12: ffffb799cd0c94f8\n[2570283.907406][T4126959] R13: ffffffffc11b1090 R14: ffff96dd970ce000 R15: ffffffffc11cd66c\n[2570283.922705][T4126959] FS: 00007fa7723f8740(0000) GS:ffff96f51fac0000(0000) knlGS:0000000000000000\n[2570283.938848][T4126959] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[2570283.952524][T4126959] CR2: 00000000000000f8 CR3: 0000001a73e6e006 CR4: 00000000007706e0\n[2570283.967529][T4126959] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[2570283.982400][T4126959] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[2570283.997308][T4126959] PKRU: 55555554\n[2570284.007649][T4126959] Call Trace:\n[2570284.017598][T4126959] dev_ethtool+0x1832/0x2830\n\nFix this by adjusting efx->xdp_tx_queue_count after probing to reflect the true\nvalue of initialized slots in efx->xdp_tx_queues.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46947", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46947", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46947", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46947", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46947", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46947" + } + }, + "CVE-2021-46948": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "12804793b17c0e19115a90d98f2f3df0cb79e233", + "cmt_msg": "sfc: farch: fix TX queue lookup in TX event handling", + "fixes": "83b09a1807415608b387c7bc748d329fefc5617e", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsfc: farch: fix TX queue lookup in TX event handling\n\nWe're starting from a TXQ label, not a TXQ type, so\n efx_channel_get_tx_queue() is inappropriate (and could return NULL,\n leading to panics).", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46948", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46948", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46948", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46948", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46948", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46948" + } + }, + "CVE-2021-46949": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "12804793b17c0e19115a90d98f2f3df0cb79e233", + "cmt_msg": "sfc: farch: fix TX queue lookup in TX flush done handling", + "fixes": "5b1faa92289b53cad654123ed2bc8e10f6ddd4ac", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsfc: farch: fix TX queue lookup in TX flush done handling\n\nWe're starting from a TXQ instance number ('qid'), not a TXQ type, so\n efx_get_tx_queue() is inappropriate (and could return NULL, leading\n to panics).", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46949", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46949", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46949", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46949", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46949", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46949" + } + }, + "CVE-2021-46950": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "md/raid1: properly indicate failure when ending a failed write request", + "fixes": "2417b9869b81882ab90fd5ed1081a1cb2d4db1dd", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid1: properly indicate failure when ending a failed write request\n\nThis patch addresses a data corruption bug in raid1 arrays using bitmaps.\nWithout this fix, the bitmap bits for the failed I/O end up being cleared.\n\nSince we are in the failure leg of raid1_end_write_request, the request\neither needs to be retried (R1BIO_WriteError) or failed (R1BIO_Degraded).", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46950", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46950", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46950", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46950", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46950", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46950" + } + }, + "CVE-2021-46951": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "tpm: efi: Use local variable for calculating final log size", + "fixes": "48cff270b037022e37835d93361646205ca25101", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntpm: efi: Use local variable for calculating final log size\n\nWhen tpm_read_log_efi is called multiple times, which happens when\none loads and unloads a TPM2 driver multiple times, then the global\nvariable efi_tpm_final_log_size will at some point become a negative\nnumber due to the subtraction of final_events_preboot_size occurring\neach time. Use a local variable to avoid this integer underflow.\n\nThe following issue is now resolved:\n\nMar 8 15:35:12 hibinst kernel: Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 0.0.0 02/06/2015\nMar 8 15:35:12 hibinst kernel: Workqueue: tpm-vtpm vtpm_proxy_work [tpm_vtpm_proxy]\nMar 8 15:35:12 hibinst kernel: RIP: 0010:__memcpy+0x12/0x20\nMar 8 15:35:12 hibinst kernel: Code: 00 b8 01 00 00 00 85 d2 74 0a c7 05 44 7b ef 00 0f 00 00 00 c3 cc cc cc 66 66 90 66 90 48 89 f8 48 89 d1 48 c1 e9 03 83 e2 07 <f3> 48 a5 89 d1 f3 a4 c3 66 0f 1f 44 00 00 48 89 f8 48 89 d1 f3 a4\nMar 8 15:35:12 hibinst kernel: RSP: 0018:ffff9ac4c0fcfde0 EFLAGS: 00010206\nMar 8 15:35:12 hibinst kernel: RAX: ffff88f878cefed5 RBX: ffff88f878ce9000 RCX: 1ffffffffffffe0f\nMar 8 15:35:12 hibinst kernel: RDX: 0000000000000003 RSI: ffff9ac4c003bff9 RDI: ffff88f878cf0e4d\nMar 8 15:35:12 hibinst kernel: RBP: ffff9ac4c003b000 R08: 0000000000001000 R09: 000000007e9d6073\nMar 8 15:35:12 hibinst kernel: R10: ffff9ac4c003b000 R11: ffff88f879ad3500 R12: 0000000000000ed5\nMar 8 15:35:12 hibinst kernel: R13: ffff88f878ce9760 R14: 0000000000000002 R15: ffff88f77de7f018\nMar 8 15:35:12 hibinst kernel: FS: 0000000000000000(0000) GS:ffff88f87bd00000(0000) knlGS:0000000000000000\nMar 8 15:35:12 hibinst kernel: CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nMar 8 15:35:12 hibinst kernel: CR2: ffff9ac4c003c000 CR3: 00000001785a6004 CR4: 0000000000060ee0\nMar 8 15:35:12 hibinst kernel: Call Trace:\nMar 8 15:35:12 hibinst kernel: tpm_read_log_efi+0x152/0x1a7\nMar 8 15:35:12 hibinst kernel: tpm_bios_log_setup+0xc8/0x1c0\nMar 8 15:35:12 hibinst kernel: tpm_chip_register+0x8f/0x260\nMar 8 15:35:12 hibinst kernel: vtpm_proxy_work+0x16/0x60 [tpm_vtpm_proxy]\nMar 8 15:35:12 hibinst kernel: process_one_work+0x1b4/0x370\nMar 8 15:35:12 hibinst kernel: worker_thread+0x53/0x3e0\nMar 8 15:35:12 hibinst kernel: ? process_one_work+0x370/0x370", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46951", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46951", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46951", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46951", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46951", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46951" + } + }, + "CVE-2021-46952": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds", + "fixes": "c09f11ef35955785f92369e25819bf0629df2e59", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nNFS: fs_context: validate UDP retrans to prevent shift out-of-bounds\n\nFix shift out-of-bounds in xprt_calc_majortimeo(). This is caused\nby a garbage timeout (retrans) mount option being passed to nfs mount,\nin this case from syzkaller.\n\nIf the protocol is XPRT_TRANSPORT_UDP, then 'retrans' is a shift\nvalue for a 64-bit long integer, so 'retrans' cannot be >= 64.\nIf it is >= 64, fail the mount and return an error.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46952", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46952", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46952", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46952", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46952", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46952" + } + }, + "CVE-2021-46953": { + "affected_versions": "v4.12-rc1 to v5.13-rc1", + "breaks": "ca9ae5ec4ef0ed13833b03297ab319676965492c", + "cmt_msg": "ACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure", + "fixes": "1ecd5b129252249b9bc03d7645a7bda512747277", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nACPI: GTDT: Don't corrupt interrupt mappings on watchdow probe failure\n\nWhen failing the driver probe because of invalid firmware properties,\nthe GTDT driver unmaps the interrupt that it mapped earlier.\n\nHowever, it never checks whether the mapping of the interrupt actially\nsucceeded. Even more, should the firmware report an illegal interrupt\nnumber that overlaps with the GIC SGI range, this can result in an\nIPI being unmapped, and subsequent fireworks (as reported by Dann\nFrazier).\n\nRework the driver to have a slightly saner behaviour and actually\ncheck whether the interrupt has been mapped before unmapping things.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46953", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46953", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46953", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46953", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46953", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46953" + } + }, + "CVE-2021-46954": { + "affected_versions": "v5.11-rc1 to v5.13-rc1", + "breaks": "c129412f74e99b609f0a8e95fc3915af1fd40f34", + "cmt_msg": "net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets", + "fixes": "31fe34a0118e0acc958c802e830ad5d37ef6b1d3", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets\n\nwhen 'act_mirred' tries to fragment IPv4 packets that had been previously\nre-assembled using 'act_ct', splats like the following can be observed on\nkernels built with KASAN:\n\n BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60\n Read of size 1 at addr ffff888147009574 by task ping/947\n\n CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418\n Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014\n Call Trace:\n <IRQ>\n dump_stack+0x92/0xc1\n print_address_description.constprop.7+0x1a/0x150\n kasan_report.cold.13+0x7f/0x111\n ip_do_fragment+0x1b03/0x1f60\n sch_fragment+0x4bf/0xe40\n tcf_mirred_act+0xc3d/0x11a0 [act_mirred]\n tcf_action_exec+0x104/0x3e0\n fl_classify+0x49a/0x5e0 [cls_flower]\n tcf_classify_ingress+0x18a/0x820\n __netif_receive_skb_core+0xae7/0x3340\n __netif_receive_skb_one_core+0xb6/0x1b0\n process_backlog+0x1ef/0x6c0\n __napi_poll+0xaa/0x500\n net_rx_action+0x702/0xac0\n __do_softirq+0x1e4/0x97f\n do_softirq+0x71/0x90\n </IRQ>\n __local_bh_enable_ip+0xdb/0xf0\n ip_finish_output2+0x760/0x2120\n ip_do_fragment+0x15a5/0x1f60\n __ip_finish_output+0x4c2/0xea0\n ip_output+0x1ca/0x4d0\n ip_send_skb+0x37/0xa0\n raw_sendmsg+0x1c4b/0x2d00\n sock_sendmsg+0xdb/0x110\n __sys_sendto+0x1d7/0x2b0\n __x64_sys_sendto+0xdd/0x1b0\n do_syscall_64+0x33/0x40\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n RIP: 0033:0x7f82e13853eb\n Code: 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 f3 0f 1e fa 48 8d 05 75 42 2c 00 41 89 ca 8b 00 85 c0 75 14 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 75 c3 0f 1f 40 00 41 57 4d 89 c7 41 56 41 89\n RSP: 002b:00007ffe01fad888 EFLAGS: 00000246 ORIG_RAX: 000000000000002c\n RAX: ffffffffffffffda RBX: 00005571aac13700 RCX: 00007f82e13853eb\n RDX: 0000000000002330 RSI: 00005571aac13700 RDI: 0000000000000003\n RBP: 0000000000002330 R08: 00005571aac10500 R09: 0000000000000010\n R10: 0000000000000000 R11: 0000000000000246 R12: 00007ffe01faefb0\n R13: 00007ffe01fad890 R14: 00007ffe01fad980 R15: 00005571aac0f0a0\n\n The buggy address belongs to the page:\n page:000000001dff2e03 refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x147009\n flags: 0x17ffffc0001000(reserved)\n raw: 0017ffffc0001000 ffffea00051c0248 ffffea00051c0248 0000000000000000\n raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000\n page dumped because: kasan: bad access detected\n\n Memory state around the buggy address:\n ffff888147009400: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00\n ffff888147009480: f1 f1 f1 f1 04 f2 f2 f2 f2 f2 f2 f2 00 00 00 00\n >ffff888147009500: 00 00 00 00 00 00 00 00 00 00 f2 f2 f2 f2 f2 f2\n ^\n ffff888147009580: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00\n ffff888147009600: 00 00 00 00 00 00 00 00 00 00 00 00 00 f2 f2 f2\n\nfor IPv4 packets, sch_fragment() uses a temporary struct dst_entry. Then,\nin the following call graph:\n\n ip_do_fragment()\n ip_skb_dst_mtu()\n ip_dst_mtu_maybe_forward()\n ip_mtu_locked()\n\nthe pointer to struct dst_entry is used as pointer to struct rtable: this\nturns the access to struct members like rt_mtu_locked into an OOB read in\nthe stack. Fix this changing the temporary variable used for IPv4 packets\nin sch_fragment(), similarly to what is done for IPv6 few lines below.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46954", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46954", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46954", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46954", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46954", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46954" + } + }, + "CVE-2021-46955": { + "affected_versions": "v4.16-rc7 to v5.13-rc1", + "breaks": "d52e5a7e7ca49457dd31fc8b42fb7c0d58a31221", + "cmt_msg": "openvswitch: fix stack OOB read while fragmenting IPv4 packets", + "fixes": "7c0ea5930c1c211931819d83cfb157bff1539a4c", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nopenvswitch: fix stack OOB read while fragmenting IPv4 packets\n\nrunning openvswitch on kernels built with KASAN, it's possible to see the\nfollowing splat while testing fragmentation of IPv4 packets:\n\n BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60\n Read of size 1 at addr ffff888112fc713c by task handler2/1367\n\n CPU: 0 PID: 1367 Comm: handler2 Not tainted 5.12.0-rc6+ #418\n Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014\n Call Trace:\n dump_stack+0x92/0xc1\n print_address_description.constprop.7+0x1a/0x150\n kasan_report.cold.13+0x7f/0x111\n ip_do_fragment+0x1b03/0x1f60\n ovs_fragment+0x5bf/0x840 [openvswitch]\n do_execute_actions+0x1bd5/0x2400 [openvswitch]\n ovs_execute_actions+0xc8/0x3d0 [openvswitch]\n ovs_packet_cmd_execute+0xa39/0x1150 [openvswitch]\n genl_family_rcv_msg_doit.isra.15+0x227/0x2d0\n genl_rcv_msg+0x287/0x490\n netlink_rcv_skb+0x120/0x380\n genl_rcv+0x24/0x40\n netlink_unicast+0x439/0x630\n netlink_sendmsg+0x719/0xbf0\n sock_sendmsg+0xe2/0x110\n ____sys_sendmsg+0x5ba/0x890\n ___sys_sendmsg+0xe9/0x160\n __sys_sendmsg+0xd3/0x170\n do_syscall_64+0x33/0x40\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n RIP: 0033:0x7f957079db07\n Code: c3 66 90 41 54 41 89 d4 55 48 89 f5 53 89 fb 48 83 ec 10 e8 eb ec ff ff 44 89 e2 48 89 ee 89 df 41 89 c0 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 35 44 89 c7 48 89 44 24 08 e8 24 ed ff ff 48\n RSP: 002b:00007f956ce35a50 EFLAGS: 00000293 ORIG_RAX: 000000000000002e\n RAX: ffffffffffffffda RBX: 0000000000000019 RCX: 00007f957079db07\n RDX: 0000000000000000 RSI: 00007f956ce35ae0 RDI: 0000000000000019\n RBP: 00007f956ce35ae0 R08: 0000000000000000 R09: 00007f9558006730\n R10: 0000000000000000 R11: 0000000000000293 R12: 0000000000000000\n R13: 00007f956ce37308 R14: 00007f956ce35f80 R15: 00007f956ce35ae0\n\n The buggy address belongs to the page:\n page:00000000af2a1d93 refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x112fc7\n flags: 0x17ffffc0000000()\n raw: 0017ffffc0000000 0000000000000000 dead000000000122 0000000000000000\n raw: 0000000000000000 0000000000000000 00000000ffffffff 0000000000000000\n page dumped because: kasan: bad access detected\n\n addr ffff888112fc713c is located in stack of task handler2/1367 at offset 180 in frame:\n ovs_fragment+0x0/0x840 [openvswitch]\n\n this frame has 2 objects:\n [32, 144) 'ovs_dst'\n [192, 424) 'ovs_rt'\n\n Memory state around the buggy address:\n ffff888112fc7000: f3 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00\n ffff888112fc7080: 00 f1 f1 f1 f1 00 00 00 00 00 00 00 00 00 00 00\n >ffff888112fc7100: 00 00 00 f2 f2 f2 f2 f2 f2 00 00 00 00 00 00 00\n ^\n ffff888112fc7180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00\n ffff888112fc7200: 00 00 00 00 00 00 f2 f2 f2 00 00 00 00 00 00 00\n\nfor IPv4 packets, ovs_fragment() uses a temporary struct dst_entry. Then,\nin the following call graph:\n\n ip_do_fragment()\n ip_skb_dst_mtu()\n ip_dst_mtu_maybe_forward()\n ip_mtu_locked()\n\nthe pointer to struct dst_entry is used as pointer to struct rtable: this\nturns the access to struct members like rt_mtu_locked into an OOB read in\nthe stack. Fix this changing the temporary variable used for IPv4 packets\nin ovs_fragment(), similarly to what is done for IPv6 few lines below.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46955", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46955", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46955", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46955", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46955", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46955" + } + }, + "CVE-2021-46956": { + "affected_versions": "v5.4-rc1 to v5.13-rc1", + "breaks": "a62a8ef9d97da23762a588592c8b8eb50a8deb6a", + "cmt_msg": "virtiofs: fix memory leak in virtio_fs_probe()", + "fixes": "c79c5e0178922a9e092ec8fed026750f39dcaef4", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nvirtiofs: fix memory leak in virtio_fs_probe()\n\nWhen accidentally passing twice the same tag to qemu, kmemleak ended up\nreporting a memory leak in virtiofs. Also, looking at the log I saw the\nfollowing error (that's when I realised the duplicated tag):\n\n virtiofs: probe of virtio5 failed with error -17\n\nHere's the kmemleak log for reference:\n\nunreferenced object 0xffff888103d47800 (size 1024):\n comm \"systemd-udevd\", pid 118, jiffies 4294893780 (age 18.340s)\n hex dump (first 32 bytes):\n 00 00 00 00 ad 4e ad de ff ff ff ff 00 00 00 00 .....N..........\n ff ff ff ff ff ff ff ff 80 90 02 a0 ff ff ff ff ................\n backtrace:\n [<000000000ebb87c1>] virtio_fs_probe+0x171/0x7ae [virtiofs]\n [<00000000f8aca419>] virtio_dev_probe+0x15f/0x210\n [<000000004d6baf3c>] really_probe+0xea/0x430\n [<00000000a6ceeac8>] device_driver_attach+0xa8/0xb0\n [<00000000196f47a7>] __driver_attach+0x98/0x140\n [<000000000b20601d>] bus_for_each_dev+0x7b/0xc0\n [<00000000399c7b7f>] bus_add_driver+0x11b/0x1f0\n [<0000000032b09ba7>] driver_register+0x8f/0xe0\n [<00000000cdd55998>] 0xffffffffa002c013\n [<000000000ea196a2>] do_one_initcall+0x64/0x2e0\n [<0000000008f727ce>] do_init_module+0x5c/0x260\n [<000000003cdedab6>] __do_sys_finit_module+0xb5/0x120\n [<00000000ad2f48c6>] do_syscall_64+0x33/0x40\n [<00000000809526b5>] entry_SYSCALL_64_after_hwframe+0x44/0xae", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46956", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46956", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46956", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46956", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46956", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46956" + } + }, + "CVE-2021-46957": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "c22b0bcb1dd024cb9caad9230e3a387d8b061df5", + "cmt_msg": "riscv/kprobe: fix kernel panic when invoking sys_read traced by kprobe", + "fixes": "b1ebaa0e1318494a7637099a26add50509e37964", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nriscv/kprobe: fix kernel panic when invoking sys_read traced by kprobe\n\nThe execution of sys_read end up hitting a BUG_ON() in __find_get_block\nafter installing kprobe at sys_read, the BUG message like the following:\n\n[ 65.708663] ------------[ cut here ]------------\n[ 65.709987] kernel BUG at fs/buffer.c:1251!