Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2024-35876 (GCVE-0-2024-35876)
Vulnerability from cvelistv5 – Published: 2024-05-19 08:34 – Updated: 2024-05-23 13:32This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Show details on NVD website{
"containers": {
"cna": {
"providerMetadata": {
"dateUpdated": "2024-05-23T13:32:01.079Z",
"orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"shortName": "Linux"
},
"rejectedReasons": [
{
"lang": "en",
"value": "This CVE ID has been rejected or withdrawn by its CVE Numbering Authority."
}
]
}
},
"cveMetadata": {
"assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"assignerShortName": "Linux",
"cveId": "CVE-2024-35876",
"datePublished": "2024-05-19T08:34:33.602Z",
"dateRejected": "2024-05-23T13:32:01.079Z",
"dateReserved": "2024-05-17T13:50:33.110Z",
"dateUpdated": "2024-05-23T13:32:01.079Z",
"state": "REJECTED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.1"
}
FKIE_CVE-2024-35876
Vulnerability from fkie_nvd - Published: 2024-05-19 09:15 - Updated: 2024-05-23 14:15| URL | Tags |
|---|
| Vendor | Product | Version |
|---|
{
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority."
}
],
"id": "CVE-2024-35876",
"lastModified": "2024-05-23T14:15:09.830",
"metrics": {},
"published": "2024-05-19T09:15:08.900",
"references": [],
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"vulnStatus": "Rejected"
}
cve-2024-35876
Vulnerability from osv_almalinux
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
- kernel: powerpc: Fix access beyond end of drmem array (CVE-2023-52451)
- kernel: efivarfs: force RO when remounting if SetVariable is not supported (CVE-2023-52463)
- kernel: tracing: Restructure trace_clock_global() to never block (CVE-2021-46939)
- kernel: ext4: avoid online resizing failures due to oversized flex bg (CVE-2023-52622)
- kernel: net/sched: flower: Fix chain template offload (CVE-2024-26669)
- kernel: stmmac: Clear variable when destroying workqueue (CVE-2024-26802)
- kernel: efi: runtime: Fix potential overflow of soft-reserved region size (CVE-2024-26843)
- kernel: quota: Fix potential NULL pointer dereference (CVE-2024-26878)
- kernel: TIPC message reassembly use-after-free remote code execution vulnerability (CVE-2024-36886)
- kernel: SUNRPC: fix a memleak in gss_import_v2_context (CVE-2023-52653)
- kernel: dmaengine/idxd: hardware erratum allows potential security problem with direct access by untrusted application (CVE-2024-21823)
- kernel: Revert "net/mlx5: Block entering switchdev mode with ns inconsistency" (CVE-2023-52658)
- kernel: ext4: fix corruption during on-line resize (CVE-2024-35807)
- kernel: x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD (CVE-2024-35801)
- kernel: dyndbg: fix old BUG_ON in >control parser (CVE-2024-35947)
- kernel: net/sched: act_skbmod: prevent kernel-infoleak (CVE-2024-35893)
- kernel: x86/mce: Make sure to grab mce_sysfs_mutex in set_bank() (CVE-2024-35876)
- kernel: platform/x86: wmi: Fix opening of char device (CVE-2023-52864)
- kernel: tipc: Change nla_policy for bearer-related names to NLA_NUL_STRING (CVE-2023-52845)
- (CVE-2023-28746)
- (CVE-2023-52847)
- (CVE-2021-47548)
- (CVE-2024-36921)
- (CVE-2024-26921)
- (CVE-2021-47579)
- (CVE-2024-36927)
- (CVE-2024-39276)
- (CVE-2024-33621)
- (CVE-2024-27010)
- (CVE-2024-26960)
- (CVE-2024-38596)
- (CVE-2022-48743)
- (CVE-2024-26733)
- (CVE-2024-26586)
- (CVE-2024-26698)
- (CVE-2023-52619)
Bug Fix(es):
- AlmaLinux8.6 - Spinlock statistics may show negative elapsed time and incorrectly formatted output (JIRA:AlmaLinux-17678)
- [AWS][8.9]There are call traces found when booting debug-kernel for Amazon EC2 r8g.metal-24xl instance (JIRA:AlmaLinux-23841)
- [almalinux8] gfs2: Fix glock shrinker (JIRA:AlmaLinux-32941)
- lan78xx: Microchip LAN7800 never comes up after unplug and replug (JIRA:AlmaLinux-33437)
- [Hyper-V][AlmaLinux-8.10.z] Update hv_netvsc driver to TOT (JIRA:AlmaLinux-39074)
- Use-after-free on proc inode-i_sb triggered by fsnotify (JIRA:AlmaLinux-40167)
- blk-cgroup: Properly propagate the iostat update up the hierarchy [almalinux-8.10.z] (JIRA:AlmaLinux-40939)
- (JIRA:AlmaLinux-31798)
- (JIRA:AlmaLinux-10263)
- (JIRA:AlmaLinux-40901)
- (JIRA:AlmaLinux-43547)
- (JIRA:AlmaLinux-34876)
Enhancement(s):
- [RFE] Add module parameters 'soft_reboot_cmd' and 'soft_active_on_boot' for customizing softdog configuration (JIRA:AlmaLinux-19723)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer the CVE page(s) listed in the References section.
{
"affected": [
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "bpftool"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-abi-stablelists"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-core"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-cross-headers"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-debug"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-debug-core"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-debug-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-debug-modules"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-debug-modules-extra"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-doc"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-headers"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-modules"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-modules-extra"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-tools"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-tools-libs"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-tools-libs-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-zfcpdump"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-zfcpdump-core"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-zfcpdump-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-zfcpdump-modules"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-zfcpdump-modules-extra"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "perf"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "python3-perf"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"details": "The kernel packages contain the Linux kernel, the core of any Linux operating system.\n\nSecurity Fix(es):\n\n* kernel: powerpc: Fix access beyond end of drmem array (CVE-2023-52451)\n* kernel: efivarfs: force RO when remounting if SetVariable is not supported (CVE-2023-52463)\n* kernel: tracing: Restructure trace_clock_global() to never block (CVE-2021-46939)\n* kernel: ext4: avoid online resizing failures due to oversized flex bg (CVE-2023-52622)\n* kernel: net/sched: flower: Fix chain template offload (CVE-2024-26669)\n* kernel: stmmac: Clear variable when destroying workqueue (CVE-2024-26802)\n* kernel: efi: runtime: Fix potential overflow of soft-reserved region size (CVE-2024-26843)\n* kernel: quota: Fix potential NULL pointer dereference (CVE-2024-26878)\n* kernel: TIPC message reassembly use-after-free remote code execution vulnerability (CVE-2024-36886)\n* kernel: SUNRPC: fix a memleak in gss_import_v2_context (CVE-2023-52653)\n* kernel: dmaengine/idxd: hardware erratum allows potential security problem with direct access by untrusted application (CVE-2024-21823)\n* kernel: Revert \u0026#34;net/mlx5: Block entering switchdev mode with ns inconsistency\u0026#34; (CVE-2023-52658)\n* kernel: ext4: fix corruption during on-line resize (CVE-2024-35807)\n* kernel: x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD (CVE-2024-35801)\n* kernel: dyndbg: fix old BUG_ON in \u0026gt;control parser (CVE-2024-35947)\n* kernel: net/sched: act_skbmod: prevent kernel-infoleak (CVE-2024-35893)\n* kernel: x86/mce: Make sure to grab mce_sysfs_mutex in set_bank() (CVE-2024-35876)\n* kernel: platform/x86: wmi: Fix opening of char device (CVE-2023-52864)\n* kernel: tipc: Change nla_policy for bearer-related names to NLA_NUL_STRING (CVE-2023-52845)\n* (CVE-2023-28746)\n* (CVE-2023-52847)\n* (CVE-2021-47548)\n* (CVE-2024-36921)\n* (CVE-2024-26921)\n* (CVE-2021-47579)\n* (CVE-2024-36927)\n* (CVE-2024-39276)\n* (CVE-2024-33621)\n* (CVE-2024-27010)\n* (CVE-2024-26960)\n* (CVE-2024-38596)\n* (CVE-2022-48743)\n* (CVE-2024-26733)\n* (CVE-2024-26586)\n* (CVE-2024-26698)\n* (CVE-2023-52619)\n\nBug Fix(es):\n\n* AlmaLinux8.6 - Spinlock statistics may show negative elapsed time and incorrectly formatted output (JIRA:AlmaLinux-17678)\n* [AWS][8.9]There are call traces found when booting debug-kernel for Amazon EC2 r8g.metal-24xl instance (JIRA:AlmaLinux-23841)\n* [almalinux8] gfs2: Fix glock shrinker (JIRA:AlmaLinux-32941)\n* lan78xx: Microchip LAN7800 never comes up after unplug and replug (JIRA:AlmaLinux-33437)\n* [Hyper-V][AlmaLinux-8.10.z] Update hv_netvsc driver to TOT (JIRA:AlmaLinux-39074)\n* Use-after-free on proc inode-i_sb triggered by fsnotify (JIRA:AlmaLinux-40167)\n* blk-cgroup: Properly propagate the iostat update up the hierarchy [almalinux-8.10.z] (JIRA:AlmaLinux-40939)\n* (JIRA:AlmaLinux-31798)\n* (JIRA:AlmaLinux-10263)\n* (JIRA:AlmaLinux-40901)\n* (JIRA:AlmaLinux-43547)\n* (JIRA:AlmaLinux-34876)\n\nEnhancement(s):\n\n* [RFE] Add module parameters \u0027soft_reboot_cmd\u0027 and \u0027soft_active_on_boot\u0027 for customizing softdog configuration (JIRA:AlmaLinux-19723)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer the CVE page(s) listed in the References section.",
"id": "ALSA-2024:5101",
"modified": "2024-08-08T19:03:05Z",
"published": "2024-08-08T00:00:00Z",
"references": [
{
"type": "ADVISORY",
"url": "https://access.redhat.com/errata/RHSA-2024:5101"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-46939"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47018"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47257"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47284"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47304"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47373"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47408"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47461"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47468"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47491"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47548"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47579"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47624"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48632"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48743"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48747"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48757"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-28746"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52451"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52463"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52469"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52471"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52486"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52530"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52619"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52622"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52623"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52648"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52653"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52658"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52662"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52679"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52707"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52730"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52756"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52762"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52764"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52775"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52777"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52784"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52791"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52796"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52803"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52811"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52832"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52834"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52845"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52847"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52864"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-21823"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-2201"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-25739"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26586"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26614"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26640"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26660"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26669"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26686"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26698"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26704"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26733"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26740"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