\n[ 65.711283] Kernel BUG [#1]\n[ 65.712032] Modules linked in:\n[ 65.712925] CPU: 0 PID: 51 Comm: sh Not tainted 5.12.0-rc4 #1\n[ 65.714407] Hardware name: riscv-virtio,qemu (DT)\n[ 65.715696] epc : __find_get_block+0x218/0x2c8\n[ 65.716835] ra : __getblk_gfp+0x1c/0x4a\n[ 65.717831] epc : ffffffe00019f11e ra : ffffffe00019f56a sp : ffffffe002437930\n[ 65.719553] gp : ffffffe000f06030 tp : ffffffe0015abc00 t0 : ffffffe00191e038\n[ 65.721290] t1 : ffffffe00191e038 t2 : 000000000000000a s0 : ffffffe002437960\n[ 65.723051] s1 : ffffffe00160ad00 a0 : ffffffe00160ad00 a1 : 000000000000012a\n[ 65.724772] a2 : 0000000000000400 a3 : 0000000000000008 a4 : 0000000000000040\n[ 65.726545] a5 : 0000000000000000 a6 : ffffffe00191e000 a7 : 0000000000000000\n[ 65.728308] s2 : 000000000000012a s3 : 0000000000000400 s4 : 0000000000000008\n[ 65.730049] s5 : 000000000000006c s6 : ffffffe00240f800 s7 : ffffffe000f080a8\n[ 65.731802] s8 : 0000000000000001 s9 : 000000000000012a s10: 0000000000000008\n[ 65.733516] s11: 0000000000000008 t3 : 00000000000003ff t4 : 000000000000000f\n[ 65.734434] t5 : 00000000000003ff t6 : 0000000000040000\n[ 65.734613] status: 0000000000000100 badaddr: 0000000000000000 cause: 0000000000000003\n[ 65.734901] Call Trace:\n[ 65.735076] [<ffffffe00019f11e>] __find_get_block+0x218/0x2c8\n[ 65.735417] [<ffffffe00020017a>] __ext4_get_inode_loc+0xb2/0x2f6\n[ 65.735618] [<ffffffe000201b6c>] ext4_get_inode_loc+0x3a/0x8a\n[ 65.735802] [<ffffffe000203380>] ext4_reserve_inode_write+0x2e/0x8c\n[ 65.735999] [<ffffffe00020357a>] __ext4_mark_inode_dirty+0x4c/0x18e\n[ 65.736208] [<ffffffe000206bb0>] ext4_dirty_inode+0x46/0x66\n[ 65.736387] [<ffffffe000192914>] __mark_inode_dirty+0x12c/0x3da\n[ 65.736576] [<ffffffe000180dd2>] touch_atime+0x146/0x150\n[ 65.736748] [<ffffffe00010d762>] filemap_read+0x234/0x246\n[ 65.736920] [<ffffffe00010d834>] generic_file_read_iter+0xc0/0x114\n[ 65.737114] [<ffffffe0001f5d7a>] ext4_file_read_iter+0x42/0xea\n[ 65.737310] [<ffffffe000163f2c>] new_sync_read+0xe2/0x15a\n[ 65.737483] [<ffffffe000165814>] vfs_read+0xca/0xf2\n[ 65.737641] [<ffffffe000165bae>] ksys_read+0x5e/0xc8\n[ 65.737816] [<ffffffe000165c26>] sys_read+0xe/0x16\n[ 65.737973] [<ffffffe000003972>] ret_from_syscall+0x0/0x2\n[ 65.738858] ---[ end trace fe93f985456c935d ]---\n\nA simple reproducer looks like:\n\techo 'p:myprobe sys_read fd=%a0 buf=%a1 count=%a2' > /sys/kernel/debug/tracing/kprobe_events\n\techo 1 > /sys/kernel/debug/tracing/events/kprobes/myprobe/enable\n\tcat /sys/kernel/debug/tracing/trace\n\nHere's what happens to hit that BUG_ON():\n\n1) After installing kprobe at entry of sys_read, the first instruction\n is replaced by 'ebreak' instruction on riscv64 platform.\n\n2) Once kernel reach the 'ebreak' instruction at the entry of sys_read,\n it trap into the riscv breakpoint handler, where it do something to\n setup for coming single-step of origin instruction, including backup\n the 'sstatus' in pt_regs, followed by disable interrupt during single\n stepping via clear 'SIE' bit of 'sstatus' in pt_regs.\n\n3) Then kernel restore to the instruction slot contains two instructions,\n one is original instruction at entry of sys_read, the other is 'ebreak'.\n Here it trigger a 'Instruction page fault' exception (value at 'scause'\n is '0xc'), if PF is not filled into PageTabe for that slot yet.\n\n4) Again kernel trap into page fault exception handler, where it choose\n different policy according to the state of running kprobe. Because\n afte 2) the state is KPROBE_HIT_SS, so kernel reset the current kp\n---truncated---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46957", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46957", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46957", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46957", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46957", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46957" + } + }, + "CVE-2021-46958": { + "affected_versions": "v5.7-rc4 to v5.13-rc1", + "breaks": "ef67963dac255b293e19815ea3d440567be4626f", + "cmt_msg": "btrfs: fix race between transaction aborts and fsyncs leading to use-after-free", + "fixes": "061dde8245356d8864d29e25207aa4daa0be4d3c", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix race between transaction aborts and fsyncs leading to use-after-free\n\nThere is a race between a task aborting a transaction during a commit,\na task doing an fsync and the transaction kthread, which leads to an\nuse-after-free of the log root tree. When this happens, it results in a\nstack trace like the following:\n\n BTRFS info (device dm-0): forced readonly\n BTRFS warning (device dm-0): Skipping commit of aborted transaction.\n BTRFS: error (device dm-0) in cleanup_transaction:1958: errno=-5 IO failure\n BTRFS warning (device dm-0): lost page write due to IO error on /dev/mapper/error-test (-5)\n BTRFS warning (device dm-0): Skipping commit of aborted transaction.\n BTRFS warning (device dm-0): direct IO failed ino 261 rw 0,0 sector 0xa4e8 len 4096 err no 10\n BTRFS error (device dm-0): error writing primary super block to device 1\n BTRFS warning (device dm-0): direct IO failed ino 261 rw 0,0 sector 0x12e000 len 4096 err no 10\n BTRFS warning (device dm-0): direct IO failed ino 261 rw 0,0 sector 0x12e008 len 4096 err no 10\n BTRFS warning (device dm-0): direct IO failed ino 261 rw 0,0 sector 0x12e010 len 4096 err no 10\n BTRFS: error (device dm-0) in write_all_supers:4110: errno=-5 IO failure (1 errors while writing supers)\n BTRFS: error (device dm-0) in btrfs_sync_log:3308: errno=-5 IO failure\n general protection fault, probably for non-canonical address 0x6b6b6b6b6b6b6b68: 0000 [#1] PREEMPT SMP DEBUG_PAGEALLOC PTI\n CPU: 2 PID: 2458471 Comm: fsstress Not tainted 5.12.0-rc5-btrfs-next-84 #1\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.14.0-0-g155821a1990b-prebuilt.qemu.org 04/01/2014\n RIP: 0010:__mutex_lock+0x139/0xa40\n Code: c0 74 19 (...)\n RSP: 0018:ffff9f18830d7b00 EFLAGS: 00010202\n RAX: 6b6b6b6b6b6b6b68 RBX: 0000000000000001 RCX: 0000000000000002\n RDX: ffffffffb9c54d13 RSI: 0000000000000000 RDI: 0000000000000000\n RBP: ffff9f18830d7bc0 R08: 0000000000000000 R09: 0000000000000000\n R10: ffff9f18830d7be0 R11: 0000000000000001 R12: ffff8c6cd199c040\n R13: ffff8c6c95821358 R14: 00000000fffffffb R15: ffff8c6cbcf01358\n FS: 00007fa9140c2b80(0000) GS:ffff8c6fac600000(0000) knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 00007fa913d52000 CR3: 000000013d2b4003 CR4: 0000000000370ee0\n DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n Call Trace:\n ? __btrfs_handle_fs_error+0xde/0x146 [btrfs]\n ? btrfs_sync_log+0x7c1/0xf20 [btrfs]\n ? btrfs_sync_log+0x7c1/0xf20 [btrfs]\n btrfs_sync_log+0x7c1/0xf20 [btrfs]\n btrfs_sync_file+0x40c/0x580 [btrfs]\n do_fsync+0x38/0x70\n __x64_sys_fsync+0x10/0x20\n do_syscall_64+0x33/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n RIP: 0033:0x7fa9142a55c3\n Code: 8b 15 09 (...)\n RSP: 002b:00007fff26278d48 EFLAGS: 00000246 ORIG_RAX: 000000000000004a\n RAX: ffffffffffffffda RBX: 0000563c83cb4560 RCX: 00007fa9142a55c3\n RDX: 00007fff26278cb0 RSI: 00007fff26278cb0 RDI: 0000000000000005\n RBP: 0000000000000005 R08: 0000000000000001 R09: 00007fff26278d5c\n R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000340\n R13: 00007fff26278de0 R14: 00007fff26278d96 R15: 0000563c83ca57c0\n Modules linked in: btrfs dm_zero dm_snapshot dm_thin_pool (...)\n ---[ end trace ee2f1b19327d791d ]---\n\nThe steps that lead to this crash are the following:\n\n1) We are at transaction N;\n\n2) We have two tasks with a transaction handle attached to transaction N.\n Task A and Task B. Task B is doing an fsync;\n\n3) Task B is at btrfs_sync_log(), and has saved fs_info->log_root_tree\n into a local variable named 'log_root_tree' at the top of\n btrfs_sync_log(). Task B is about to call write_all_supers(), but\n before that...\n\n4) Task A calls btrfs_commit_transaction(), and after it sets the\n transaction state to TRANS_STATE_COMMIT_START, an error happens before\n it w\n---truncated---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46958", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46958", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46958", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46958", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46958", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46958" + } + }, + "CVE-2021-46959": { + "affected_versions": "v2.6.12-rc2 to v5.13-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "spi: Fix use-after-free with devm_spi_alloc_*", + "fixes": "794aaf01444d4e765e2b067cba01cc69c1c68ed9", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nspi: Fix use-after-free with devm_spi_alloc_*\n\nWe can't rely on the contents of the devres list during\nspi_unregister_controller(), as the list is already torn down at the\ntime we perform devres_find() for devm_spi_release_controller. This\ncauses devices registered with devm_spi_alloc_{master,slave}() to be\nmistakenly identified as legacy, non-devm managed devices and have their\nreference counters decremented below 0.\n\n------------[ cut here ]------------\nWARNING: CPU: 1 PID: 660 at lib/refcount.c:28 refcount_warn_saturate+0x108/0x174\n[<b0396f04>] (refcount_warn_saturate) from [<b03c56a4>] (kobject_put+0x90/0x98)\n[<b03c5614>] (kobject_put) from [<b0447b4c>] (put_device+0x20/0x24)\n r4:b6700140\n[<b0447b2c>] (put_device) from [<b07515e8>] (devm_spi_release_controller+0x3c/0x40)\n[<b07515ac>] (devm_spi_release_controller) from [<b045343c>] (release_nodes+0x84/0xc4)\n r5:b6700180 r4:b6700100\n[<b04533b8>] (release_nodes) from [<b0454160>] (devres_release_all+0x5c/0x60)\n r8:b1638c54 r7:b117ad94 r6:b1638c10 r5:b117ad94 r4:b163dc10\n[<b0454104>] (devres_release_all) from [<b044e41c>] (__device_release_driver+0x144/0x1ec)\n r5:b117ad94 r4:b163dc10\n[<b044e2d8>] (__device_release_driver) from [<b044f70c>] (device_driver_detach+0x84/0xa0)\n r9:00000000 r8:00000000 r7:b117ad94 r6:b163dc54 r5:b1638c10 r4:b163dc10\n[<b044f688>] (device_driver_detach) from [<b044d274>] (unbind_store+0xe4/0xf8)\n\nInstead, determine the devm allocation state as a flag on the\ncontroller which is guaranteed to be stable during cleanup.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46959", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46959", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46959", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46959", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46959", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46959" + } + }, + "CVE-2021-46960": { + "affected_versions": "v4.11-rc1 to v5.13-rc1", + "breaks": "61cfac6f267dabcf2740a7ec8a0295833b28b5f5", + "cmt_msg": "cifs: Return correct error code from smb2_get_enc_key", + "fixes": "83728cbf366e334301091d5b808add468ab46b27", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncifs: Return correct error code from smb2_get_enc_key\n\nAvoid a warning if the error percolates back up:\n\n[440700.376476] CIFS VFS: \\\\otters.example.com crypt_message: Could not get encryption key\n[440700.386947] ------------[ cut here ]------------\n[440700.386948] err = 1\n[440700.386977] WARNING: CPU: 11 PID: 2733 at /build/linux-hwe-5.4-p6lk6L/linux-hwe-5.4-5.4.0/lib/errseq.c:74 errseq_set+0x5c/0x70\n...\n[440700.397304] CPU: 11 PID: 2733 Comm: tar Tainted: G OE 5.4.0-70-generic #78~18.04.1-Ubuntu\n...\n[440700.397334] Call Trace:\n[440700.397346] __filemap_set_wb_err+0x1a/0x70\n[440700.397419] cifs_writepages+0x9c7/0xb30 [cifs]\n[440700.397426] do_writepages+0x4b/0xe0\n[440700.397444] __filemap_fdatawrite_range+0xcb/0x100\n[440700.397455] filemap_write_and_wait+0x42/0xa0\n[440700.397486] cifs_setattr+0x68b/0xf30 [cifs]\n[440700.397493] notify_change+0x358/0x4a0\n[440700.397500] utimes_common+0xe9/0x1c0\n[440700.397510] do_utimes+0xc5/0x150\n[440700.397520] __x64_sys_utimensat+0x88/0xd0", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46960", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46960", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46960", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46960", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46960", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46960" + } + }, + "CVE-2021-46961": { + "affected_versions": "v5.1-rc1 to v5.13-rc1", + "breaks": "3f1f3234bc2db1c16b9818b9a15a5d58ad45251c", + "cmt_msg": "irqchip/gic-v3: Do not enable irqs when handling spurious interrups", + "fixes": "a97709f563a078e259bf0861cd259aa60332890a", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/gic-v3: Do not enable irqs when handling spurious interrups\n\nWe triggered the following error while running our 4.19 kernel\nwith the pseudo-NMI patches backported to it:\n\n[ 14.816231] ------------[ cut here ]------------\n[ 14.816231] kernel BUG at irq.c:99!\n[ 14.816232] Internal error: Oops - BUG: 0 [#1] SMP\n[ 14.816232] Process swapper/0 (pid: 0, stack limit = 0x(____ptrval____))\n[ 14.816233] CPU: 0 PID: 0 Comm: swapper/0 Tainted: G O 4.19.95.aarch64 #14\n[ 14.816233] Hardware name: evb (DT)\n[ 14.816234] pstate: 80400085 (Nzcv daIf +PAN -UAO)\n[ 14.816234] pc : asm_nmi_enter+0x94/0x98\n[ 14.816235] lr : asm_nmi_enter+0x18/0x98\n[ 14.816235] sp : ffff000008003c50\n[ 14.816235] pmr_save: 00000070\n[ 14.816237] x29: ffff000008003c50 x28: ffff0000095f56c0\n[ 14.816238] x27: 0000000000000000 x26: ffff000008004000\n[ 14.816239] x25: 00000000015e0000 x24: ffff8008fb916000\n[ 14.816240] x23: 0000000020400005 x22: ffff0000080817cc\n[ 14.816241] x21: ffff000008003da0 x20: 0000000000000060\n[ 14.816242] x19: 00000000000003ff x18: ffffffffffffffff\n[ 14.816243] x17: 0000000000000008 x16: 003d090000000000\n[ 14.816244] x15: ffff0000095ea6c8 x14: ffff8008fff5ab40\n[ 14.816244] x13: ffff8008fff58b9d x12: 0000000000000000\n[ 14.816245] x11: ffff000008c8a200 x10: 000000008e31fca5\n[ 14.816246] x9 : ffff000008c8a208 x8 : 000000000000000f\n[ 14.816247] x7 : 0000000000000004 x6 : ffff8008fff58b9e\n[ 14.816248] x5 : 0000000000000000 x4 : 0000000080000000\n[ 14.816249] x3 : 0000000000000000 x2 : 0000000080000000\n[ 14.816250] x1 : 0000000000120000 x0 : ffff0000095f56c0\n[ 14.816251] Call trace:\n[ 14.816251] asm_nmi_enter+0x94/0x98\n[ 14.816251] el1_irq+0x8c/0x180 (IRQ C)\n[ 14.816252] gic_handle_irq+0xbc/0x2e4\n[ 14.816252] el1_irq+0xcc/0x180 (IRQ B)\n[ 14.816253] arch_timer_handler_virt+0x38/0x58\n[ 14.816253] handle_percpu_devid_irq+0x90/0x240\n[ 14.816253] generic_handle_irq+0x34/0x50\n[ 14.816254] __handle_domain_irq+0x68/0xc0\n[ 14.816254] gic_handle_irq+0xf8/0x2e4\n[ 14.816255] el1_irq+0xcc/0x180 (IRQ A)\n[ 14.816255] arch_cpu_idle+0x34/0x1c8\n[ 14.816255] default_idle_call+0x24/0x44\n[ 14.816256] do_idle+0x1d0/0x2c8\n[ 14.816256] cpu_startup_entry+0x28/0x30\n[ 14.816256] rest_init+0xb8/0xc8\n[ 14.816257] start_kernel+0x4c8/0x4f4\n[ 14.816257] Code: 940587f1 d5384100 b9401001 36a7fd01 (d4210000)\n[ 14.816258] Modules linked in: start_dp(O) smeth(O)\n[ 15.103092] ---[ end trace 701753956cb14aa8 ]---\n[ 15.103093] Kernel panic - not syncing: Fatal exception in interrupt\n[ 15.103099] SMP: stopping secondary CPUs\n[ 15.103100] Kernel Offset: disabled\n[ 15.103100] CPU features: 0x36,a2400218\n[ 15.103100] Memory Limit: none\n\nwhich is cause by a 'BUG_ON(in_nmi())' in nmi_enter().\n\nFrom the call trace, we can find three interrupts (noted A, B, C above):\ninterrupt (A) is preempted by (B), which is further interrupted by (C).\n\nSubsequent investigations show that (B) results in nmi_enter() being\ncalled, but that it actually is a spurious interrupt. Furthermore,\ninterrupts are reenabled in the context of (B), and (C) fires with\nNMI priority. We end-up with a nested NMI situation, something\nwe definitely do not want to (and cannot) handle.\n\nThe bug here is that spurious interrupts should never result in any\nstate change, and we should just return to the interrupted context.\nMoving the handling of spurious interrupts as early as possible in\nthe GICv3 handler fixes this issue.\n\n[maz: rewrote commit message, corrected Fixes: tag]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46961", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46961", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46961", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46961", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46961", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46961" + } + }, + "CVE-2021-46962": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "mmc: uniphier-sd: Fix a resource leak in the remove function", + "fixes": "e29c84857e2d51aa017ce04284b962742fb97d9e", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: uniphier-sd: Fix a resource leak in the remove function\n\nA 'tmio_mmc_host_free()' call is missing in the remove function, in order\nto balance a 'tmio_mmc_host_alloc()' call in the probe.\nThis is done in the error handling path of the probe, but not in the remove\nfunction.\n\nAdd the missing call.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46962", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46962", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46962", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46962", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46962", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46962" + } + }, + "CVE-2021-46963": { + "affected_versions": "v5.5-rc1 to v5.13-rc1", + "breaks": "af2a0c51b1205327f55a7e82e530403ae1d42cbb", + "cmt_msg": "scsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand()", + "fixes": "6641df81ab799f28a5d564f860233dd26cca0d93", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand()\n\n RIP: 0010:kmem_cache_free+0xfa/0x1b0\n Call Trace:\n qla2xxx_mqueuecommand+0x2b5/0x2c0 [qla2xxx]\n scsi_queue_rq+0x5e2/0xa40\n __blk_mq_try_issue_directly+0x128/0x1d0\n blk_mq_request_issue_directly+0x4e/0xb0\n\nFix incorrect call to free srb in qla2xxx_mqueuecommand(), as srb is now\nallocated by upper layers. This fixes smatch warning of srb unintended\nfree.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46963", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46963", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46963", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46963", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46963", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46963" + } + }, + "CVE-2021-46964": { + "affected_versions": "v5.11-rc1 to v5.13-rc1", + "breaks": "a6dcfe08487e5e83b6b4214c959a9577a9ed2d9f", + "cmt_msg": "scsi: qla2xxx: Reserve extra IRQ vectors", + "fixes": "f02d4086a8f36a0e1aaebf559b54cf24a177a486", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: qla2xxx: Reserve extra IRQ vectors\n\nCommit a6dcfe08487e (\"scsi: qla2xxx: Limit interrupt vectors to number of\nCPUs\") lowers the number of allocated MSI-X vectors to the number of CPUs.\n\nThat breaks vector allocation assumptions in qla83xx_iospace_config(),\nqla24xx_enable_msix() and qla2x00_iospace_config(). Either of the functions\ncomputes maximum number of qpairs as:\n\n ha->max_qpairs = ha->msix_count - 1 (MB interrupt) - 1 (default\n response queue) - 1 (ATIO, in dual or pure target mode)\n\nmax_qpairs is set to zero in case of two CPUs and initiator mode. The\nnumber is then used to allocate ha->queue_pair_map inside\nqla2x00_alloc_queues(). No allocation happens and ha->queue_pair_map is\nleft NULL but the driver thinks there are queue pairs available.\n\nqla2xxx_queuecommand() tries to find a qpair in the map and crashes:\n\n if (ha->mqenable) {\n uint32_t tag;\n uint16_t hwq;\n struct qla_qpair *qpair = NULL;\n\n tag = blk_mq_unique_tag(cmd->request);\n hwq = blk_mq_unique_tag_to_hwq(tag);\n qpair = ha->queue_pair_map[hwq]; # <- HERE\n\n if (qpair)\n return qla2xxx_mqueuecommand(host, cmd, qpair);\n }\n\n BUG: kernel NULL pointer dereference, address: 0000000000000000\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD 0 P4D 0\n Oops: 0000 [#1] SMP PTI\n CPU: 0 PID: 72 Comm: kworker/u4:3 Tainted: G W 5.10.0-rc1+ #25\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.0.0-prebuilt.qemu-project.org 04/01/2014\n Workqueue: scsi_wq_7 fc_scsi_scan_rport [scsi_transport_fc]\n RIP: 0010:qla2xxx_queuecommand+0x16b/0x3f0 [qla2xxx]\n Call Trace:\n scsi_queue_rq+0x58c/0xa60\n blk_mq_dispatch_rq_list+0x2b7/0x6f0\n ? __sbitmap_get_word+0x2a/0x80\n __blk_mq_sched_dispatch_requests+0xb8/0x170\n blk_mq_sched_dispatch_requests+0x2b/0x50\n __blk_mq_run_hw_queue+0x49/0xb0\n __blk_mq_delay_run_hw_queue+0xfb/0x150\n blk_mq_sched_insert_request+0xbe/0x110\n blk_execute_rq+0x45/0x70\n __scsi_execute+0x10e/0x250\n scsi_probe_and_add_lun+0x228/0xda0\n __scsi_scan_target+0xf4/0x620\n ? __pm_runtime_resume+0x4f/0x70\n scsi_scan_target+0x100/0x110\n fc_scsi_scan_rport+0xa1/0xb0 [scsi_transport_fc]\n process_one_work+0x1ea/0x3b0\n worker_thread+0x28/0x3b0\n ? process_one_work+0x3b0/0x3b0\n kthread+0x112/0x130\n ? kthread_park+0x80/0x80\n ret_from_fork+0x22/0x30\n\nThe driver should allocate enough vectors to provide every CPU it's own HW\nqueue and still handle reserved (MB, RSP, ATIO) interrupts.