26772"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26773"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26802"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26810"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26837"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26840"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26843"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26852"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26853"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26870"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26878"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26908"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26921"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26925"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26940"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26958"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26960"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26961"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27010"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27011"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27019"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27020"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27025"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27065"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27388"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27395"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27434"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-31076"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-33621"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35790"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35801"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35807"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35810"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35814"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35823"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35824"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35847"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35876"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35893"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35896"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35897"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35899"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35900"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35910"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35912"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35924"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35925"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35930"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35937"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35938"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35946"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35947"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35952"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36000"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36005"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36006"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36010"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36016"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36017"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36020"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36025"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36270"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36286"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36489"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36886"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36889"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36896"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36904"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36905"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36917"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36921"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36927"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36929"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36933"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36940"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36941"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36945"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36950"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36954"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36960"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36971"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36978"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36979"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38538"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38555"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38573"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38575"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38596"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38598"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38615"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38627"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39276"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39472"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39476"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39487"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39502"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-40927"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-40974"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2263879"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2265645"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2265650"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2265797"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266341"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266347"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266497"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266594"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2267787"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2268118"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2269070"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2269211"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2270084"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2270100"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2270700"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2271686"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2271688"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2272782"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2272795"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273109"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273117"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273174"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273236"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273242"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273247"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273268"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273427"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273654"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275565"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275573"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275580"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275694"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275711"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275744"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275748"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275761"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275928"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2277166"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2277238"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2277840"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278176"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278178"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278182"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278218"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278256"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278258"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278277"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278279"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278380"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278484"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278515"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278535"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278539"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278989"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2280440"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281054"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281133"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281149"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281189"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281190"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281207"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281215"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281221"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281235"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281268"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281326"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281360"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281510"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281519"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281636"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281641"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281664"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281667"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281672"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281675"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281682"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281725"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281752"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281758"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281819"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281821"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281833"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281938"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281949"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281968"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281989"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282328"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282373"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282479"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282553"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282615"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282623"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282640"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282642"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282645"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282690"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282717"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282719"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282727"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282742"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282743"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282744"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282759"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282763"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282766"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282772"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282780"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282887"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282896"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282923"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282925"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282950"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2283401"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2283894"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284400"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284417"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284421"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284465"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284474"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284477"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284488"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284496"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284500"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284513"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284519"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284539"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284541"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284556"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284571"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284590"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284625"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2290408"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2292331"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293078"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293250"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293276"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293312"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293316"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293348"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293367"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293371"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293383"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293418"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293420"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293444"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293461"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293653"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293657"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293684"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293687"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293700"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293711"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2294274"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2295914"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2296067"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297056"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297474"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297511"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297558"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2298108"
},
{
"type": "ADVISORY",
"url": "https://errata.almalinux.org/8/ALSA-2024-5101.html"
}
],
"related": [
"CVE-2023-52451",
"CVE-2023-52463",
"CVE-2021-46939",
"CVE-2023-52622",
"CVE-2024-26669",
"CVE-2024-26802",
"CVE-2024-26843",
"CVE-2024-26878",
"CVE-2024-36886",
"CVE-2023-52653",
"CVE-2024-21823",
"CVE-2023-52658",
"CVE-2024-35807",
"CVE-2024-35801",
"CVE-2024-35947",
"CVE-2024-35893",
"CVE-2024-35876",
"CVE-2023-52864",
"CVE-2023-52845",
"CVE-2023-28746",
"CVE-2023-52847",
"CVE-2021-47548",
"CVE-2024-36921",
"CVE-2024-26921",
"CVE-2021-47579",
"CVE-2024-36927",
"CVE-2024-39276",
"CVE-2024-33621",
"CVE-2024-27010",
"CVE-2024-26960",
"CVE-2024-38596",
"CVE-2022-48743",
"CVE-2024-26733",
"CVE-2024-26586",
"CVE-2024-26698",
"CVE-2023-52619"
],
"summary": "Important: kernel security update"
}
cve-2024-35876
Vulnerability from osv_almalinux
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
- kernel: efivarfs: force RO when remounting if SetVariable is not supported (CVE-2023-52463)
- kernel: tracing: Restructure trace_clock_global() to never block (CVE-2021-46939)
- kernel: ext4: avoid online resizing failures due to oversized flex bg (CVE-2023-52622)
- kernel: net/sched: flower: Fix chain template offload (CVE-2024-26669)
- kernel: stmmac: Clear variable when destroying workqueue (CVE-2024-26802)
- kernel: efi: runtime: Fix potential overflow of soft-reserved region size (CVE-2024-26843)
- kernel: quota: Fix potential NULL pointer dereference (CVE-2024-26878)
- kernel: TIPC message reassembly use-after-free remote code execution vulnerability (CVE-2024-36886)
- kernel: SUNRPC: fix a memleak in gss_import_v2_context (CVE-2023-52653)
- kernel: dmaengine/idxd: hardware erratum allows potential security problem with direct access by untrusted application (CVE-2024-21823)
- kernel: ext4: fix corruption during on-line resize (CVE-2024-35807)
- kernel: x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD (CVE-2024-35801)
- kernel: dyndbg: fix old BUG_ON in >control parser (CVE-2024-35947)