\n\nThe change fixes the crash on dual core VM and prevents unbalanced QP\nallocation where nr_hw_queues is two less than the number of CPUs.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46964", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46964", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46964", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46964", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46964", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46964" + } + }, + "CVE-2021-46965": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "mtd: physmap: physmap-bt1-rom: Fix unintentional stack access", + "fixes": "683313993dbe1651c7aa00bb42a041d70e914925", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: physmap: physmap-bt1-rom: Fix unintentional stack access\n\nCast &data to (char *) in order to avoid unintentionally accessing\nthe stack.\n\nNotice that data is of type u32, so any increment to &data\nwill be in the order of 4-byte chunks, and this piece of code\nis actually intended to be a byte offset.\n\nAddresses-Coverity-ID: 1497765 (\"Out-of-bounds access\")", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46965", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46965", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46965", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46965", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46965", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46965" + } + }, + "CVE-2021-46966": { + "affected_versions": "v5.4-rc1 to v5.13-rc1", + "breaks": "03d1571d9513369c17e6848476763ebbd10ec2cb", + "cmt_msg": "ACPI: custom_method: fix potential use-after-free issue", + "fixes": "e483bb9a991bdae29a0caa4b3a6d002c968f94aa", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nACPI: custom_method: fix potential use-after-free issue\n\nIn cm_write(), buf is always freed when reaching the end of the\nfunction. If the requested count is less than table.length, the\nallocated buffer will be freed but subsequent calls to cm_write() will\nstill try to access it.\n\nRemove the unconditional kfree(buf) at the end of the function and\nset the buf to NULL in the -EINVAL error path to match the rest of\nfunction.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46966", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46966", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46966", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46966", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46966", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46966" + } + }, + "CVE-2021-46967": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "ddd89d0a059d8e9740c75a97e0efe9bf07ee51f9", + "cmt_msg": "vhost-vdpa: fix vm_flags for virtqueue doorbell mapping", + "fixes": "3a3e0fad16d40a2aa68ddf7eea4acdf48b22dd44", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nvhost-vdpa: fix vm_flags for virtqueue doorbell mapping\n\nThe virtqueue doorbell is usually implemented via registeres but we\ndon't provide the necessary vma->flags like VM_PFNMAP. This may cause\nseveral issues e.g when userspace tries to map the doorbell via vhost\nIOTLB, kernel may panic due to the page is not backed by page\nstructure. This patch fixes this by setting the necessary\nvm_flags. With this patch, try to map doorbell via IOTLB will fail\nwith bad address.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46967", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46967", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46967", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46967", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46967", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46967" + } + }, + "CVE-2021-46968": { + "affected_versions": "v5.10-rc3 to v5.13-rc1", + "breaks": "29c2680fd2bf3862ff5cf2957f198512493156f9", + "cmt_msg": "s390/zcrypt: fix zcard and zqueue hot-unplug memleak", + "fixes": "70fac8088cfad9f3b379c9082832b4d7532c16c2", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ns390/zcrypt: fix zcard and zqueue hot-unplug memleak\n\nTests with kvm and a kmemdebug kernel showed, that on hot unplug the\nzcard and zqueue structs for the unplugged card or queue are not\nproperly freed because of a mismatch with get/put for the embedded\nkref counter.\n\nThis fix now adjusts the handling of the kref counters. With init the\nkref counter starts with 1. This initial value needs to drop to zero\nwith the unregister of the card or queue to trigger the release and\nfree the object.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46968", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46968", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46968", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46968", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46968", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46968" + } + }, + "CVE-2021-46969": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "bus: mhi: core: Fix invalid error returning in mhi_queue", + "fixes": "0ecc1c70dcd32c0f081b173a1a5d89952686f271", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbus: mhi: core: Fix invalid error returning in mhi_queue\n\nmhi_queue returns an error when the doorbell is not accessible in\nthe current state. This can happen when the device is in non M0\nstate, like M3, and needs to be waken-up prior ringing the DB. This\ncase is managed earlier by triggering an asynchronous M3 exit via\ncontroller resume/suspend callbacks, that in turn will cause M0\ntransition and DB update.\n\nSo, since it's not an error but just delaying of doorbell update, there\nis no reason to return an error.\n\nThis also fixes a use after free error for skb case, indeed a caller\nqueuing skb will try to free the skb if the queueing fails, but in\nthat case queueing has been done.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46969", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46969", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46969", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46969", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46969", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46969" + } + }, + "CVE-2021-46970": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "bus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue", + "fixes": "0fccbf0a3b690b162f53b13ed8bc442ea33437dc", + "last_affected_version": "5.12.2", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbus: mhi: pci_generic: Remove WQ_MEM_RECLAIM flag from state workqueue\n\nA recent change created a dedicated workqueue for the state-change work\nwith WQ_HIGHPRI (no strong reason for that) and WQ_MEM_RECLAIM flags,\nbut the state-change work (mhi_pm_st_worker) does not guarantee forward\nprogress under memory pressure, and will even wait on various memory\nallocations when e.g. creating devices, loading firmware, etc... The\nwork is then not part of a memory reclaim path...\n\nMoreover, this causes a warning in check_flush_dependency() since we end\nup in code that flushes a non-reclaim workqueue:\n\n[ 40.969601] workqueue: WQ_MEM_RECLAIM mhi_hiprio_wq:mhi_pm_st_worker [mhi] is flushing !WQ_MEM_RECLAIM events_highpri:flush_backlog\n[ 40.969612] WARNING: CPU: 4 PID: 158 at kernel/workqueue.c:2607 check_flush_dependency+0x11c/0x140\n[ 40.969733] Call Trace:\n[ 40.969740] __flush_work+0x97/0x1d0\n[ 40.969745] ? wake_up_process+0x15/0x20\n[ 40.969749] ? insert_work+0x70/0x80\n[ 40.969750] ? __queue_work+0x14a/0x3e0\n[ 40.969753] flush_work+0x10/0x20\n[ 40.969756] rollback_registered_many+0x1c9/0x510\n[ 40.969759] unregister_netdevice_queue+0x94/0x120\n[ 40.969761] unregister_netdev+0x1d/0x30\n[ 40.969765] mhi_net_remove+0x1a/0x40 [mhi_net]\n[ 40.969770] mhi_driver_remove+0x124/0x250 [mhi]\n[ 40.969776] device_release_driver_internal+0xf0/0x1d0\n[ 40.969778] device_release_driver+0x12/0x20\n[ 40.969782] bus_remove_device+0xe1/0x150\n[ 40.969786] device_del+0x17b/0x3e0\n[ 40.969791] mhi_destroy_device+0x9a/0x100 [mhi]\n[ 40.969796] ? mhi_unmap_single_use_bb+0x50/0x50 [mhi]\n[ 40.969799] device_for_each_child+0x5e/0xa0\n[ 40.969804] mhi_pm_st_worker+0x921/0xf50 [mhi]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46970", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46970", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46970", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46970", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46970", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46970" + } + }, + "CVE-2021-46971": { + "affected_versions": "v5.4-rc1 to v5.13-rc1", + "breaks": "b0c8fdc7fdb77586c3d1937050925b960743306e", + "cmt_msg": "perf/core: Fix unconditional security_locked_down() call", + "fixes": "08ef1af4de5fe7de9c6d69f1e22e51b66e385d9b", + "last_affected_version": "5.12.1", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nperf/core: Fix unconditional security_locked_down() call\n\nCurrently, the lockdown state is queried unconditionally, even though\nits result is used only if the PERF_SAMPLE_REGS_INTR bit is set in\nattr.sample_type. While that doesn't matter in case of the Lockdown LSM,\nit causes trouble with the SELinux's lockdown hook implementation.\n\nSELinux implements the locked_down hook with a check whether the current\ntask's type has the corresponding \"lockdown\" class permission\n(\"integrity\" or \"confidentiality\") allowed in the policy. This means\nthat calling the hook when the access control decision would be ignored\ngenerates a bogus permission check and audit record.\n\nFix this by checking sample_type first and only calling the hook when\nits result would be honored.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46971", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46971", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46971", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46971", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46971", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46971" + } + }, + "CVE-2021-46972": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "6815f479ca90ee7fd2e28b2a420f796b974155fe", + "cmt_msg": "ovl: fix leaked dentry", + "fixes": "eaab1d45cdb4bb0c846bd23c3d666d5b90af7b41", + "last_affected_version": "5.12.1", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\novl: fix leaked dentry\n\nSince commit 6815f479ca90 (\"ovl: use only uppermetacopy state in\novl_lookup()\"), overlayfs doesn't put temporary dentry when there is a\nmetacopy error, which leads to dentry leaks when shutting down the related\nsuperblock:\n\n overlayfs: refusing to follow metacopy origin for (/file0)\n ...\n BUG: Dentry (____ptrval____){i=3f33,n=file3} still in use (1) [unmount of overlay overlay]\n ...\n WARNING: CPU: 1 PID: 432 at umount_check.cold+0x107/0x14d\n CPU: 1 PID: 432 Comm: unmount-overlay Not tainted 5.12.0-rc5 #1\n ...\n RIP: 0010:umount_check.cold+0x107/0x14d\n ...\n Call Trace:\n d_walk+0x28c/0x950\n ? dentry_lru_isolate+0x2b0/0x2b0\n ? __kasan_slab_free+0x12/0x20\n do_one_tree+0x33/0x60\n shrink_dcache_for_umount+0x78/0x1d0\n generic_shutdown_super+0x70/0x440\n kill_anon_super+0x3e/0x70\n deactivate_locked_super+0xc4/0x160\n deactivate_super+0xfa/0x140\n cleanup_mnt+0x22e/0x370\n __cleanup_mnt+0x1a/0x30\n task_work_run+0x139/0x210\n do_exit+0xb0c/0x2820\n ? __kasan_check_read+0x1d/0x30\n ? find_held_lock+0x35/0x160\n ? lock_release+0x1b6/0x660\n ? mm_update_next_owner+0xa20/0xa20\n ? reacquire_held_locks+0x3f0/0x3f0\n ? __sanitizer_cov_trace_const_cmp4+0x22/0x30\n do_group_exit+0x135/0x380\n __do_sys_exit_group.isra.0+0x20/0x20\n __x64_sys_exit_group+0x3c/0x50\n do_syscall_64+0x45/0x70\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n ...\n VFS: Busy inodes after unmount of overlay. Self-destruct in 5 seconds. Have a nice day...\n\nThis fix has been tested with a syzkaller reproducer.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46972", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46972", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46972", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46972", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46972", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46972" + } + }, + "CVE-2021-46973": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "6e728f321393b1fce9e1c2c3e55f9f7c15991321", + "cmt_msg": "net: qrtr: Avoid potential use after free in MHI send", + "fixes": "47a017f33943278570c072bc71681809b2567b3a", + "last_affected_version": "5.12.1", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: qrtr: Avoid potential use after free in MHI send\n\nIt is possible that the MHI ul_callback will be invoked immediately\nfollowing the queueing of the skb for transmission, leading to the\ncallback decrementing the refcount of the associated sk and freeing the\nskb.\n\nAs such the dereference of skb and the increment of the sk refcount must\nhappen before the skb is queued, to avoid the skb to be used after free\nand potentially the sk to drop its last refcount..", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46973", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46973", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46973", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46973", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46973", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46973" + } + }, + "CVE-2021-46974": { + "affected_versions": "v5.0-rc1 to v5.13-rc1", + "breaks": "979d63d50c0c0f7bc537bf821e056cc9fe5abd38", + "cmt_msg": "bpf: Fix masking negation logic upon negative dst register", + "fixes": "b9b34ddbe2076ade359cd5ce7537d5ed019e9807", + "last_affected_version": "5.12.1", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix masking negation logic upon negative dst register\n\nThe negation logic for the case where the off_reg is sitting in the\ndst register is not correct given then we cannot just invert the add\nto a sub or vice versa. As a fix, perform the final bitwise and-op\nunconditionally into AX from the off_reg, then move the pointer from\nthe src to dst and finally use AX as the source for the original\npointer arithmetic operation such that the inversion yields a correct\nresult. The single non-AX mov in between is possible given constant\nblinding is retaining it as it's not an immediate based operation.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46974", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46974", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46974", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46974", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46974", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46974" + } + }, + "CVE-2021-46976": { + "affected_versions": "v5.8-rc1 to v5.13-rc2", + "breaks": "229007e02d697b0662f85378aae53531b0dfea05", + "cmt_msg": "drm/i915: Fix crash in auto_retire", + "fixes": "402be8a101190969fc7ff122d07e262df86e132b", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/i915: Fix crash in auto_retire\n\nThe retire logic uses the 2 lower bits of the pointer to the retire\nfunction to store flags. However, the auto_retire function is not\nguaranteed to be aligned to a multiple of 4, which causes crashes as\nwe jump to the wrong address, for example like this:\n\n2021-04-24T18:03:53.804300Z WARNING kernel: [ 516.876901] invalid opcode: 0000 [#1] PREEMPT SMP NOPTI\n2021-04-24T18:03:53.804310Z WARNING kernel: [ 516.876906] CPU: 7 PID: 146 Comm: kworker/u16:6 Tainted: G U 5.4.105-13595-g3cd84167b2df #1\n2021-04-24T18:03:53.804311Z WARNING kernel: [ 516.876907] Hardware name: Google Volteer2/Volteer2, BIOS Google_Volteer2.13672.76.0 02/22/2021\n2021-04-24T18:03:53.804312Z WARNING kernel: [ 516.876911] Workqueue: events_unbound active_work\n2021-04-24T18:03:53.804313Z WARNING kernel: [ 516.876914] RIP: 0010:auto_retire+0x1/0x20\n2021-04-24T18:03:53.804314Z WARNING kernel: [ 516.876916] Code: e8 01 f2 ff ff eb 02 31 db 48 89 d8 5b 5d c3 0f 1f 44 00 00 55 48 89 e5 f0 ff 87 c8 00 00 00 0f 88 ab 47 4a 00 31 c0 5d c3 0f <1f> 44 00 00 55 48 89 e5 f0 ff 8f c8 00 00 00 0f 88 9a 47 4a 00 74\n2021-04-24T18:03:53.804319Z WARNING kernel: [ 516.876918] RSP: 0018:ffff9b4d809fbe38 EFLAGS: 00010286\n2021-04-24T18:03:53.804320Z WARNING kernel: [ 516.876919] RAX: 0000000000000007 RBX: ffff927915079600 RCX: 0000000000000007\n2021-04-24T18:03:53.804320Z WARNING kernel: [ 516.876921] RDX: ffff9b4d809fbe40 RSI: 0000000000000286 RDI: ffff927915079600\n2021-04-24T18:03:53.804321Z WARNING kernel: [ 516.876922] RBP: ffff9b4d809fbe68 R08: 8080808080808080 R09: fefefefefefefeff\n2021-04-24T18:03:53.804321Z WARNING kernel: [ 516.876924] R10: 0000000000000010 R11: ffffffff92e44bd8 R12: ffff9279150796a0\n2021-04-24T18:03:53.804322Z WARNING kernel: [ 516.876925] R13: ffff92791c368180 R14: ffff927915079640 R15: 000000001c867605\n2021-04-24T18:03:53.804323Z WARNING kernel: [ 516.876926] FS: 0000000000000000(0000) GS:ffff92791ffc0000(0000) knlGS:0000000000000000\n2021-04-24T18:03:53.804323Z WARNING kernel: [ 516.876928] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n2021-04-24T18:03:53.804324Z WARNING kernel: [ 516.876929] CR2: 0000239514955000 CR3: 00000007f82da001 CR4: 0000000000760ee0\n2021-04-24T18:03:53.804325Z WARNING kernel: [ 516.876930] PKRU: 55555554\n2021-04-24T18:03:53.804325Z WARNING kernel: [ 516.876931] Call Trace:\n2021-04-24T18:03:53.804326Z WARNING kernel: [ 516.876935] __active_retire+0x77/0xcf\n2021-04-24T18:03:53.804326Z WARNING kernel: [ 516.876939] process_one_work+0x1da/0x394\n2021-04-24T18:03:53.804327Z WARNING kernel: [ 516.876941] worker_thread+0x216/0x375\n2021-04-24T18:03:53.804327Z WARNING kernel: [ 516.876944] kthread+0x147/0x156\n2021-04-24T18:03:53.804335Z WARNING kernel: [ 516.876946] ? pr_cont_work+0x58/0x58\n2021-04-24T18:03:53.804335Z WARNING kernel: [ 516.876948] ? kthread_blkcg+0x2e/0x2e\n2021-04-24T18:03:53.804336Z WARNING kernel: [ 516.876950] ret_from_fork+0x1f/0x40\n2021-04-24T18:03:53.804336Z WARNING kernel: [ 516.876952] Modules linked in: cdc_mbim cdc_ncm cdc_wdm xt_cgroup rfcomm cmac algif_hash algif_skcipher af_alg xt_MASQUERADE uinput snd_soc_rt5682_sdw snd_soc_rt5682 snd_soc_max98373_sdw snd_soc_max98373 snd_soc_rl6231 regmap_sdw snd_soc_sof_sdw snd_soc_hdac_hdmi snd_soc_dmic snd_hda_codec_hdmi snd_sof_pci snd_sof_intel_hda_common intel_ipu6_psys snd_sof_xtensa_dsp soundwire_intel soundwire_generic_allocation soundwire_cadence snd_sof_intel_hda snd_sof snd_soc_hdac_hda snd_soc_acpi_intel_match snd_soc_acpi snd_hda_ext_core soundwire_bus snd_hda_intel snd_intel_dspcfg snd_hda_codec snd_hwdep snd_hda_core intel_ipu6_isys videobuf2_dma_contig videobuf2_v4l2 videobuf2_common videobuf2_memops mei_hdcp intel_ipu6 ov2740 ov8856 at24 sx9310 dw9768 v4l2_fwnode cros_ec_typec intel_pmc_mux roles acpi_als typec fuse iio_trig_sysfs cros_ec_light_prox cros_ec_lid_angle cros_ec_sensors cros\n---truncated---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46976", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46976", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46976", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46976", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46976", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46976" + } + }, + "CVE-2021-46977": { + "affected_versions": "v5.5-rc1 to v5.13-rc2", + "breaks": "4be5341026246870818e28b53202b001426a5aec", + "cmt_msg": "KVM: VMX: Disable preemption when probing user return MSRs", + "fixes": "5104d7ffcf24749939bea7fdb5378d186473f890", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: VMX: Disable preemption when probing user return MSRs\n\nDisable preemption when probing a user return MSR via RDSMR/WRMSR. If\nthe MSR holds a different value per logical CPU, the WRMSR could corrupt\nthe host's value if KVM is preempted between the RDMSR and WRMSR, and\nthen rescheduled on a different CPU.