- kernel: net/sched: act_skbmod: prevent kernel-infoleak (CVE-2024-35893)
- kernel: x86/mce: Make sure to grab mce_sysfs_mutex in set_bank() (CVE-2024-35876)
- kernel: platform/x86: wmi: Fix opening of char device (CVE-2023-52864)
- kernel: tipc: Change nla_policy for bearer-related names to NLA_NUL_STRING (CVE-2023-52845)
- kernel: Revert "net/mlx5: Block entering switchdev mode with ns inconsistency" (CVE-2023-52658)
- kernel: crash due to a missing check for leb_size (CVE-2024-25739)
- kernel: tcp: make sure init the accept_queue's spinlocks once (CVE-2024-26614)
- kernel: tcp: add sanity checks to rx zerocopy (CVE-2024-26640)
- kernel: NFSv4.2: fix nfs4_listxattr kernel BUG at mm/usercopy.c:102 (CVE-2024-26870)
- kernel: nfs: fix UAF in direct writes (CVE-2024-26958)
- kernel: SUNRPC: fix some memleaks in gssx_dec_option_array (CVE-2024-27388)
- kernel: wifi: iwlwifi: mvm: don't set the MFP flag for the GTK (CVE-2024-27434)
- kernel: of: Fix double free in of_parse_phandle_with_args_map (CVE-2023-52679)
- kernel: scsi: lpfc: Fix possible memory leak in lpfc_rcv_padisc() (CVE-2024-35930)
- kernel: wifi: iwlwifi: mvm: rfi: fix potential response leaks (CVE-2024-35912)
- kernel: block: prevent division by zero in blk_rq_stat_sum() (CVE-2024-35925)
- kernel: wifi: ath11k: decrease MHI channel buffer length to 8KB (CVE-2024-35938)
- kernel: wifi: cfg80211: check A-MSDU format more carefully (CVE-2024-35937)
- kernel: wifi: rtw89: fix null pointer access when abort scan (CVE-2024-35946)
- kernel: netfilter: nf_tables: honor table dormant flag from netdev release event path (CVE-2024-36005)
- kernel: mm/hugetlb: fix missing hugetlb_lock for resv uncharge (CVE-2024-36000)
- kernel: mlxsw: spectrum_acl_tcam: Fix incorrect list API usage (CVE-2024-36006)
- kernel: net: ieee802154: fix null deref in parse dev addr (CVE-2021-47257)
- kernel: mmc: sdio: fix possible resource leaks in some error paths (CVE-2023-52730)
- kernel: wifi: ath11k: fix gtk offload status event locking (CVE-2023-52777)
- (CVE-2023-52832)
- (CVE-2023-52803)
- (CVE-2023-52756)
- (CVE-2023-52834)
- (CVE-2023-52791)
- (CVE-2023-52764)
- (CVE-2021-47468)
- (CVE-2021-47284)
- (CVE-2024-36025)
- (CVE-2024-36941)
- (CVE-2024-36940)
- (CVE-2024-36904)
- (CVE-2024-36896)
- (CVE-2024-36954)
- (CVE-2024-36950)
- (CVE-2024-38575)
- (CVE-2024-36917)
- (CVE-2024-36016)
- (CVE-2023-52762)
- (CVE-2024-27025)
- (CVE-2021-47548)
- (CVE-2023-52619)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer the CVE page(s) listed in the References section.
{
"affected": [
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-core"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-debug"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-debug-core"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-debug-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-debug-kvm"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-debug-modules"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-debug-modules-extra"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-kvm"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-modules"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "kernel-rt-modules-extra"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.18.0-553.16.1.rt7.357.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"details": "The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.\n\nSecurity Fix(es):\n\n* kernel: efivarfs: force RO when remounting if SetVariable is not supported (CVE-2023-52463)\n* kernel: tracing: Restructure trace_clock_global() to never block (CVE-2021-46939)\n* kernel: ext4: avoid online resizing failures due to oversized flex bg (CVE-2023-52622)\n* kernel: net/sched: flower: Fix chain template offload (CVE-2024-26669)\n* kernel: stmmac: Clear variable when destroying workqueue (CVE-2024-26802)\n* kernel: efi: runtime: Fix potential overflow of soft-reserved region size (CVE-2024-26843)\n* kernel: quota: Fix potential NULL pointer dereference (CVE-2024-26878)\n* kernel: TIPC message reassembly use-after-free remote code execution vulnerability (CVE-2024-36886)\n* kernel: SUNRPC: fix a memleak in gss_import_v2_context (CVE-2023-52653)\n* kernel: dmaengine/idxd: hardware erratum allows potential security problem with direct access by untrusted application (CVE-2024-21823)\n* kernel: ext4: fix corruption during on-line resize (CVE-2024-35807)\n* kernel: x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD (CVE-2024-35801)\n* kernel: dyndbg: fix old BUG_ON in \u0026gt;control parser (CVE-2024-35947)\n* kernel: net/sched: act_skbmod: prevent kernel-infoleak (CVE-2024-35893)\n* kernel: x86/mce: Make sure to grab mce_sysfs_mutex in set_bank() (CVE-2024-35876)\n* kernel: platform/x86: wmi: Fix opening of char device (CVE-2023-52864)\n* kernel: tipc: Change nla_policy for bearer-related names to NLA_NUL_STRING (CVE-2023-52845)\n* kernel: Revert \"net/mlx5: Block entering switchdev mode with ns inconsistency\" (CVE-2023-52658)\n* kernel: crash due to a missing check for leb_size (CVE-2024-25739)\n* kernel: tcp: make sure init the accept_queue\u0026#39;s spinlocks once (CVE-2024-26614)\n* kernel: tcp: add sanity checks to rx zerocopy (CVE-2024-26640)\n* kernel: NFSv4.2: fix nfs4_listxattr kernel BUG at mm/usercopy.c:102 (CVE-2024-26870)\n* kernel: nfs: fix UAF in direct writes (CVE-2024-26958)\n* kernel: SUNRPC: fix some memleaks in gssx_dec_option_array (CVE-2024-27388)\n* kernel: wifi: iwlwifi: mvm: don\u0026#39;t set the MFP flag for the GTK (CVE-2024-27434)\n* kernel: of: Fix double free in of_parse_phandle_with_args_map (CVE-2023-52679)\n* kernel: scsi: lpfc: Fix possible memory leak in lpfc_rcv_padisc() (CVE-2024-35930)\n* kernel: wifi: iwlwifi: mvm: rfi: fix potential response leaks (CVE-2024-35912)\n* kernel: block: prevent division by zero in blk_rq_stat_sum() (CVE-2024-35925)\n* kernel: wifi: ath11k: decrease MHI channel buffer length to 8KB (CVE-2024-35938)\n* kernel: wifi: cfg80211: check A-MSDU format more carefully (CVE-2024-35937)\n* kernel: wifi: rtw89: fix null pointer access when abort scan (CVE-2024-35946)\n* kernel: netfilter: nf_tables: honor table dormant flag from netdev release event path (CVE-2024-36005)\n* kernel: mm/hugetlb: fix missing hugetlb_lock for resv uncharge (CVE-2024-36000)\n* kernel: mlxsw: spectrum_acl_tcam: Fix incorrect list API usage (CVE-2024-36006)\n* kernel: net: ieee802154: fix null deref in parse dev addr (CVE-2021-47257)\n* kernel: mmc: sdio: fix possible resource leaks in some error paths (CVE-2023-52730)\n* kernel: wifi: ath11k: fix gtk offload status event locking (CVE-2023-52777)\n* (CVE-2023-52832)\n* (CVE-2023-52803)\n* (CVE-2023-52756)\n* (CVE-2023-52834)\n* (CVE-2023-52791)\n* (CVE-2023-52764)\n* (CVE-2021-47468)\n* (CVE-2021-47284)\n* (CVE-2024-36025)\n* (CVE-2024-36941)\n* (CVE-2024-36940)\n* (CVE-2024-36904)\n* (CVE-2024-36896)\n* (CVE-2024-36954)\n* (CVE-2024-36950)\n* (CVE-2024-38575)\n* (CVE-2024-36917)\n* (CVE-2024-36016)\n* (CVE-2023-52762)\n* (CVE-2024-27025)\n* (CVE-2021-47548)\n* (CVE-2023-52619)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer the CVE page(s) listed in the References section.",
"id": "ALSA-2024:5102",
"modified": "2024-08-08T18:59:48Z",
"published": "2024-08-08T00:00:00Z",
"references": [
{
"type": "ADVISORY",
"url": "https://access.redhat.com/errata/RHSA-2024:5102"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-46939"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47257"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47284"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47304"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47373"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47408"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47461"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47468"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47491"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47548"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47579"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2021-47624"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48632"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48743"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48747"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2022-48757"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52463"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52469"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52471"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52486"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52530"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52619"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52622"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52623"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52648"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52653"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52658"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52662"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52679"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52707"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52730"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52756"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52762"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52764"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52777"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52784"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52791"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52796"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52803"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52811"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52832"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52834"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52845"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52847"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2023-52864"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-21823"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-2201"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-25739"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26586"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26614"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26640"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26660"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26669"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26686"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26704"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26733"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26740"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26772"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26773"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26802"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26810"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26837"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26840"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26843"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26852"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26853"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26870"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26878"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26921"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26925"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26940"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26958"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26960"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-26961"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27010"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27011"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27019"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27020"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27025"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27065"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27388"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27395"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-27434"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-31076"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-33621"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35790"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35801"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35807"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35810"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35814"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35847"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35876"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35893"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35896"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35897"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35899"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35900"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35910"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35912"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35924"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35925"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35930"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35937"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35938"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35946"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35947"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-35952"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36000"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36005"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36006"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36010"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36016"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36017"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36020"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36025"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36270"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36286"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36489"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36886"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36889"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36896"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36904"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36905"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36917"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36921"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36927"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36929"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36933"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36940"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36941"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36950"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36954"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36960"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36971"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36978"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-36979"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38538"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38555"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38573"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38575"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38596"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38615"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-38627"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39276"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39472"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39476"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39487"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-39502"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2024-40927"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2263879"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2265645"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2265797"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266341"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266347"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2266497"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2267787"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2268118"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2269070"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2269211"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2270084"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2270100"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2271686"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2271688"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2272782"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2272795"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273109"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273174"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273236"