\n\nOpportunistically land the helper in common x86, SVM will use the helper\nin a future commit.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46977", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46977", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46977", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46977", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46977", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46977" + } + }, + "CVE-2021-46978": { + "affected_versions": "v5.11-rc3 to v5.13-rc2", + "breaks": "f2c7ef3ba9556d62a7e2bb23b563c6510007d55c", + "cmt_msg": "KVM: nVMX: Always make an attempt to map eVMCS after migration", + "fixes": "f5c7e8425f18fdb9bdb7d13340651d7876890329", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: nVMX: Always make an attempt to map eVMCS after migration\n\nWhen enlightened VMCS is in use and nested state is migrated with\nvmx_get_nested_state()/vmx_set_nested_state() KVM can't map evmcs\npage right away: evmcs gpa is not 'struct kvm_vmx_nested_state_hdr'\nand we can't read it from VP assist page because userspace may decide\nto restore HV_X64_MSR_VP_ASSIST_PAGE after restoring nested state\n(and QEMU, for example, does exactly that). To make sure eVMCS is\nmapped /vmx_set_nested_state() raises KVM_REQ_GET_NESTED_STATE_PAGES\nrequest.\n\nCommit f2c7ef3ba955 (\"KVM: nSVM: cancel KVM_REQ_GET_NESTED_STATE_PAGES\non nested vmexit\") added KVM_REQ_GET_NESTED_STATE_PAGES clearing to\nnested_vmx_vmexit() to make sure MSR permission bitmap is not switched\nwhen an immediate exit from L2 to L1 happens right after migration (caused\nby a pending event, for example). Unfortunately, in the exact same\nsituation we still need to have eVMCS mapped so\nnested_sync_vmcs12_to_shadow() reflects changes in VMCS12 to eVMCS.\n\nAs a band-aid, restore nested_get_evmcs_page() when clearing\nKVM_REQ_GET_NESTED_STATE_PAGES in nested_vmx_vmexit(). The 'fix' is far\nfrom being ideal as we can't easily propagate possible failures and even if\nwe could, this is most likely already too late to do so. The whole\n'KVM_REQ_GET_NESTED_STATE_PAGES' idea for mapping eVMCS after migration\nseems to be fragile as we diverge too much from the 'native' path when\nvmptr loading happens on vmx_set_nested_state().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46978", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46978", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46978", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46978", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46978", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46978" + } + }, + "CVE-2021-46979": { + "affected_versions": "v5.11-rc1 to v5.13-rc2", + "breaks": "8dedcc3eee3aceb37832176f0a1b03d5687acda3", + "cmt_msg": "iio: core: fix ioctl handlers removal", + "fixes": "901f84de0e16bde10a72d7eb2f2eb73fcde8fa1a", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: core: fix ioctl handlers removal\n\nCurrently ioctl handlers are removed twice. For the first time during\niio_device_unregister() then later on inside\niio_device_unregister_eventset() and iio_buffers_free_sysfs_and_mask().\nDouble free leads to kernel panic.\n\nFix this by not touching ioctl handlers list directly but rather\nletting code responsible for registration call the matching cleanup\nroutine itself.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46979", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46979", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46979", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46979", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46979", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46979" + } + }, + "CVE-2021-46980": { + "affected_versions": "v5.8-rc1 to v5.13-rc2", + "breaks": "992a60ed0d5e312ce9a485c9e12097ac82ae4b3e", + "cmt_msg": "usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4", + "fixes": "1f4642b72be79757f050924a9b9673b6a02034bc", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: typec: ucsi: Retrieve all the PDOs instead of just the first 4\n\ncommit 4dbc6a4ef06d (\"usb: typec: ucsi: save power data objects\nin PD mode\") introduced retrieval of the PDOs when connected to a\nPD-capable source. But only the first 4 PDOs are received since\nthat is the maximum number that can be fetched at a time given the\nMESSAGE_IN length limitation (16 bytes). However, as per the PD spec\na connected source may advertise up to a maximum of 7 PDOs.\n\nIf such a source is connected it's possible the PPM could have\nnegotiated a power contract with one of the PDOs at index greater\nthan 4, and would be reflected in the request data object's (RDO)\nobject position field. This would result in an out-of-bounds access\nwhen the rdo_index() is used to index into the src_pdos array in\nucsi_psy_get_voltage_now().\n\nWith the help of the UBSAN -fsanitize=array-bounds checker enabled\nthis exact issue is revealed when connecting to a PD source adapter\nthat advertise 5 PDOs and the PPM enters a contract having selected\nthe 5th one.\n\n[ 151.545106][ T70] Unexpected kernel BRK exception at EL1\n[ 151.545112][ T70] Internal error: BRK handler: f2005512 [#1] PREEMPT SMP\n...\n[ 151.545499][ T70] pc : ucsi_psy_get_prop+0x208/0x20c\n[ 151.545507][ T70] lr : power_supply_show_property+0xc0/0x328\n...\n[ 151.545542][ T70] Call trace:\n[ 151.545544][ T70] ucsi_psy_get_prop+0x208/0x20c\n[ 151.545546][ T70] power_supply_uevent+0x1a4/0x2f0\n[ 151.545550][ T70] dev_uevent+0x200/0x384\n[ 151.545555][ T70] kobject_uevent_env+0x1d4/0x7e8\n[ 151.545557][ T70] power_supply_changed_work+0x174/0x31c\n[ 151.545562][ T70] process_one_work+0x244/0x6f0\n[ 151.545564][ T70] worker_thread+0x3e0/0xa64\n\nWe can resolve this by instead retrieving and storing up to the\nmaximum of 7 PDOs in the con->src_pdos array. This would involve\ntwo calls to the GET_PDOS command.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46980", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46980", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46980", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46980", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46980", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46980" + } + }, + "CVE-2021-46981": { + "affected_versions": "v5.4-rc1 to v5.13-rc2", + "breaks": "e9e006f5fcf2bab59149cb38a48a4817c1b538b4", + "cmt_msg": "nbd: Fix NULL pointer in flush_workqueue", + "fixes": "79ebe9110fa458d58f1fceb078e2068d7ad37390", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnbd: Fix NULL pointer in flush_workqueue\n\nOpen /dev/nbdX first, the config_refs will be 1 and\nthe pointers in nbd_device are still null. Disconnect\n/dev/nbdX, then reference a null recv_workq. The\nprotection by config_refs in nbd_genl_disconnect is useless.\n\n[ 656.366194] BUG: kernel NULL pointer dereference, address: 0000000000000020\n[ 656.368943] #PF: supervisor write access in kernel mode\n[ 656.369844] #PF: error_code(0x0002) - not-present page\n[ 656.370717] PGD 10cc87067 P4D 10cc87067 PUD 1074b4067 PMD 0\n[ 656.371693] Oops: 0002 [#1] SMP\n[ 656.372242] CPU: 5 PID: 7977 Comm: nbd-client Not tainted 5.11.0-rc5-00040-g76c057c84d28 #1\n[ 656.373661] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS ?-20190727_073836-buildvm-ppc64le-16.ppc.fedoraproject.org-3.fc31 04/01/2014\n[ 656.375904] RIP: 0010:mutex_lock+0x29/0x60\n[ 656.376627] Code: 00 0f 1f 44 00 00 55 48 89 fd 48 83 05 6f d7 fe 08 01 e8 7a c3 ff ff 48 83 05 6a d7 fe 08 01 31 c0 65 48 8b 14 25 00 6d 01 00 <f0> 48 0f b1 55 d\n[ 656.378934] RSP: 0018:ffffc900005eb9b0 EFLAGS: 00010246\n[ 656.379350] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000000000000000\n[ 656.379915] RDX: ffff888104cf2600 RSI: ffffffffaae8f452 RDI: 0000000000000020\n[ 656.380473] RBP: 0000000000000020 R08: 0000000000000000 R09: ffff88813bd6b318\n[ 656.381039] R10: 00000000000000c7 R11: fefefefefefefeff R12: ffff888102710b40\n[ 656.381599] R13: ffffc900005eb9e0 R14: ffffffffb2930680 R15: ffff88810770ef00\n[ 656.382166] FS: 00007fdf117ebb40(0000) GS:ffff88813bd40000(0000) knlGS:0000000000000000\n[ 656.382806] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 656.383261] CR2: 0000000000000020 CR3: 0000000100c84000 CR4: 00000000000006e0\n[ 656.383819] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[ 656.384370] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[ 656.384927] Call Trace:\n[ 656.385111] flush_workqueue+0x92/0x6c0\n[ 656.385395] nbd_disconnect_and_put+0x81/0xd0\n[ 656.385716] nbd_genl_disconnect+0x125/0x2a0\n[ 656.386034] genl_family_rcv_msg_doit.isra.0+0x102/0x1b0\n[ 656.386422] genl_rcv_msg+0xfc/0x2b0\n[ 656.386685] ? nbd_ioctl+0x490/0x490\n[ 656.386954] ? genl_family_rcv_msg_doit.isra.0+0x1b0/0x1b0\n[ 656.387354] netlink_rcv_skb+0x62/0x180\n[ 656.387638] genl_rcv+0x34/0x60\n[ 656.387874] netlink_unicast+0x26d/0x590\n[ 656.388162] netlink_sendmsg+0x398/0x6c0\n[ 656.388451] ? netlink_rcv_skb+0x180/0x180\n[ 656.388750] ____sys_sendmsg+0x1da/0x320\n[ 656.389038] ? ____sys_recvmsg+0x130/0x220\n[ 656.389334] ___sys_sendmsg+0x8e/0xf0\n[ 656.389605] ? ___sys_recvmsg+0xa2/0xf0\n[ 656.389889] ? handle_mm_fault+0x1671/0x21d0\n[ 656.390201] __sys_sendmsg+0x6d/0xe0\n[ 656.390464] __x64_sys_sendmsg+0x23/0x30\n[ 656.390751] do_syscall_64+0x45/0x70\n[ 656.391017] entry_SYSCALL_64_after_hwframe+0x44/0xa9\n\nTo fix it, just add if (nbd->recv_workq) to nbd_disconnect_and_put().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46981", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46981", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46981", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46981", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46981", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46981" + } + }, + "CVE-2021-46982": { + "affected_versions": "v2.6.12-rc2 to v5.13-rc2", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "f2fs: compress: fix race condition of overwrite vs truncate", + "fixes": "a949dc5f2c5cfe0c910b664650f45371254c0744", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: compress: fix race condition of overwrite vs truncate\n\npos_fsstress testcase complains a panic as belew:\n\n------------[ cut here ]------------\nkernel BUG at fs/f2fs/compress.c:1082!\ninvalid opcode: 0000 [#1] SMP PTI\nCPU: 4 PID: 2753477 Comm: kworker/u16:2 Tainted: G OE 5.12.0-rc1-custom #1\nHardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.14.0-2 04/01/2014\nWorkqueue: writeback wb_workfn (flush-252:16)\nRIP: 0010:prepare_compress_overwrite+0x4c0/0x760 [f2fs]\nCall Trace:\n f2fs_prepare_compress_overwrite+0x5f/0x80 [f2fs]\n f2fs_write_cache_pages+0x468/0x8a0 [f2fs]\n f2fs_write_data_pages+0x2a4/0x2f0 [f2fs]\n do_writepages+0x38/0xc0\n __writeback_single_inode+0x44/0x2a0\n writeback_sb_inodes+0x223/0x4d0\n __writeback_inodes_wb+0x56/0xf0\n wb_writeback+0x1dd/0x290\n wb_workfn+0x309/0x500\n process_one_work+0x220/0x3c0\n worker_thread+0x53/0x420\n kthread+0x12f/0x150\n ret_from_fork+0x22/0x30\n\nThe root cause is truncate() may race with overwrite as below,\nso that one reference count left in page can not guarantee the\npage attaching in mapping tree all the time, after truncation,\nlater find_lock_page() may return NULL pointer.\n\n- prepare_compress_overwrite\n - f2fs_pagecache_get_page\n - unlock_page\n\t\t\t\t\t- f2fs_setattr\n\t\t\t\t\t - truncate_setsize\n\t\t\t\t\t - truncate_inode_page\n\t\t\t\t\t - delete_from_page_cache\n - find_lock_page\n\nFix this by avoiding referencing updated page.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46982", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46982", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46982", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46982", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46982", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46982" + } + }, + "CVE-2021-46983": { + "affected_versions": "v5.9-rc1 to v5.13-rc2", + "breaks": "ca0f1a8055be2a04073af435dc68419334481638", + "cmt_msg": "nvmet-rdma: Fix NULL deref when SEND is completed with error", + "fixes": "8cc365f9559b86802afc0208389f5c8d46b4ad61", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-rdma: Fix NULL deref when SEND is completed with error\n\nWhen running some traffic and taking down the link on peer, a\nretry counter exceeded error is received. This leads to\nnvmet_rdma_error_comp which tried accessing the cq_context to\nobtain the queue. The cq_context is no longer valid after the\nfix to use shared CQ mechanism and should be obtained similar\nto how it is obtained in other functions from the wc->qp.\n\n[ 905.786331] nvmet_rdma: SEND for CQE 0x00000000e3337f90 failed with status transport retry counter exceeded (12).\n[ 905.832048] BUG: unable to handle kernel NULL pointer dereference at 0000000000000048\n[ 905.839919] PGD 0 P4D 0\n[ 905.842464] Oops: 0000 1 SMP NOPTI\n[ 905.846144] CPU: 13 PID: 1557 Comm: kworker/13:1H Kdump: loaded Tainted: G OE --------- - - 4.18.0-304.el8.x86_64 #1\n[ 905.872135] RIP: 0010:nvmet_rdma_error_comp+0x5/0x1b [nvmet_rdma]\n[ 905.878259] Code: 19 4f c0 e8 89 b3 a5 f6 e9 5b e0 ff ff 0f b7 75 14 4c 89 ea 48 c7 c7 08 1a 4f c0 e8 71 b3 a5 f6 e9 4b e0 ff ff 0f 1f 44 00 00 <48> 8b 47 48 48 85 c0 74 08 48 89 c7 e9 98 bf 49 00 e9 c3 e3 ff ff\n[ 905.897135] RSP: 0018:ffffab601c45fe28 EFLAGS: 00010246\n[ 905.902387] RAX: 0000000000000065 RBX: ffff9e729ea2f800 RCX: 0000000000000000\n[ 905.909558] RDX: 0000000000000000 RSI: ffff9e72df9567c8 RDI: 0000000000000000\n[ 905.916731] RBP: ffff9e729ea2b400 R08: 000000000000074d R09: 0000000000000074\n[ 905.923903] R10: 0000000000000000 R11: ffffab601c45fcc0 R12: 0000000000000010\n[ 905.931074] R13: 0000000000000000 R14: 0000000000000010 R15: ffff9e729ea2f400\n[ 905.938247] FS: 0000000000000000(0000) GS:ffff9e72df940000(0000) knlGS:0000000000000000\n[ 905.938249] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 905.950067] nvmet_rdma: SEND for CQE 0x00000000c7356cca failed with status transport retry counter exceeded (12).\n[ 905.961855] CR2: 0000000000000048 CR3: 000000678d010004 CR4: 00000000007706e0\n[ 905.961855] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[ 905.961856] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[ 905.961857] PKRU: 55555554\n[ 906.010315] Call Trace:\n[ 906.012778] __ib_process_cq+0x89/0x170 [ib_core]\n[ 906.017509] ib_cq_poll_work+0x26/0x80 [ib_core]\n[ 906.022152] process_one_work+0x1a7/0x360\n[ 906.026182] ? create_worker+0x1a0/0x1a0\n[ 906.030123] worker_thread+0x30/0x390\n[ 906.033802] ? create_worker+0x1a0/0x1a0\n[ 906.037744] kthread+0x116/0x130\n[ 906.040988] ? kthread_flush_work_fn+0x10/0x10\n[ 906.045456] ret_from_fork+0x1f/0x40", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46983", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46983", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46983", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46983", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46983", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46983" + } + }, + "CVE-2021-46984": { + "affected_versions": "v4.18-rc1 to v5.13-rc2", + "breaks": "a6088845c2bf754d6cb2572b484180680b037804", + "cmt_msg": "kyber: fix out of bounds access when preempted", + "fixes": "efed9a3337e341bd0989161b97453b52567bc59d", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nkyber: fix out of bounds access when preempted\n\n__blk_mq_sched_bio_merge() gets the ctx and hctx for the current CPU and\npasses the hctx to ->bio_merge(). kyber_bio_merge() then gets the ctx\nfor the current CPU again and uses that to get the corresponding Kyber\ncontext in the passed hctx. However, the thread may be preempted between\nthe two calls to blk_mq_get_ctx(), and the ctx returned the second time\nmay no longer correspond to the passed hctx. This \"works\" accidentally\nmost of the time, but it can cause us to read garbage if the second ctx\ncame from an hctx with more ctx's than the first one (i.e., if\nctx->index_hw[hctx->type] > hctx->nr_ctx).\n\nThis manifested as this UBSAN array index out of bounds error reported\nby Jakub:\n\nUBSAN: array-index-out-of-bounds in ../kernel/locking/qspinlock.c:130:9\nindex 13106 is out of range for type 'long unsigned int [128]'\nCall Trace:\n dump_stack+0xa4/0xe5\n ubsan_epilogue+0x5/0x40\n __ubsan_handle_out_of_bounds.cold.13+0x2a/0x34\n queued_spin_lock_slowpath+0x476/0x480\n do_raw_spin_lock+0x1c2/0x1d0\n kyber_bio_merge+0x112/0x180\n blk_mq_submit_bio+0x1f5/0x1100\n submit_bio_noacct+0x7b0/0x870\n submit_bio+0xc2/0x3a0\n btrfs_map_bio+0x4f0/0x9d0\n btrfs_submit_data_bio+0x24e/0x310\n submit_one_bio+0x7f/0xb0\n submit_extent_page+0xc4/0x440\n __extent_writepage_io+0x2b8/0x5e0\n __extent_writepage+0x28d/0x6e0\n extent_write_cache_pages+0x4d7/0x7a0\n extent_writepages+0xa2/0x110\n do_writepages+0x8f/0x180\n __writeback_single_inode+0x99/0x7f0\n writeback_sb_inodes+0x34e/0x790\n __writeback_inodes_wb+0x9e/0x120\n wb_writeback+0x4d2/0x660\n wb_workfn+0x64d/0xa10\n process_one_work+0x53a/0xa80\n worker_thread+0x69/0x5b0\n kthread+0x20b/0x240\n ret_from_fork+0x1f/0x30\n\nOnly Kyber uses the hctx, so fix it by passing the request_queue to\n->bio_merge() instead. BFQ and mq-deadline just use that, and Kyber can\nmap the queues itself to avoid the mismatch.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46984", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46984", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46984", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46984", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46984", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46984" + } + }, + "CVE-2021-46985": { + "affected_versions": "v5.12-rc5 to v5.13-rc2", + "breaks": "eb50aaf960e3bedfef79063411ffd670da94b84b", + "cmt_msg": "ACPI: scan: Fix a memory leak in an error handling path", + "fixes": "0c8bd174f0fc131bc9dfab35cd8784f59045da87", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nACPI: scan: Fix a memory leak in an error handling path\n\nIf 'acpi_device_set_name()' fails, we must free\n'acpi_device_bus_id->bus_id' or there is a (potential) memory leak.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46985", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46985", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46985", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46985", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46985", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46985" + } + }, + "CVE-2021-46986": { + "affected_versions": "v5.10-rc1 to v5.13-rc2", + "breaks": "e81a7018d93a7de31a3f121c9a7eecd0a5ec58b0", + "cmt_msg": "usb: dwc3: gadget: Free gadget structure only after freeing endpoints", + "fixes": "bb9c74a5bd1462499fe5ccb1e3c5ac40dcfa9139", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: dwc3: gadget: Free gadget structure only after freeing endpoints\n\nAs part of commit e81a7018d93a (\"usb: dwc3: allocate gadget structure\ndynamically\") the dwc3_gadget_release() was added which will free\nthe dwc->gadget structure upon the device's removal when\nusb_del_gadget_udc() is called in dwc3_gadget_exit().\n\nHowever, simply freeing the gadget results a dangling pointer\nsituation: the endpoints created in dwc3_gadget_init_endpoints()\nhave their dep->endpoint.ep_list members chained off the list_head\nanchored at dwc->gadget->ep_list. Thus when dwc->gadget is freed,\nthe first dwc3_ep in the list now has a dangling prev pointer and\nlikewise for the next pointer of the dwc3_ep at the tail of the list.\nThe dwc3_gadget_free_endpoints() that follows will result in a\nuse-after-free when it calls list_del().\n\nThis was caught by enabling KASAN and performing a driver unbind.\nThe recent commit 568262bf5492 (\"usb: dwc3: core: Add shutdown\ncallback for dwc3\") also exposes this as a panic during shutdown.\n\nThere are a few possibilities to fix this. One could be to perform\na list_del() of the gadget->ep_list itself which removes it from\nthe rest of the dwc3_ep chain.\n\nAnother approach is what this patch does, by splitting up the\nusb_del_gadget_udc() call into its separate \"del\" and \"put\"\ncomponents. This allows dwc3_gadget_free_endpoints() to be\ncalled before the gadget is finally freed with usb_put_gadget().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46986", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46986", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46986", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46986", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46986", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46986" + } + }, + "CVE-2021-46987": { + "affected_versions": "v5.9-rc1 to v5.13-rc2", + "breaks": "c53e9653605dbf708f5be02902de51831be4b009", + "cmt_msg": "btrfs: fix deadlock when cloning inline extents and using qgroups", + "fixes": "f9baa501b4fd6962257853d46ddffbc21f27e344", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix deadlock when cloning inline extents and using qgroups\n\nThere are a few exceptional cases where cloning an inline extent needs to\ncopy the inline extent data into a page of the destination inode.\n\nWhen this happens, we end up starting a transaction while having a dirty\npage for the destination inode and while having the range locked in the\ndestination's inode iotree too. Because when reserving metadata space\nfor a transaction we may need to flush existing delalloc in case there is\nnot enough free space, we have a mechanism in place to prevent a deadlock,\nwhich was introduced in commit 3d45f221ce627d (\"btrfs: fix deadlock when\ncloning inline extent and low on free metadata space\").\n\nHowever when using qgroups, a transaction also reserves metadata qgroup\nspace, which can also result in flushing delalloc in case there is not\nenough available space at the moment. When this happens we deadlock, since\nflushing delalloc requires locking the file range in the inode's iotree\nand the range was already locked at the very beginning of the clone\noperation, before attempting to start the transaction.\n\nWhen this issue happens, stack traces like the following are reported:\n\n [72747.556262] task:kworker/u81:9 state:D stack: 0 pid: 225 ppid: 2 flags:0x00004000\n [72747.556268] Workqueue: writeback wb_workfn (flush-btrfs-1142)\n [72747.556271] Call Trace:\n [72747.556273] __schedule+0x296/0x760\n [72747.556277] schedule+0x3c/0xa0\n [72747.556279] io_schedule+0x12/0x40\n [72747.556284] __lock_page+0x13c/0x280\n [72747.556287] ? generic_file_readonly_mmap+0x70/0x70\n [72747.556325] extent_write_cache_pages+0x22a/0x440 [btrfs]\n [72747.556331] ? __set_page_dirty_nobuffers+0xe7/0x160\n [72747.556358] ? set_extent_buffer_dirty+0x5e/0x80 [btrfs]\n [72747.556362] ? update_group_capacity+0x25/0x210\n [72747.556366] ? cpumask_next_and+0x1a/0x20\n [72747.556391] extent_writepages+0x44/0xa0 [btrfs]\n [72747.556394] do_writepages+0x41/0xd0\n [72747.556398] __writeback_single_inode+0x39/0x2a0\n [72747.556403] writeback_sb_inodes+0x1ea/0x440\n [72747.556407] __writeback_inodes_wb+0x5f/0xc0\n [72747.556410] wb_writeback+0x235/0x2b0\n [72747.556414] ? get_nr_inodes+0x35/0x50\n [72747.556417] wb_workfn+0x354/0x490\n [72747.556420] ? newidle_balance+0x2c5/0x3e0\n [72747.556424] process_one_work+0x1aa/0x340\n [72747.556426] worker_thread+0x30/0x390\n [72747.556429] ? create_worker+0x1a0/0x1a0\n [72747.556432] kthread+0x116/0x130\n [72747.556435] ? kthread_park+0x80/0x80\n [72747.556438] ret_from_fork+0x1f/0x30\n\n [72747.566958] Workqueue: btrfs-flush_delalloc btrfs_work_helper [btrfs]\n [72747.566961] Call Trace:\n [72747.566964] __schedule+0x296/0x760\n [72747.566968] ? finish_wait+0x80/0x80\n [72747.566970] schedule+0x3c/0xa0\n [72747.566995] wait_extent_bit.constprop.68+0x13b/0x1c0 [btrfs]\n [72747.566999] ? finish_wait+0x80/0x80\n [72747.567024] lock_extent_bits+0x37/0x90 [btrfs]\n [72747.567047] btrfs_invalidatepage+0x299/0x2c0 [btrfs]\n [72747.567051] ? find_get_pages_range_tag+0x2cd/0x380\n [72747.567076] __extent_writepage+0x203/0x320 [btrfs]\n [72747.567102] extent_write_cache_pages+0x2bb/0x440 [btrfs]\n [72747.567106] ? update_load_avg+0x7e/0x5f0\n [72747.567109] ? enqueue_entity+0xf4/0x6f0\n [72747.567134] extent_writepages+0x44/0xa0 [btrfs]\n [72747.567137] ? enqueue_task_fair+0x93/0x6f0\n [72747.567140] do_writepages+0x41/0xd0\n [72747.567144] __filemap_fdatawrite_range+0xc7/0x100\n [72747.567167] btrfs_run_delalloc_work+0x17/0x40 [btrfs]\n [72747.567195] btrfs_work_helper+0xc2/0x300 [btrfs]\n [72747.567200] process_one_work+0x1aa/0x340\n [72747.567202] worker_thread+0x30/0x390\n [72747.567205] ? create_worker+0x1a0/0x1a0\n [72747.567208] kthread+0x116/0x130\n [72747.567211] ? kthread_park+0x80/0x80\n [72747.567214] ret_from_fork+0x1f/0x30\n\n [72747.569686] task:fsstress state:D stack: \n---truncated---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46987", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46987", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46987", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46987", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46987", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46987" + } + }, + "CVE-2021-46988": { + "affected_versions": "v4.11-rc1 to v5.13-rc2", + "breaks": "cb658a453b9327ce96ce5222c24d162b5b65b564", + "cmt_msg": "userfaultfd: release page in error path to avoid BUG_ON", + "fixes": "7ed9d238c7dbb1fdb63ad96a6184985151b0171c", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nuserfaultfd: release page in error path to avoid BUG_ON\n\nConsider the following sequence of events:\n\n1. Userspace issues a UFFD ioctl, which ends up calling into\n shmem_mfill_atomic_pte(). We successfully account the blocks, we\n shmem_alloc_page(), but then the copy_from_user() fails. We return\n -ENOENT. We don't release the page we allocated.\n2. Our caller detects this error code, tries the copy_from_user() after\n dropping the mmap_lock, and retries, calling back into\n shmem_mfill_atomic_pte().\n3. Meanwhile, let's say another process filled up the tmpfs being used.\n4. So shmem_mfill_atomic_pte() fails to account blocks this time, and\n immediately returns - without releasing the page.\n\nThis triggers a BUG_ON in our caller, which asserts that the page\nshould always be consumed, unless -ENOENT is returned.\n\nTo fix this, detect if we have such a \"dangling\" page when accounting\nfails, and if so, release it before returning.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46988", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46988", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46988", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46988", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46988", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46988" + } + }, + "CVE-2021-46989": { + "affected_versions": "v4.19-rc1 to v5.13-rc2", + "breaks": "31651c607151f1034cfb57e5a78678bea54c362b", + "cmt_msg": "hfsplus: prevent corruption in shrinking truncate", + "fixes": "c3187cf32216313fb316084efac4dab3a8459b1d", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nhfsplus: prevent corruption in shrinking truncate\n\nI believe there are some issues introduced by commit 31651c607151\n(\"hfsplus: avoid deadlock on file truncation\")\n\nHFS+ has extent records which always contains 8 extents. In case the\nfirst extent record in catalog file gets full, new ones are allocated from\nextents overflow file.\n\nIn case shrinking truncate happens to middle of an extent record which\nlocates in extents overflow file, the logic in hfsplus_file_truncate() was\nchanged so that call to hfs_brec_remove() is not guarded any more.\n\nRight action would be just freeing the extents that exceed the new size\ninside extent record by calling hfsplus_free_extents(), and then check if\nthe whole extent record should be removed. However since the guard\n(blk_cnt > start) is now after the call to hfs_brec_remove(), this has\nunfortunate effect that the last matching extent record is removed\nunconditionally.\n\nTo reproduce this issue, create a file which has at least 10 extents, and\nthen perform shrinking truncate into middle of the last extent record, so\nthat the number of remaining extents is not under or divisible by 8. This\ncauses the last extent record (8 extents) to be removed totally instead of\ntruncating into middle of it. Thus this causes corruption, and lost data.\n\nFix for this is simply checking if the new truncated end is below the\nstart of this extent record, making it safe to remove the full extent\nrecord. However call to hfs_brec_remove() can't be moved to it's previous\nplace since we're dropping ->tree_lock and it can cause a race condition\nand the cached info being invalidated possibly corrupting the node data.\n\nAnother issue is related to this one. When entering into the block\n(blk_cnt > start) we are not holding the ->tree_lock. We break out from\nthe loop not holding the lock, but hfs_find_exit() does unlock it. Not\nsure if it's possible for someone else to take the lock under our feet,\nbut it can cause hard to debug errors and premature unlocking. Even if\nthere's no real risk of it, the locking should still always be kept in\nbalance. Thus taking the lock now just before the check.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46989", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46989", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46989", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46989", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46989", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46989" + } + }, + "CVE-2021-46990": { + "affected_versions": "v5.10-rc5 to v5.13-rc2", + "breaks": "f79643787e0a0762d2409b7b8334e83f22d85695", + "cmt_msg": "powerpc/64s: Fix crashes when toggling entry flush barrier", + "fixes": "aec86b052df6541cc97c5fca44e5934cbea4963b", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/64s: Fix crashes when toggling entry flush barrier\n\nThe entry flush mitigation can be enabled/disabled at runtime via a\ndebugfs file (entry_flush), which causes the kernel to patch itself to\nenable/disable the relevant mitigations.\n\nHowever depending on which mitigation we're using, it may not be safe to\ndo that patching while other CPUs are active. For example the following\ncrash:\n\n sleeper[15639]: segfault (11) at c000000000004c20 nip c000000000004c20 lr c000000000004c20\n\nShows that we returned to userspace with a corrupted LR that points into\nthe kernel, due to executing the partially patched call to the fallback\nentry flush (ie. we missed the LR restore).\n\nFix it by doing the patching under stop machine. The CPUs that aren't\ndoing the patching will be spinning in the core of the stop machine\nlogic. That is currently sufficient for our purposes, because none of\nthe patching we do is to that code or anywhere in the vicinity.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46990", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46990", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46990", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46990", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46990", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46990" + } + }, + "CVE-2021-46991": { + "affected_versions": "v4.16-rc1 to v5.13-rc1", + "breaks": "7b0b1a6d0ac983ce1928432285d0222d4fb7c38b", + "cmt_msg": "i40e: Fix use-after-free in i40e_client_subtask()", + "fixes": "38318f23a7ef86a8b1862e5e8078c4de121960c3", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ni40e: Fix use-after-free in i40e_client_subtask()\n\nCurrently the call to i40e_client_del_instance frees the object\npf->cinst, however pf->cinst->lan_info is being accessed after\nthe free. Fix this by adding the missing return.\n\nAddresses-Coverity: (\"Read from pointer after free\")", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46991", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46991", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46991", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46991", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46991", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46991" + } + }, + "CVE-2021-46992": { + "affected_versions": "v4.9-rc1 to v5.13-rc1", + "breaks": "0ed6389c483dc77cdbdd48de0ca7ce41723dd667", + "cmt_msg": "netfilter: nftables: avoid overflows in nft_hash_buckets()", + "fixes": "a54754ec9891830ba548e2010c889e3c8146e449", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nftables: avoid overflows in nft_hash_buckets()\n\nNumber of buckets being stored in 32bit variables, we have to\nensure that no overflows occur in nft_hash_buckets()\n\nsyzbot injected a size == 0x40000000 and reported:\n\nUBSAN: shift-out-of-bounds in ./include/linux/log2.h:57:13\nshift exponent 64 is too large for 64-bit type 'long unsigned int'\nCPU: 1 PID: 29539 Comm: syz-executor.4 Not tainted 5.12.0-rc7-syzkaller #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011\nCall Trace:\n __dump_stack lib/dump_stack.c:79 [inline]\n dump_stack+0x141/0x1d7 lib/dump_stack.c:120\n ubsan_epilogue+0xb/0x5a lib/ubsan.c:148\n __ubsan_handle_shift_out_of_bounds.cold+0xb1/0x181 lib/ubsan.c:327\n __roundup_pow_of_two include/linux/log2.h:57 [inline]\n nft_hash_buckets net/netfilter/nft_set_hash.c:411 [inline]\n nft_hash_estimate.cold+0x19/0x1e net/netfilter/nft_set_hash.c:652\n nft_select_set_ops net/netfilter/nf_tables_api.c:3586 [inline]\n nf_tables_newset+0xe62/0x3110 net/netfilter/nf_tables_api.c:4322\n nfnetlink_rcv_batch+0xa09/0x24b0 net/netfilter/nfnetlink.c:488\n nfnetlink_rcv_skb_batch net/netfilter/nfnetlink.c:612 [inline]\n nfnetlink_rcv+0x3af/0x420 net/netfilter/nfnetlink.c:630\n netlink_unicast_kernel net/netlink/af_netlink.c:1312 [inline]\n netlink_unicast+0x533/0x7d0 net/netlink/af_netlink.c:1338\n netlink_sendmsg+0x856/0xd90 net/netlink/af_netlink.c:1927\n sock_sendmsg_nosec net/socket.c:654 [inline]\n sock_sendmsg+0xcf/0x120 net/socket.c:674\n ____sys_sendmsg+0x6e8/0x810 net/socket.c:2350\n ___sys_sendmsg+0xf3/0x170 net/socket.c:2404\n __sys_sendmsg+0xe5/0x1b0 net/socket.c:2433\n do_syscall_64+0x2d/0x70 arch/x86/entry/common.c:46", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46992", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46992", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46992", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46992", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46992", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46992" + } + }, + "CVE-2021-46993": { + "affected_versions": "v5.3-rc1 to v5.13-rc1", + "breaks": "69842cba9ace84849bb9b8edcdf2cefccd97901c", + "cmt_msg": "sched: Fix out-of-bound access in uclamp", + "fixes": "6d2f8909a5fabb73fe2a63918117943986c39b6c", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched: Fix out-of-bound access in uclamp\n\nUtil-clamp places tasks in different buckets based on their clamp values\nfor performance reasons. However, the size of buckets is currently\ncomputed using a rounding division, which can lead to an off-by-one\nerror in some configurations.\n\nFor instance, with 20 buckets, the bucket size will be 1024/20=51. A\ntask with a clamp of 1024 will be mapped to bucket id 1024/51=20. Sadly,\ncorrect indexes are in range [0,19], hence leading to an out of bound\nmemory access.\n\nClamp the bucket id to fix the issue.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46993", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46993", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46993", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46993", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46993", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46993" + } + }, + "CVE-2021-46994": { + "affected_versions": "v5.5-rc1 to v5.13-rc1", + "breaks": "8ce8c0abcba314e1fe954a1840f6568bf5aef2ef", + "cmt_msg": "can: mcp251x: fix resume from sleep before interface was brought up", + "fixes": "03c427147b2d3e503af258711af4fc792b89b0af", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncan: mcp251x: fix resume from sleep before interface was brought up\n\nSince 8ce8c0abcba3 the driver queues work via priv->restart_work when\nresuming after suspend, even when the interface was not previously\nenabled. This causes a null dereference error as the workqueue is only\nallocated and initialized in mcp251x_open().\n\nTo fix this we move the workqueue init to mcp251x_can_probe() as there\nis no reason to do it later and repeat it whenever mcp251x_open() is\ncalled.\n\n[mkl: fix error handling in mcp251x_stop()]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46994", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46994", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46994", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46994", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46994", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46994" + } + }, + "CVE-2021-46995": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "cf8ee6de2543a0fa6d9471ddbb7216464a9681a1", + "cmt_msg": "can: mcp251xfd: mcp251xfd_probe(): fix an error pointer dereference in probe", + "fixes": "4cc7faa406975b460aa674606291dea197c1210c", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncan: mcp251xfd: mcp251xfd_probe(): fix an error pointer dereference in probe\n\nWhen we converted this code to use dev_err_probe() we accidentally\nremoved a return. It means that if devm_clk_get() it will lead to an\nOops when we call clk_get_rate() on the next line.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46995", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46995", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46995", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46995", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46995", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46995" + } + }, + "CVE-2021-46996": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "b131c96496b369c7b14125e7c50e89ac7cec8051", + "cmt_msg": "netfilter: nftables: Fix a memleak from userdata error path in new objects", + "fixes": "85dfd816fabfc16e71786eda0a33a7046688b5b0", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nftables: Fix a memleak from userdata error path in new objects\n\nRelease object name if userdata allocation fails.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46996", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46996", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46996", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46996", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46996", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46996" + } + }, + "CVE-2021-46997": { + "affected_versions": "v5.10-rc7 to v5.13-rc1", + "breaks": "23529049c68423820487304f244144e0d576e85a", + "cmt_msg": "arm64: entry: always set GIC_PRIO_PSR_I_SET during entry", + "fixes": "4d6a38da8e79e94cbd1344aa90876f0f805db705", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: entry: always set GIC_PRIO_PSR_I_SET during entry\n\nZenghui reports that booting a kernel with \"irqchip.gicv3_pseudo_nmi=1\"\non the command line hits a warning during kernel entry, due to the way\nwe manipulate the PMR.\n\nEarly in the entry sequence, we call lockdep_hardirqs_off() to inform\nlockdep that interrupts have been masked (as the HW sets DAIF wqhen\nentering an exception). Architecturally PMR_EL1 is not affected by\nexception entry, and we don't set GIC_PRIO_PSR_I_SET in the PMR early in\nthe exception entry sequence, so early in exception entry the PMR can\nindicate that interrupts are unmasked even though they are masked by\nDAIF.\n\nIf DEBUG_LOCKDEP is selected, lockdep_hardirqs_off() will check that\ninterrupts are masked, before we set GIC_PRIO_PSR_I_SET in any of the\nexception entry paths, and hence lockdep_hardirqs_off() will WARN() that\nsomething is amiss.\n\nWe can avoid this by consistently setting GIC_PRIO_PSR_I_SET during\nexception entry so that kernel code sees a consistent environment. We\nmust also update local_daif_inherit() to undo this, as currently only\ntouches DAIF. For other paths, local_daif_restore() will update both\nDAIF and the PMR. With this done, we can remove the existing special\ncases which set this later in the entry code.\n\nWe always use (GIC_PRIO_IRQON | GIC_PRIO_PSR_I_SET) for consistency with\nlocal_daif_save(), as this will warn if it ever encounters\n(GIC_PRIO_IRQOFF | GIC_PRIO_PSR_I_SET), and never sets this itself. This\nmatches the gic_prio_kentry_setup that we have to retain for\nret_to_user.\n\nThe original splat from Zenghui's report was:\n\n| DEBUG_LOCKS_WARN_ON(!irqs_disabled())\n| WARNING: CPU: 3 PID: 125 at kernel/locking/lockdep.c:4258 lockdep_hardirqs_off+0xd4/0xe8\n| Modules linked in:\n| CPU: 3 PID: 125 Comm: modprobe Tainted: G W 5.12.0-rc8+ #463\n| Hardware name: QEMU KVM Virtual Machine, BIOS 0.0.0 02/06/2015\n| pstate: 604003c5 (nZCv DAIF +PAN -UAO -TCO BTYPE=--)\n| pc : lockdep_hardirqs_off+0xd4/0xe8\n| lr : lockdep_hardirqs_off+0xd4/0xe8\n| sp : ffff80002a39bad0\n| pmr_save: 000000e0\n| x29: ffff80002a39bad0 x28: ffff0000de214bc0\n| x27: ffff0000de1c0400 x26: 000000000049b328\n| x25: 0000000000406f30 x24: ffff0000de1c00a0\n| x23: 0000000020400005 x22: ffff8000105f747c\n| x21: 0000000096000044 x20: 0000000000498ef9\n| x19: ffff80002a39bc88 x18: ffffffffffffffff\n| x17: 0000000000000000 x16: ffff800011c61eb0\n| x15: ffff800011700a88 x14: 0720072007200720\n| x13: 0720072007200720 x12: 0720072007200720\n| x11: 0720072007200720 x10: 0720072007200720\n| x9 : ffff80002a39bad0 x8 : ffff80002a39bad0\n| x7 : ffff8000119f0800 x6 : c0000000ffff7fff\n| x5 : ffff8000119f07a8 x4 : 0000000000000001\n| x3 : 9bcdab23f2432800 x2 : ffff800011730538\n| x1 : 9bcdab23f2432800 x0 : 0000000000000000\n| Call trace:\n| lockdep_hardirqs_off+0xd4/0xe8\n| enter_from_kernel_mode.isra.5+0x7c/0xa8\n| el1_abort+0x24/0x100\n| el1_sync_handler+0x80/0xd0\n| el1_sync+0x6c/0x100\n| __arch_clear_user+0xc/0x90\n| load_elf_binary+0x9fc/0x1450\n| bprm_execve+0x404/0x880\n| kernel_execve+0x180/0x188\n| call_usermodehelper_exec_async+0xdc/0x158\n| ret_from_fork+0x10/0x18", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46997", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46997", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46997", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46997", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46997", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46997" + } + }, + "CVE-2021-46998": { + "affected_versions": "v4.16-rc1 to v5.13-rc1", + "breaks": "fb7516d42478ebc8e2f00efb76ef96f7b68fd8d3", + "cmt_msg": "ethernet:enic: Fix a use after free bug in enic_hard_start_xmit", + "fixes": "643001b47adc844ae33510c4bb93c236667008a3", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nethernet:enic: Fix a use after free bug in enic_hard_start_xmit\n\nIn enic_hard_start_xmit, it calls enic_queue_wq_skb(). Inside\nenic_queue_wq_skb, if some error happens, the skb will be freed\nby dev_kfree_skb(skb). But the freed skb is still used in\nskb_tx_timestamp(skb).\n\nMy patch makes enic_queue_wq_skb() return error and goto spin_unlock()\nincase of error. The solution is provided by Govind.\nSee https://lkml.org/lkml/2021/4/30/961.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46998", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46998", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46998", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46998", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46998", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46998" + } + }, + "CVE-2021-46999": { + "affected_versions": "v5.7-rc3 to v5.13-rc1", + "breaks": "145cb2f7177d94bc54563ed26027e952ee0ae03c", + "cmt_msg": "sctp: do asoc update earlier in sctp_sf_do_dupcook_a", + "fixes": "35b4f24415c854cd718ccdf38dbea6297f010aae", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: do asoc update earlier in sctp_sf_do_dupcook_a\n\nThere's a panic that occurs in a few of envs, the call trace is as below:\n\n [] general protection fault, ... 0x29acd70f1000a: 0000 [#1] SMP PTI\n [] RIP: 0010:sctp_ulpevent_notify_peer_addr_change+0x4b/0x1fa [sctp]\n [] sctp_assoc_control_transport+0x1b9/0x210 [sctp]\n [] sctp_do_8_2_transport_strike.isra.16+0x15c/0x220 [sctp]\n [] sctp_cmd_interpreter.isra.21+0x1231/0x1a10 [sctp]\n [] sctp_do_sm+0xc3/0x2a0 [sctp]\n [] sctp_generate_timeout_event+0x81/0xf0 [sctp]\n\nThis is caused by a transport use-after-free issue. When processing a\nduplicate COOKIE-ECHO chunk in sctp_sf_do_dupcook_a(), both COOKIE-ACK\nand SHUTDOWN chunks are allocated with the transort from the new asoc.\nHowever, later in the sideeffect machine, the old asoc is used to send\nthem out and old asoc's shutdown_last_sent_to is set to the transport\nthat SHUTDOWN chunk attached to in sctp_cmd_setup_t2(), which actually\nbelongs to the new asoc. After the new_asoc is freed and the old asoc\nT2 timeout, the old asoc's shutdown_last_sent_to that is already freed\nwould be accessed in sctp_sf_t2_timer_expire().\n\nThanks Alexander and Jere for helping dig into this issue.\n\nTo fix it, this patch is to do the asoc update first, then allocate\nthe COOKIE-ACK and SHUTDOWN chunks with the 'updated' old asoc. This\nwould make more sense, as a chunk from an asoc shouldn't be sent out\nwith another asoc. We had fixed quite a few issues caused by this.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-46999", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-46999", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-46999", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-46999", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-46999", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-46999" + } + }, + "CVE-2021-47000": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "878dabb64117406abd40977b87544d05bb3031fc", + "cmt_msg": "ceph: fix inode leak on getattr error in __fh_to_dentry", + "fixes": "1775c7ddacfcea29051c67409087578f8f4d751b", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nceph: fix inode leak on getattr error in __fh_to_dentry", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47000", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47000", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47000", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47000", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47000", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47000" + } + }, + "CVE-2021-47001": { + "affected_versions": "v5.5-rc1 to v5.13-rc1", + "breaks": "2ae50ad68cd79224198b525f7bd645c9da98b6ff", + "cmt_msg": "xprtrdma: Fix cwnd update ordering", + "fixes": "35d8b10a25884050bb3b0149b62c3818ec59f77c", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Fix cwnd update ordering\n\nAfter a reconnect, the reply handler is opening the cwnd (and thus\nenabling more RPC Calls to be sent) /before/ rpcrdma_post_recvs()\ncan post enough Receive WRs to receive their replies. This causes an\nRNR and the new connection is lost immediately.\n\nThe race is most clearly exposed when KASAN and disconnect injection\nare enabled. This slows down rpcrdma_rep_create() enough to allow\nthe send side to post a bunch of RPC Calls before the Receive\ncompletion handler can invoke ib_post_recv().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47001", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47001", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47001", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47001", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47001", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47001" + } + }, + "CVE-2021-47002": { + "affected_versions": "v5.11-rc1 to v5.13-rc1", + "breaks": "5191955d6fc65e6d4efe8f4f10a6028298f57281", + "cmt_msg": "SUNRPC: Fix null pointer dereference in svc_rqst_free()", + "fixes": "b9f83ffaa0c096b4c832a43964fe6bff3acffe10", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: Fix null pointer dereference in svc_rqst_free()\n\nWhen alloc_pages_node() returns null in svc_rqst_alloc(), the\nnull rq_scratch_page pointer will be dereferenced when calling\nput_page() in svc_rqst_free(). Fix it by adding a null check.\n\nAddresses-Coverity: (\"Dereference after null check\")", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47002", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47002", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47002", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47002", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47002", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47002" + } + }, + "CVE-2021-47003": { + "affected_versions": "v5.11 to v5.13-rc1", + "breaks": "89e3becd8f821e507052e012d2559dcda59f538e", + "cmt_msg": "dmaengine: idxd: Fix potential null dereference on pointer status", + "fixes": "28ac8e03c43dfc6a703aa420d18222540b801120", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: Fix potential null dereference on pointer status\n\nThere are calls to idxd_cmd_exec that pass a null status pointer however\na recent commit has added an assignment to *status that can end up\nwith a null pointer dereference. The function expects a null status\npointer sometimes as there is a later assignment to *status where\nstatus is first null checked. Fix the issue by null checking status\nbefore making the assignment.\n\nAddresses-Coverity: (\"Explicit null dereferenced\")", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47003", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47003", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47003", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47003", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47003", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47003" + } + }, + "CVE-2021-47004": { + "affected_versions": "v4.20-rc1 to v5.13-rc1", + "breaks": "4354994f097d068a894aa1a0860da54571df3582", + "cmt_msg": "f2fs: fix to avoid touching checkpointed data in get_victim()", + "fixes": "61461fc921b756ae16e64243f72af2bfc2e620db", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix to avoid touching checkpointed data in get_victim()\n\nIn CP disabling mode, there are two issues when using LFS or SSR | AT_SSR\nmode to select victim:\n\n1. LFS is set to find source section during GC, the victim should have\nno checkpointed data, since after GC, section could not be set free for\nreuse.\n\nPreviously, we only check valid chpt blocks in current segment rather\nthan section, fix it.\n\n2. SSR | AT_SSR are set to find target segment for writes which can be\nfully filled by checkpointed and newly written blocks, we should never\nselect such segment, otherwise it can cause panic or data corruption\nduring allocation, potential case is described as below:\n\n a) target segment has 'n' (n < 512) ckpt valid blocks\n b) GC migrates 'n' valid blocks to other segment (segment is still\n in dirty list)\n c) GC migrates '512 - n' blocks to target segment (segment has 'n'\n cp_vblocks and '512 - n' vblocks)\n d) If GC selects target segment via {AT,}SSR allocator, however there\n is no free space in targe segment.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47004", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47004", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47004", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47004", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47004", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47004" + } + }, + "CVE-2021-47005": { + "affected_versions": "v5.1-rc1 to v5.13-rc1", + "breaks": "2c04c5b8eef797dca99699cfb55ff42dd3c12c23", + "cmt_msg": "PCI: endpoint: Fix NULL pointer dereference for ->get_features()", + "fixes": "6613bc2301ba291a1c5a90e1dc24cf3edf223c03", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nPCI: endpoint: Fix NULL pointer dereference for ->get_features()\n\nget_features ops of pci_epc_ops may return NULL, causing NULL pointer\ndereference in pci_epf_test_alloc_space function. Let us add a check for\npci_epc_feature pointer in pci_epf_test_bind before we access it to avoid\nany such NULL pointer dereference and return -ENOTSUPP in case\npci_epc_feature is not found.\n\nWhen the patch is not applied and EPC features is not implemented in the\nplatform driver, we see the following dump due to kernel NULL pointer\ndereference.\n\nCall trace:\n pci_epf_test_bind+0xf4/0x388\n pci_epf_bind+0x3c/0x80\n pci_epc_epf_link+0xa8/0xcc\n configfs_symlink+0x1a4/0x48c\n vfs_symlink+0x104/0x184\n do_symlinkat+0x80/0xd4\n __arm64_sys_symlinkat+0x1c/0x24\n el0_svc_common.constprop.3+0xb8/0x170\n el0_svc_handler+0x70/0x88\n el0_svc+0x8/0x640\nCode: d2800581 b9403ab9 f9404ebb 8b394f60 (f9400400)\n---[ end trace a438e3c5a24f9df0 ]---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47005", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47005", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47005", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47005", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47005", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47005" + } + }, + "CVE-2021-47006": { + "affected_versions": "v4.7-rc1 to v5.13-rc1", + "breaks": "1879445dfa7bbd6fe21b09c5cc72f4934798afed", + "cmt_msg": "ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook", + "fixes": "a506bd5756290821a4314f502b4bafc2afcf5260", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook\n\nThe commit 1879445dfa7b (\"perf/core: Set event's default\n::overflow_handler()\") set a default event->overflow_handler in\nperf_event_alloc(), and replace the check event->overflow_handler with\nis_default_overflow_handler(), but one is missing.\n\nCurrently, the bp->overflow_handler can not be NULL. As a result,\nenable_single_step() is always not invoked.\n\nComments from Zhen Lei:\n\n https://patchwork.kernel.org/project/linux-arm-kernel/patch/20210207105934.2001-1-thunder.leizhen@huawei.com/", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47006", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47006", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47006", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47006", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47006", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47006" + } + }, + "CVE-2021-47007": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "b4b10061ef98c583bcf82a4200703fbaa98c18dc", + "cmt_msg": "f2fs: fix panic during f2fs_resize_fs()", + "fixes": "3ab0598e6d860ef49d029943ba80f627c15c15d6", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix panic during f2fs_resize_fs()\n\nf2fs_resize_fs() hangs in below callstack with testcase:\n- mkfs 16GB image & mount image\n- dd 8GB fileA\n- dd 8GB fileB\n- sync\n- rm fileA\n- sync\n- resize filesystem to 8GB\n\nkernel BUG at segment.c:2484!\nCall Trace:\n allocate_segment_by_default+0x92/0xf0 [f2fs]\n f2fs_allocate_data_block+0x44b/0x7e0 [f2fs]\n do_write_page+0x5a/0x110 [f2fs]\n f2fs_outplace_write_data+0x55/0x100 [f2fs]\n f2fs_do_write_data_page+0x392/0x850 [f2fs]\n move_data_page+0x233/0x320 [f2fs]\n do_garbage_collect+0x14d9/0x1660 [f2fs]\n free_segment_range+0x1f7/0x310 [f2fs]\n f2fs_resize_fs+0x118/0x330 [f2fs]\n __f2fs_ioctl+0x487/0x3680 [f2fs]\n __x64_sys_ioctl+0x8e/0xd0\n do_syscall_64+0x33/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xa9\n\nThe root cause is we forgot to check that whether we have enough space\nin resized filesystem to store all valid blocks in before-resizing\nfilesystem, then allocator will run out-of-space during block migration\nin free_segment_range().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47007", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47007", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47007", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47007", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47007", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47007" + } + }, + "CVE-2021-47008": { + "affected_versions": "v5.11-rc1 to v5.13-rc1", + "breaks": "f1c6366e304328de301be362eca905a3503ff33b", + "cmt_msg": "KVM: SVM: Make sure GHCB is mapped before updating", + "fixes": "a3ba26ecfb569f4aa3f867e80c02aa65f20aadad", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: SVM: Make sure GHCB is mapped before updating\n\nAccess to the GHCB is mainly in the VMGEXIT path and it is known that the\nGHCB will be mapped. But there are two paths where it is possible the GHCB\nmight not be mapped.\n\nThe sev_vcpu_deliver_sipi_vector() routine will update the GHCB to inform\nthe caller of the AP Reset Hold NAE event that a SIPI has been delivered.\nHowever, if a SIPI is performed without a corresponding AP Reset Hold,\nthen the GHCB might not be mapped (depending on the previous VMEXIT),\nwhich will result in a NULL pointer dereference.\n\nThe svm_complete_emulated_msr() routine will update the GHCB to inform\nthe caller of a RDMSR/WRMSR operation about any errors. While it is likely\nthat the GHCB will be mapped in this situation, add a safe guard\nin this path to be certain a NULL pointer dereference is not encountered.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47008", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47008", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47008", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47008", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47008", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47008" + } + }, + "CVE-2021-47009": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc2", + "breaks": "5df16caada3fba3b21cb09b85cdedf99507f4ec1", + "cmt_msg": "KEYS: trusted: Fix memory leak on object td", + "fixes": "83a775d5f9bfda95b1c295f95a3a041a40c7f321", + "last_affected_version": "5.12.4", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKEYS: trusted: Fix memory leak on object td\n\nTwo error return paths are neglecting to free allocated object td,\ncausing a memory leak. Fix this by returning via the error return\npath that securely kfree's td.\n\nFixes clang scan-build warning:\nsecurity/keys/trusted-keys/trusted_tpm1.c:496:10: warning: Potential\nmemory leak [unix.Malloc]", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47009", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47009", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47009", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47009", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47009", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47009" + } + }, + "CVE-2021-47010": { + "affected_versions": "v4.15-rc1 to v5.13-rc1", + "breaks": "6670e152447732ba90626f36dfc015a13fbf150e", + "cmt_msg": "net: Only allow init netns to set default tcp cong to a restricted algo", + "fixes": "8d432592f30fcc34ef5a10aac4887b4897884493", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: Only allow init netns to set default tcp cong to a restricted algo\n\ntcp_set_default_congestion_control() is netns-safe in that it writes\nto &net->ipv4.tcp_congestion_control, but it also sets\nca->flags |= TCP_CONG_NON_RESTRICTED which is not namespaced.\nThis has the unintended side-effect of changing the global\nnet.ipv4.tcp_allowed_congestion_control sysctl, despite the fact that it\nis read-only: 97684f0970f6 (\"net: Make tcp_allowed_congestion_control\nreadonly in non-init netns\")\n\nResolve this netns \"leak\" by only allowing the init netns to set the\ndefault algorithm to one that is restricted. This restriction could be\nremoved if tcp_allowed_congestion_control were namespace-ified in the\nfuture.\n\nThis bug was uncovered with\nhttps://github.com/JonathonReinhart/linux-netns-sysctl-verify", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47010", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47010", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47010", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47010", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47010", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47010" + } + }, + "CVE-2021-47011": { + "affected_versions": "v5.11-rc5 to v5.13-rc1", + "breaks": "3de7d4f25a7438f09fef4e71ef111f1805cd8e7c", + "cmt_msg": "mm: memcontrol: slab: fix obtain a reference to a freeing memcg", + "fixes": "9f38f03ae8d5f57371b71aa6b4275765b65454fd", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm: memcontrol: slab: fix obtain a reference to a freeing memcg\n\nPatch series \"Use obj_cgroup APIs to charge kmem pages\", v5.\n\nSince Roman's series \"The new cgroup slab memory controller\" applied.\nAll slab objects are charged with the new APIs of obj_cgroup. The new\nAPIs introduce a struct obj_cgroup to charge slab objects. It prevents\nlong-living objects from pinning the original memory cgroup in the\nmemory. But there are still some corner objects (e.g. allocations\nlarger than order-1 page on SLUB) which are not charged with the new\nAPIs. Those objects (include the pages which are allocated from buddy\nallocator directly) are charged as kmem pages which still hold a\nreference to the memory cgroup.\n\nE.g. We know that the kernel stack is charged as kmem pages because the\nsize of the kernel stack can be greater than 2 pages (e.g. 16KB on\nx86_64 or arm64). If we create a thread (suppose the thread stack is\ncharged to memory cgroup A) and then move it from memory cgroup A to\nmemory cgroup B. Because the kernel stack of the thread hold a\nreference to the memory cgroup A. The thread can pin the memory cgroup\nA in the memory even if we remove the cgroup A. If we want to see this\nscenario by using the following script. We can see that the system has\nadded 500 dying cgroups (This is not a real world issue, just a script\nto show that the large kmallocs are charged as kmem pages which can pin\nthe memory cgroup in the memory).\n\n\t#!/bin/bash\n\n\tcat /proc/cgroups | grep memory\n\n\tcd /sys/fs/cgroup/memory\n\techo 1 > memory.move_charge_at_immigrate\n\n\tfor i in range{1..500}\n\tdo\n\t\tmkdir kmem_test\n\t\techo $$ > kmem_test/cgroup.procs\n\t\tsleep 3600 &\n\t\techo $$ > cgroup.procs\n\t\techo `cat kmem_test/cgroup.procs` > cgroup.procs\n\t\trmdir kmem_test\n\tdone\n\n\tcat /proc/cgroups | grep memory\n\nThis patchset aims to make those kmem pages to drop the reference to\nmemory cgroup by using the APIs of obj_cgroup. Finally, we can see that\nthe number of the dying cgroups will not increase if we run the above test\nscript.\n\nThis patch (of 7):\n\nThe rcu_read_lock/unlock only can guarantee that the memcg will not be\nfreed, but it cannot guarantee the success of css_get (which is in the\nrefill_stock when cached memcg changed) to memcg.\n\n rcu_read_lock()\n memcg = obj_cgroup_memcg(old)\n __memcg_kmem_uncharge(memcg)\n refill_stock(memcg)\n if (stock->cached != memcg)\n // css_get can change the ref counter from 0 back to 1.\n css_get(&memcg->css)\n rcu_read_unlock()\n\nThis fix is very like the commit:\n\n eefbfa7fd678 (\"mm: memcg/slab: fix use after free in obj_cgroup_charge\")\n\nFix this by holding a reference to the memcg which is passed to the\n__memcg_kmem_uncharge() before calling __memcg_kmem_uncharge().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47011", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47011", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47011", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47011", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47011", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47011" + } + }, + "CVE-2021-47012": { + "affected_versions": "v5.3-rc1 to v5.13-rc1", + "breaks": "2251334dcac9eb337575d8767e2a6a7e81848f7f", + "cmt_msg": "RDMA/siw: Fix a use after free in siw_alloc_mr", + "fixes": "3093ee182f01689b89e9f8797b321603e5de4f63", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/siw: Fix a use after free in siw_alloc_mr\n\nOur code analyzer reported a UAF.\n\nIn siw_alloc_mr(), it calls siw_mr_add_mem(mr,..). In the implementation of\nsiw_mr_add_mem(), mem is assigned to mr->mem and then mem is freed via\nkfree(mem) if xa_alloc_cyclic() failed. Here, mr->mem still point to a\nfreed object. After, the execution continue up to the err_out branch of\nsiw_alloc_mr, and the freed mr->mem is used in siw_mr_drop_mem(mr).\n\nMy patch moves \"mr->mem = mem\" behind the if (xa_alloc_cyclic(..)<0) {}\nsection, to avoid the uaf.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47012", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47012", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47012", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47012", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47012", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47012" + } + }, + "CVE-2021-47013": { + "affected_versions": "v4.9-rc1 to v5.13-rc1", + "breaks": "b9b17debc69d27cd55e21ee51a5ba7fc50a426cf", + "cmt_msg": "net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send", + "fixes": "6d72e7c767acbbdd44ebc7d89c6690b405b32b57", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send\n\nIn emac_mac_tx_buf_send, it calls emac_tx_fill_tpd(..,skb,..).\nIf some error happens in emac_tx_fill_tpd(), the skb will be freed via\ndev_kfree_skb(skb) in error branch of emac_tx_fill_tpd().\nBut the freed skb is still used via skb->len by netdev_sent_queue(,skb->len).\n\nAs i observed that emac_tx_fill_tpd() haven't modified the value of skb->len,\nthus my patch assigns skb->len to 'len' before the possible free and\nuse 'len' instead of skb->len later.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47013", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47013", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47013", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47013", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47013", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47013" + } + }, + "CVE-2021-47014": { + "affected_versions": "v5.8-rc7 to v5.13-rc1", + "breaks": "ae372cb1750f6c95370f92fe5f5620e0954663ba", + "cmt_msg": "net/sched: act_ct: fix wild memory access when clearing fragments", + "fixes": "f77bd544a6bbe69aa50d9ed09f13494cf36ff806", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: act_ct: fix wild memory access when clearing fragments\n\nwhile testing re-assembly/re-fragmentation using act_ct, it's possible to\nobserve a crash like the following one:\n\n KASAN: maybe wild-memory-access in range [0x0001000000000448-0x000100000000044f]\n CPU: 50 PID: 0 Comm: swapper/50 Tainted: G S 5.12.0-rc7+ #424\n Hardware name: Dell Inc. PowerEdge R730/072T6D, BIOS 2.4.3 01/17/2017\n RIP: 0010:inet_frag_rbtree_purge+0x50/0xc0\n Code: 00 fc ff df 48 89 c3 31 ed 48 89 df e8 a9 7a 38 ff 4c 89 fe 48 89 df 49 89 c6 e8 5b 3a 38 ff 48 8d 7b 40 48 89 f8 48 c1 e8 03 <42> 80 3c 20 00 75 59 48 8d bb d0 00 00 00 4c 8b 6b 40 48 89 f8 48\n RSP: 0018:ffff888c31449db8 EFLAGS: 00010203\n RAX: 0000200000000089 RBX: 000100000000040e RCX: ffffffff989eb960\n RDX: 0000000000000140 RSI: ffffffff97cfb977 RDI: 000100000000044e\n RBP: 0000000000000900 R08: 0000000000000000 R09: ffffed1186289350\n R10: 0000000000000003 R11: ffffed1186289350 R12: dffffc0000000000\n R13: 000100000000040e R14: 0000000000000000 R15: ffff888155e02160\n FS: 0000000000000000(0000) GS:ffff888c31440000(0000) knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 00005600cb70a5b8 CR3: 0000000a2c014005 CR4: 00000000003706e0\n DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n Call Trace:\n <IRQ>\n inet_frag_destroy+0xa9/0x150\n call_timer_fn+0x2d/0x180\n run_timer_softirq+0x4fe/0xe70\n __do_softirq+0x197/0x5a0\n irq_exit_rcu+0x1de/0x200\n sysvec_apic_timer_interrupt+0x6b/0x80\n </IRQ>\n\nwhen act_ct temporarily stores an IP fragment, restoring the skb qdisc cb\nresults in putting random data in FRAG_CB(), and this causes those \"wild\"\nmemory accesses later, when the rbtree is purged. Never overwrite the skb\ncb in case tcf_ct_handle_fragments() returns -EINPROGRESS.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47014", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47014", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47014", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47014", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47014", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47014" + } + }, + "CVE-2021-47015": { + "affected_versions": "v5.1-rc5 to v5.13-rc1", + "breaks": "a1b0e4e684e9c300b9e759b46cb7a0147e61ddff", + "cmt_msg": "bnxt_en: Fix RX consumer index logic in the error path.", + "fixes": "bbd6f0a948139970f4a615dff189d9a503681a39", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbnxt_en: Fix RX consumer index logic in the error path.\n\nIn bnxt_rx_pkt(), the RX buffers are expected to complete in order.\nIf the RX consumer index indicates an out of order buffer completion,\nit means we are hitting a hardware bug and the driver will abort all\nremaining RX packets and reset the RX ring. The RX consumer index\nthat we pass to bnxt_discard_rx() is not correct. We should be\npassing the current index (tmp_raw_cons) instead of the old index\n(raw_cons). This bug can cause us to be at the wrong index when\ntrying to abort the next RX packet. It can crash like this:\n\n #0 [ffff9bbcdf5c39a8] machine_kexec at ffffffff9b05e007\n #1 [ffff9bbcdf5c3a00] __crash_kexec at ffffffff9b111232\n #2 [ffff9bbcdf5c3ad0] panic at ffffffff9b07d61e\n #3 [ffff9bbcdf5c3b50] oops_end at ffffffff9b030978\n #4 [ffff9bbcdf5c3b78] no_context at ffffffff9b06aaf0\n #5 [ffff9bbcdf5c3bd8] __bad_area_nosemaphore at ffffffff9b06ae2e\n #6 [ffff9bbcdf5c3c28] bad_area_nosemaphore at ffffffff9b06af24\n #7 [ffff9bbcdf5c3c38] __do_page_fault at ffffffff9b06b67e\n #8 [ffff9bbcdf5c3cb0] do_page_fault at ffffffff9b06bb12\n #9 [ffff9bbcdf5c3ce0] page_fault at ffffffff9bc015c5\n [exception RIP: bnxt_rx_pkt+237]\n RIP: ffffffffc0259cdd RSP: ffff9bbcdf5c3d98 RFLAGS: 00010213\n RAX: 000000005dd8097f RBX: ffff9ba4cb11b7e0 RCX: ffffa923cf6e9000\n RDX: 0000000000000fff RSI: 0000000000000627 RDI: 0000000000001000\n RBP: ffff9bbcdf5c3e60 R8: 0000000000420003 R9: 000000000000020d\n R10: ffffa923cf6ec138 R11: ffff9bbcdf5c3e83 R12: ffff9ba4d6f928c0\n R13: ffff9ba4cac28080 R14: ffff9ba4cb11b7f0 R15: ffff9ba4d5a30000\n ORIG_RAX: ffffffffffffffff CS: 0010 SS: 0018", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47015", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47015", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47015", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47015", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47015", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47015" + } + }, + "CVE-2021-47016": { + "affected_versions": "v5.2-rc1 to v5.13-rc1", + "breaks": "7529b90d051e4629884771ba2b1d3a87d2c6a9d7", + "cmt_msg": "m68k: mvme147,mvme16x: Don't wipe PCC timer config bits", + "fixes": "43262178c043032e7c42d00de44c818ba05f9967", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nm68k: mvme147,mvme16x: Don't wipe PCC timer config bits\n\nDon't clear the timer 1 configuration bits when clearing the interrupt flag\nand counter overflow. As Michael reported, \"This results in no timer\ninterrupts being delivered after the first. Initialization then hangs\nin calibrate_delay as the jiffies counter is not updated.\"\n\nOn mvme16x, enable the timer after requesting the irq, consistent with\nmvme147.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47016", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47016", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47016", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47016", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47016", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47016" + } + }, + "CVE-2021-47017": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "c8334512f3dd1b94844baca629f9bedca4271593", + "cmt_msg": "ath10k: Fix a use after free in ath10k_htc_send_bundle", + "fixes": "8392df5d7e0b6a7d21440da1fc259f9938f4dec3", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nath10k: Fix a use after free in ath10k_htc_send_bundle\n\nIn ath10k_htc_send_bundle, the bundle_skb could be freed by\ndev_kfree_skb_any(bundle_skb). But the bundle_skb is used later\nby bundle_skb->len.\n\nAs skb_len = bundle_skb->len, my patch replaces bundle_skb->len to\nskb_len after the bundle_skb was freed.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47017", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47017", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47017", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47017", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47017", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47017" + } + }, + "CVE-2021-47018": { + "affected_versions": "v5.5-rc1 to v5.13-rc1", + "breaks": "265c3491c4bc8d40587996d6ee2f447a7ccfb4f3", + "cmt_msg": "powerpc/64: Fix the definition of the fixmap area", + "fixes": "9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3c", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/64: Fix the definition of the fixmap area\n\nAt the time being, the fixmap area is defined at the top of\nthe address space or just below KASAN.\n\nThis definition is not valid for PPC64.\n\nFor PPC64, use the top of the I/O space.\n\nBecause of circular dependencies, it is not possible to include\nasm/fixmap.h in asm/book3s/64/pgtable.h , so define a fixed size\nAREA at the top of the I/O space for fixmap and ensure during\nbuild that the size is big enough.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47018", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47018", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47018", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47018", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47018", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47018" + } + }, + "CVE-2021-47019": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "ffa1bf97425bd511b105ce769976e20a845a71e9", + "cmt_msg": "mt76: mt7921: fix possible invalid register access", + "fixes": "fe3fccde8870764ba3e60610774bd7bc9f8faeff", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7921: fix possible invalid register access\n\nDisable the interrupt and synchronze for the pending irq handlers to ensure\nthe irq tasklet is not being scheduled after the suspend to avoid the\npossible invalid register access acts when the host pcie controller is\nsuspended.\n\n[17932.910534] mt7921e 0000:01:00.0: pci_pm_suspend+0x0/0x22c returned 0 after 21375 usecs\n[17932.910590] pcieport 0000:00:00.0: calling pci_pm_suspend+0x0/0x22c @ 18565, parent: pci0000:00\n[17932.910602] pcieport 0000:00:00.0: pci_pm_suspend+0x0/0x22c returned 0 after 8 usecs\n[17932.910671] mtk-pcie 11230000.pcie: calling platform_pm_suspend+0x0/0x60 @ 22783, parent: soc\n[17932.910674] mtk-pcie 11230000.pcie: platform_pm_suspend+0x0/0x60 returned 0 after 0 usecs\n\n...\n\n17933.615352] x1 : 00000000000d4200 x0 : ffffff8269ca2300\n[17933.620666] Call trace:\n[17933.623127] mt76_mmio_rr+0x28/0xf0 [mt76]\n[17933.627234] mt7921_rr+0x38/0x44 [mt7921e]\n[17933.631339] mt7921_irq_tasklet+0x54/0x1d8 [mt7921e]\n[17933.636309] tasklet_action_common+0x12c/0x16c\n[17933.640754] tasklet_action+0x24/0x2c\n[17933.644418] __do_softirq+0x16c/0x344\n[17933.648082] irq_exit+0xa8/0xac\n[17933.651224] scheduler_ipi+0xd4/0x148\n[17933.654890] handle_IPI+0x164/0x2d4\n[17933.658379] gic_handle_irq+0x140/0x178\n[17933.662216] el1_irq+0xb8/0x180\n[17933.665361] cpuidle_enter_state+0xf8/0x204\n[17933.669544] cpuidle_enter+0x38/0x4c\n[17933.673122] do_idle+0x1a4/0x2a8\n[17933.676352] cpu_startup_entry+0x24/0x28\n[17933.680276] rest_init+0xd4/0xe0\n[17933.683508] arch_call_rest_init+0x10/0x18\n[17933.687606] start_kernel+0x340/0x3b4\n[17933.691279] Code: aa0003f5 d503201f f953eaa8 8b344108 (b9400113)\n[17933.697373] ---[ end trace a24b8e26ffbda3c5 ]---\n[17933.767846] Kernel panic - not syncing: Fatal exception in interrupt", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47019", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47019", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47019", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47019", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47019", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47019" + } + }, + "CVE-2021-47020": { + "affected_versions": "v4.18-rc1 to v5.13-rc1", + "breaks": "89e590535f32d4bc548bcf266f3b046e50942f6d", + "cmt_msg": "soundwire: stream: fix memory leak in stream config error path", + "fixes": "48f17f96a81763c7c8bf5500460a359b9939359f", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsoundwire: stream: fix memory leak in stream config error path\n\nWhen stream config is failed, master runtime will release all\nslave runtime in the slave_rt_list, but slave runtime is not\nadded to the list at this time. This patch frees slave runtime\nin the config error path to fix the memory leak.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47020", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47020", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47020", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47020", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47020", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47020" + } + }, + "CVE-2021-47021": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "f285dfb98562e8380101095d168910df1d07d8be", + "cmt_msg": "mt76: mt7915: fix memleak when mt7915_unregister_device()", + "fixes": "e9d32af478cfc3744a45245c0b126738af4b3ac4", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7915: fix memleak when mt7915_unregister_device()\n\nmt7915_tx_token_put() should get call before mt76_free_pending_txwi().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47021", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47021", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47021", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47021", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47021", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47021" + } + }, + "CVE-2021-47022": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "a6275e934605646ef81b02d8d1164f21343149c9", + "cmt_msg": "mt76: mt7615: fix memleak when mt7615_unregister_device()", + "fixes": "8ab31da7b89f71c4c2defcca989fab7b42f87d71", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7615: fix memleak when mt7615_unregister_device()\n\nmt7615_tx_token_put() should get call before mt76_free_pending_txwi().", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47022", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47022", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47022", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47022", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47022", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47022" + } + }, + "CVE-2021-47023": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "501ef3066c89d7f9045315e1be58749cf9e6814d", + "cmt_msg": "net: marvell: prestera: fix port event handling on init", + "fixes": "333980481b99edb24ebd5d1a53af70a15d9146de", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: marvell: prestera: fix port event handling on init\n\nFor some reason there might be a crash during ports creation if port\nevents are handling at the same time because fw may send initial\nport event with down state.\n\nThe crash points to cancel_delayed_work() which is called when port went\nis down. Currently I did not find out the real cause of the issue, so\nfixed it by cancel port stats work only if previous port's state was up\n& runnig.\n\nThe following is the crash which can be triggered:\n\n[ 28.311104] Unable to handle kernel paging request at virtual address\n000071775f776600\n[ 28.319097] Mem abort info:\n[ 28.321914] ESR = 0x96000004\n[ 28.324996] EC = 0x25: DABT (current EL), IL = 32 bits\n[ 28.330350] SET = 0, FnV = 0\n[ 28.333430] EA = 0, S1PTW = 0\n[ 28.336597] Data abort info:\n[ 28.339499] ISV = 0, ISS = 0x00000004\n[ 28.343362] CM = 0, WnR = 0\n[ 28.346354] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000100bf7000\n[ 28.352842] [000071775f776600] pgd=0000000000000000,\np4d=0000000000000000\n[ 28.359695] Internal error: Oops: 96000004 [#1] PREEMPT SMP\n[ 28.365310] Modules linked in: prestera_pci(+) prestera\nuio_pdrv_genirq\n[ 28.372005] CPU: 0 PID: 1291 Comm: kworker/0:1H Not tainted\n5.11.0-rc4 #1\n[ 28.378846] Hardware name: DNI AmazonGo1 A7040 board (DT)\n[ 28.384283] Workqueue: prestera_fw_wq prestera_fw_evt_work_fn\n[prestera_pci]\n[ 28.391413] pstate: 60000085 (nZCv daIf -PAN -UAO -TCO BTYPE=--)\n[ 28.397468] pc : get_work_pool+0x48/0x60\n[ 28.401442] lr : try_to_grab_pending+0x6c/0x1b0\n[ 28.406018] sp : ffff80001391bc60\n[ 28.409358] x29: ffff80001391bc60 x28: 0000000000000000\n[ 28.414725] x27: ffff000104fc8b40 x26: ffff80001127de88\n[ 28.420089] x25: 0000000000000000 x24: ffff000106119760\n[ 28.425452] x23: ffff00010775dd60 x22: ffff00010567e000\n[ 28.430814] x21: 0000000000000000 x20: ffff80001391bcb0\n[ 28.436175] x19: ffff00010775deb8 x18: 00000000000000c0\n[ 28.441537] x17: 0000000000000000 x16: 000000008d9b0e88\n[ 28.446898] x15: 0000000000000001 x14: 00000000000002ba\n[ 28.452261] x13: 80a3002c00000002 x12: 00000000000005f4\n[ 28.457622] x11: 0000000000000030 x10: 000000000000000c\n[ 28.462985] x9 : 000000000000000c x8 : 0000000000000030\n[ 28.468346] x7 : ffff800014400000 x6 : ffff000106119758\n[ 28.473708] x5 : 0000000000000003 x4 : ffff00010775dc60\n[ 28.479068] x3 : 0000000000000000 x2 : 0000000000000060\n[ 28.484429] x1 : 000071775f776600 x0 : ffff00010775deb8\n[ 28.489791] Call trace:\n[ 28.492259] get_work_pool+0x48/0x60\n[ 28.495874] cancel_delayed_work+0x38/0xb0\n[ 28.500011] prestera_port_handle_event+0x90/0xa0 [prestera]\n[ 28.505743] prestera_evt_recv+0x98/0xe0 [prestera]\n[ 28.510683] prestera_fw_evt_work_fn+0x180/0x228 [prestera_pci]\n[ 28.516660] process_one_work+0x1e8/0x360\n[ 28.520710] worker_thread+0x44/0x480\n[ 28.524412] kthread+0x154/0x160\n[ 28.527670] ret_from_fork+0x10/0x38\n[ 28.531290] Code: a8c17bfd d50323bf d65f03c0 9278dc21 (f9400020)\n[ 28.537429] ---[ end trace 5eced933df3a080b ]---", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47023", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47023", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47023", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47023", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47023", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47023" + } + }, + "CVE-2021-47024": { + "affected_versions": "v5.2-rc2 to v5.13-rc1", + "breaks": "ac03046ece2b158ebd204dfc4896fd9f39f0e6c8", + "cmt_msg": "vsock/virtio: free queued packets when closing socket", + "fixes": "8432b8114957235f42e070a16118a7f750de9d39", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nvsock/virtio: free queued packets when closing socket\n\nAs reported by syzbot [1], there is a memory leak while closing the\nsocket. We partially solved this issue with commit ac03046ece2b\n(\"vsock/virtio: free packets during the socket release\"), but we\nforgot to drain the RX queue when the socket is definitely closed by\nthe scheduled work.\n\nTo avoid future issues, let's use the new virtio_transport_remove_sock()\nto drain the RX queue before removing the socket from the af_vsock lists\ncalling vsock_remove_sock().\n\n[1] https://syzkaller.appspot.com/bug?extid=24452624fc4c571eedd9", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47024", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47024", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47024", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47024", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47024", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47024" + } + }, + "CVE-2021-47025": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "c0b57581b73be7b43f39e0dff201c93413f6a668", + "cmt_msg": "iommu/mediatek: Always enable the clk on resume", + "fixes": "b34ea31fe013569d42b7e8681ef3f717f77c5b72", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\niommu/mediatek: Always enable the clk on resume\n\nIn mtk_iommu_runtime_resume always enable the clk, even\nif m4u_dom is null. Otherwise the 'suspend' cb might\ndisable the clk which is already disabled causing the warning:\n\n[ 1.586104] infra_m4u already disabled\n[ 1.586133] WARNING: CPU: 0 PID: 121 at drivers/clk/clk.c:952 clk_core_disable+0xb0/0xb8\n[ 1.594391] mtk-iommu 10205000.iommu: bound 18001000.larb (ops mtk_smi_larb_component_ops)\n[ 1.598108] Modules linked in:\n[ 1.598114] CPU: 0 PID: 121 Comm: kworker/0:2 Not tainted 5.12.0-rc5 #69\n[ 1.609246] mtk-iommu 10205000.iommu: bound 14027000.larb (ops mtk_smi_larb_component_ops)\n[ 1.617487] Hardware name: Google Elm (DT)\n[ 1.617491] Workqueue: pm pm_runtime_work\n[ 1.620545] mtk-iommu 10205000.iommu: bound 19001000.larb (ops mtk_smi_larb_component_ops)\n\n[ 1.627229] pstate: 60000085 (nZCv daIf -PAN -UAO -TCO BTYPE=--)\n[ 1.659297] pc : clk_core_disable+0xb0/0xb8\n[ 1.663475] lr : clk_core_disable+0xb0/0xb8\n[ 1.667652] sp : ffff800011b9bbe0\n[ 1.670959] x29: ffff800011b9bbe0 x28: 0000000000000000\n[ 1.676267] x27: ffff800011448000 x26: ffff8000100cfd98\n[ 1.681574] x25: ffff800011b9bd48 x24: 0000000000000000\n[ 1.686882] x23: 0000000000000000 x22: ffff8000106fad90\n[ 1.692189] x21: 000000000000000a x20: ffff0000c0048500\n[ 1.697496] x19: ffff0000c0048500 x18: ffffffffffffffff\n[ 1.702804] x17: 0000000000000000 x16: 0000000000000000\n[ 1.708112] x15: ffff800011460300 x14: fffffffffffe0000\n[ 1.713420] x13: ffff8000114602d8 x12: 0720072007200720\n[ 1.718727] x11: 0720072007200720 x10: 0720072007200720\n[ 1.724035] x9 : ffff800011b9bbe0 x8 : ffff800011b9bbe0\n[ 1.729342] x7 : 0000000000000009 x6 : ffff8000114b8328\n[ 1.734649] x5 : 0000000000000000 x4 : 0000000000000000\n[ 1.739956] x3 : 00000000ffffffff x2 : ffff800011460298\n[ 1.745263] x1 : 1af1d7de276f4500 x0 : 0000000000000000\n[ 1.750572] Call trace:\n[ 1.753010] clk_core_disable+0xb0/0xb8\n[ 1.756840] clk_core_disable_lock+0x24/0x40\n[ 1.761105] clk_disable+0x20/0x30\n[ 1.764501] mtk_iommu_runtime_suspend+0x88/0xa8\n[ 1.769114] pm_generic_runtime_suspend+0x2c/0x48\n[ 1.773815] __rpm_callback+0xe0/0x178\n[ 1.777559] rpm_callback+0x24/0x88\n[ 1.781041] rpm_suspend+0xdc/0x470\n[ 1.784523] rpm_idle+0x12c/0x170\n[ 1.787831] pm_runtime_work+0xa8/0xc0\n[ 1.791573] process_one_work+0x1e8/0x360\n[ 1.795580] worker_thread+0x44/0x478\n[ 1.799237] kthread+0x150/0x158\n[ 1.802460] ret_from_fork+0x10/0x30\n[ 1.806034] ---[ end trace 82402920ef64573b ]---\n[ 1.810728] ------------[ cut here ]------------\n\nIn addition, we now don't need to enable the clock from the\nfunction mtk_iommu_hw_init since it is already enabled by the resume.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47025", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47025", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47025", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47025", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47025", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47025" + } + }, + "CVE-2021-47026": { + "affected_versions": "v5.8-rc1 to v5.13-rc1", + "breaks": "6a98d71daea186247005099758af549e6afdd244", + "cmt_msg": "RDMA/rtrs-clt: destroy sysfs after removing session from active list", + "fixes": "7f4a8592ff29f19c5a2ca549d0973821319afaad", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/rtrs-clt: destroy sysfs after removing session from active list\n\nA session can be removed dynamically by sysfs interface \"remove_path\" that\neventually calls rtrs_clt_remove_path_from_sysfs function. The current\nrtrs_clt_remove_path_from_sysfs first removes the sysfs interfaces and\nfrees sess->stats object. Second it removes the session from the active\nlist.\n\nTherefore some functions could access non-connected session and access the\nfreed sess->stats object even-if they check the session status before\naccessing the session.\n\nFor instance rtrs_clt_request and get_next_path_min_inflight check the\nsession status and try to send IO to the session. The session status\ncould be changed when they are trying to send IO but they could not catch\nthe change and update the statistics information in sess->stats object,\nand generate use-after-free problem.\n(see: \"RDMA/rtrs-clt: Check state of the rtrs_clt_sess before reading its\nstats\")\n\nThis patch changes the rtrs_clt_remove_path_from_sysfs to remove the\nsession from the active session list and then destroy the sysfs\ninterfaces.\n\nEach function still should check the session status because closing or\nerror recovery paths can change the status.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47026", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47026", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47026", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47026", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47026", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47026" + } + }, + "CVE-2021-47027": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "5c14a5f944b91371961548b1907802f74a4d2e5c", + "cmt_msg": "mt76: mt7921: fix kernel crash when the firmware fails to download", + "fixes": "e230f0c44f011f3270680a506b19b7e84c5e8923", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7921: fix kernel crash when the firmware fails to download\n\nFix kernel crash when the firmware is missing or fails to download.\n\n[ 9.444758] kernel BUG at drivers/pci/msi.c:375!\n[ 9.449363] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP\n[ 9.501033] pstate: a0400009 (NzCv daif +PAN -UAO)\n[ 9.505814] pc : free_msi_irqs+0x180/0x184\n[ 9.509897] lr : free_msi_irqs+0x40/0x184\n[ 9.513893] sp : ffffffc015193870\n[ 9.517194] x29: ffffffc015193870 x28: 00000000f0e94fa2\n[ 9.522492] x27: 0000000000000acd x26: 000000000000009a\n[ 9.527790] x25: ffffffc0152cee58 x24: ffffffdbb383e0d8\n[ 9.533087] x23: ffffffdbb38628d0 x22: 0000000000040200\n[ 9.538384] x21: ffffff8cf7de7318 x20: ffffff8cd65a2480\n[ 9.543681] x19: ffffff8cf7de7000 x18: 0000000000000000\n[ 9.548979] x17: ffffff8cf9ca03b4 x16: ffffffdc13ad9a34\n[ 9.554277] x15: 0000000000000000 x14: 0000000000080800\n[ 9.559575] x13: ffffff8cd65a2980 x12: 0000000000000000\n[ 9.564873] x11: ffffff8cfa45d820 x10: ffffff8cfa45d6d0\n[ 9.570171] x9 : 0000000000000040 x8 : ffffff8ccef1b780\n[ 9.575469] x7 : aaaaaaaaaaaaaaaa x6 : 0000000000000000\n[ 9.580766] x5 : ffffffdc13824900 x4 : ffffff8ccefe0000\n[ 9.586063] x3 : 0000000000000000 x2 : 0000000000000000\n[ 9.591362] x1 : 0000000000000125 x0 : ffffff8ccefe0000\n[ 9.596660] Call trace:\n[ 9.599095] free_msi_irqs+0x180/0x184\n[ 9.602831] pci_disable_msi+0x100/0x130\n[ 9.606740] pci_free_irq_vectors+0x24/0x30\n[ 9.610915] mt7921_pci_probe+0xbc/0x250 [mt7921e]\n[ 9.615693] pci_device_probe+0xd4/0x14c\n[ 9.619604] really_probe+0x134/0x2ec\n[ 9.623252] driver_probe_device+0x64/0xfc\n[ 9.627335] device_driver_attach+0x4c/0x6c\n[ 9.631506] __driver_attach+0xac/0xc0\n[ 9.635243] bus_for_each_dev+0x8c/0xd4\n[ 9.639066] driver_attach+0x2c/0x38\n[ 9.642628] bus_add_driver+0xfc/0x1d0\n[ 9.646365] driver_register+0x64/0xf8\n[ 9.650101] __pci_register_driver+0x6c/0x7c\n[ 9.654360] init_module+0x28/0xfdc [mt7921e]\n[ 9.658704] do_one_initcall+0x13c/0x2d0\n[ 9.662615] do_init_module+0x58/0x1e8\n[ 9.666351] load_module+0xd80/0xeb4\n[ 9.669912] __arm64_sys_finit_module+0xa8/0xe0\n[ 9.674430] el0_svc_common+0xa4/0x16c\n[ 9.678168] el0_svc_compat_handler+0x2c/0x40\n[ 9.682511] el0_svc_compat+0x8/0x10\n[ 9.686076] Code: a94257f6 f9400bf7 a8c47bfd d65f03c0 (d4210000)\n[ 9.692155] ---[ end trace 7621f966afbf0a29 ]---\n[ 9.697385] Kernel panic - not syncing: Fatal exception\n[ 9.702599] SMP: stopping secondary CPUs\n[ 9.706549] Kernel Offset: 0x1c03600000 from 0xffffffc010000000\n[ 9.712456] PHYS_OFFSET: 0xfffffff440000000\n[ 9.716625] CPU features: 0x080026,2a80aa18\n[ 9.720795] Memory Limit: none", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47027", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47027", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47027", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47027", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47027", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47027" + } + }, + "CVE-2021-47028": { + "affected_versions": "unk to v5.13-rc1", + "breaks": "", + "cmt_msg": "mt76: mt7915: fix txrate reporting", + "fixes": "f43b941fd61003659a3f0e039595e5e525917aa8", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7915: fix txrate reporting\n\nProperly check rate_info to fix unexpected reporting.\n\n[ 1215.161863] Call trace:\n[ 1215.164307] cfg80211_calculate_bitrate+0x124/0x200 [cfg80211]\n[ 1215.170139] ieee80211s_update_metric+0x80/0xc0 [mac80211]\n[ 1215.175624] ieee80211_tx_status_ext+0x508/0x838 [mac80211]\n[ 1215.181190] mt7915_mcu_get_rx_rate+0x28c/0x8d0 [mt7915e]\n[ 1215.186580] mt7915_mac_tx_free+0x324/0x7c0 [mt7915e]\n[ 1215.191623] mt7915_queue_rx_skb+0xa8/0xd0 [mt7915e]\n[ 1215.196582] mt76_dma_cleanup+0x7b0/0x11d0 [mt76]\n[ 1215.201276] __napi_poll+0x38/0xf8\n[ 1215.204668] napi_workfn+0x40/0x80\n[ 1215.208062] process_one_work+0x1fc/0x390\n[ 1215.212062] worker_thread+0x48/0x4d0\n[ 1215.215715] kthread+0x120/0x128\n[ 1215.218935] ret_from_fork+0x10/0x1c", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47028", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47028", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47028", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47028", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47028", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47028" + } + }, + "CVE-2021-47029": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "d0e274af2f2e44b9d496f5d2c0431fdd2ea76fb8", + "cmt_msg": "mt76: connac: fix kernel warning adding monitor interface", + "fixes": "c996f0346e40e3b1ac2ebaf0681df898fb157f60", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: connac: fix kernel warning adding monitor interface\n\nFix the following kernel warning adding a monitor interface in\nmt76_connac_mcu_uni_add_dev routine.\n\n[ 507.984882] ------------[ cut here ]------------\n[ 507.989515] WARNING: CPU: 1 PID: 3017 at mt76_connac_mcu_uni_add_dev+0x178/0x190 [mt76_connac_lib]\n[ 508.059379] CPU: 1 PID: 3017 Comm: ifconfig Not tainted 5.4.98 #0\n[ 508.065461] Hardware name: MT7622_MT7531 RFB (DT)\n[ 508.070156] pstate: 80000005 (Nzcv daif -PAN -UAO)\n[ 508.074939] pc : mt76_connac_mcu_uni_add_dev+0x178/0x190 [mt76_connac_lib]\n[ 508.081806] lr : mt7921_eeprom_init+0x1288/0x1cb8 [mt7921e]\n[ 508.087367] sp : ffffffc013a33930\n[ 508.090671] x29: ffffffc013a33930 x28: ffffff801e628ac0\n[ 508.095973] x27: ffffff801c7f1200 x26: ffffff801c7eb008\n[ 508.101275] x25: ffffff801c7eaef0 x24: ffffff801d025610\n[ 508.106577] x23: ffffff801d022990 x22: ffffff801d024de8\n[ 508.111879] x21: ffffff801d0226a0 x20: ffffff801c7eaee8\n[ 508.117181] x19: ffffff801d0226a0 x18: 000000005d00b000\n[ 508.122482] x17: 00000000ffffffff x16: 0000000000000000\n[ 508.127785] x15: 0000000000000080 x14: ffffff801d704000\n[ 508.133087] x13: 0000000000000040 x12: 0000000000000002\n[ 508.138389] x11: 000000000000000c x10: 0000000000000000\n[ 508.143691] x9 : 0000000000000020 x8 : 0000000000000001\n[ 508.148992] x7 : 0000000000000000 x6 : 0000000000000000\n[ 508.154294] x5 : ffffff801c7eaee8 x4 : 0000000000000006\n[ 508.159596] x3 : 0000000000000001 x2 : 0000000000000000\n[ 508.164898] x1 : ffffff801c7eac08 x0 : ffffff801d0226a0\n[ 508.170200] Call trace:\n[ 508.172640] mt76_connac_mcu_uni_add_dev+0x178/0x190 [mt76_connac_lib]\n[ 508.179159] mt7921_eeprom_init+0x1288/0x1cb8 [mt7921e]\n[ 508.184394] drv_add_interface+0x34/0x88 [mac80211]\n[ 508.189271] ieee80211_add_virtual_monitor+0xe0/0xb48 [mac80211]\n[ 508.195277] ieee80211_do_open+0x86c/0x918 [mac80211]\n[ 508.200328] ieee80211_do_open+0x900/0x918 [mac80211]\n[ 508.205372] __dev_open+0xcc/0x150\n[ 508.208763] __dev_change_flags+0x134/0x198\n[ 508.212937] dev_change_flags+0x20/0x60\n[ 508.216764] devinet_ioctl+0x3e8/0x748\n[ 508.220503] inet_ioctl+0x1e4/0x350\n[ 508.223983] sock_do_ioctl+0x48/0x2a0\n[ 508.227635] sock_ioctl+0x310/0x4f8\n[ 508.231116] do_vfs_ioctl+0xa4/0xac0\n[ 508.234681] ksys_ioctl+0x44/0x90\n[ 508.237985] __arm64_sys_ioctl+0x1c/0x48\n[ 508.241901] el0_svc_common.constprop.1+0x7c/0x100\n[ 508.246681] el0_svc_handler+0x18/0x20\n[ 508.250421] el0_svc+0x8/0x1c8\n[ 508.253465] ---[ end trace c7b90fee13d72c39 ]---\n[ 508.261278] ------------[ cut here ]------------", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47029", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47029", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47029", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47029", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47029", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47029" + } + }, + "CVE-2021-47030": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "d2bf7959d9c0f631ef860edaf834d55773fdedff", + "cmt_msg": "mt76: mt7615: fix memory leak in mt7615_coredump_work", + "fixes": "49cc85059a2cb656f96ff3693f891e8fe8f669a9", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7615: fix memory leak in mt7615_coredump_work\n\nSimilar to the issue fixed in mt7921_coredump_work, fix a possible memory\nleak in mt7615_coredump_work routine.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47030", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47030", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47030", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47030", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47030", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47030" + } + }, + "CVE-2021-47031": { + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "1c099ab44727c8e42fe4de4d91b53cec3ef02860", + "cmt_msg": "mt76: mt7921: fix memory leak in mt7921_coredump_work", + "fixes": "782b3e86ea970e899f8e723db9f64708a15ca30e", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7921: fix memory leak in mt7921_coredump_work\n\nFix possible memory leak in mt7921_coredump_work.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47031", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47031", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47031", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47031", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47031", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47031" + } + }, + "CVE-2021-47032": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "27d5c528a7ca08dcd44877fdd9fc08b76630bf77", + "cmt_msg": "mt76: mt7915: fix tx skb dma unmap", + "fixes": "7dcf3c04f0aca746517a77433b33d40868ca4749", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7915: fix tx skb dma unmap\n\nThe first pointer in the txp needs to be unmapped as well, otherwise it will\nleak DMA mapping entries", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47032", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47032", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47032", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47032", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47032", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47032" + } + }, + "CVE-2021-47033": { + "affected_versions": "v5.10-rc1 to v5.13-rc1", + "breaks": "27d5c528a7ca08dcd44877fdd9fc08b76630bf77", + "cmt_msg": "mt76: mt7615: fix tx skb dma unmap", + "fixes": "ebee7885bb12a8fe2c2f9bac87dbd87a05b645f9", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7615: fix tx skb dma unmap\n\nThe first pointer in the txp needs to be unmapped as well, otherwise it will\nleak DMA mapping entries", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-47033", + "ExploitDB": "https://www.exploit-db.com/search?cve=2021-47033", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2021-47033", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2021-47033", + "SUSE": "https://www.suse.com/security/cve/CVE-2021-47033", + "Ubuntu": "https://ubuntu.com/security/CVE-2021-47033" + } + }, + "CVE-2021-47034": { + "affected_versions": "v4.18-rc1 to v5.13-rc1", + "breaks": "f1cb8f9beba8699dd1b4518418191499e53f7b17", + "cmt_msg": "powerpc/64s: Fix pte update for kernel memory on radix", + "fixes": "b8b2f37cf632434456182e9002d63cbc4cccc50c", + "last_affected_version": "5.12.3", + "last_modified": "2024-04-09", + "nvd_text": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/64s: Fix pte update for kernel memory on radix\n\nWhen adding a PTE a ptesync is needed to order the update of the PTE\nwith subsequent accesses otherwise a spurious fault may be raised.\n\nradix__set_pte_at() does not do this for performance gains. For\nnon-kernel memory this is not an issue as any faults of this ki