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273242"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273247"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273268"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273427"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2273654"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275565"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275573"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275580"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275694"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275711"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275748"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275761"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2275928"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2277166"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2277238"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2277840"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278176"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278178"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278182"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278218"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278256"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278258"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278277"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278279"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278380"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278484"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278515"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278535"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278539"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2278989"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2280440"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281054"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281133"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281149"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281207"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281215"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281221"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281235"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281268"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281326"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281360"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281510"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281519"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281636"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281641"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281664"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281667"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281672"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281675"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281682"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281725"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281752"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281758"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281819"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281821"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281833"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281938"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281949"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281968"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2281989"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282328"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282373"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282479"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282553"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282615"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282623"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282640"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282642"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282645"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282717"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282719"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282727"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282742"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282743"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282744"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282759"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282763"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282766"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282772"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282780"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282887"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282896"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282923"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282925"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2282950"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2283401"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2283894"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284400"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284417"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284421"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284474"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284477"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284488"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284496"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284500"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284513"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284519"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284539"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284541"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284556"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284571"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284590"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2284625"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2290408"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2292331"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293078"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293250"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293276"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293312"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293316"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293348"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293371"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293383"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293418"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293420"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293444"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293461"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293653"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293657"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293684"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293687"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293700"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2293711"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2294274"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2295914"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2296067"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297056"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297474"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2297511"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2298108"
},
{
"type": "ADVISORY",
"url": "https://errata.almalinux.org/8/ALSA-2024-5102.html"
}
],
"related": [
"CVE-2023-52463",
"CVE-2021-46939",
"CVE-2023-52622",
"CVE-2024-26669",
"CVE-2024-26802",
"CVE-2024-26843",
"CVE-2024-26878",
"CVE-2024-36886",
"CVE-2023-52653",
"CVE-2024-21823",
"CVE-2024-35807",
"CVE-2024-35801",
"CVE-2024-35947",
"CVE-2024-35893",
"CVE-2024-35876",
"CVE-2023-52864",
"CVE-2023-52845",
"CVE-2023-52658",
"CVE-2024-25739",
"CVE-2024-26614",
"CVE-2024-26640",
"CVE-2024-26870",
"CVE-2024-26958",
"CVE-2024-27388",
"CVE-2024-27434",
"CVE-2023-52679",
"CVE-2024-35930",
"CVE-2024-35912",
"CVE-2024-35925",
"CVE-2024-35938",
"CVE-2024-35937",
"CVE-2024-35946",
"CVE-2024-36005",
"CVE-2024-36000",
"CVE-2024-36006",
"CVE-2021-47257",
"CVE-2023-52730",
"CVE-2023-52777",
"CVE-2023-52832",
"CVE-2023-52803",
"CVE-2023-52756",
"CVE-2023-52834",
"CVE-2023-52791",
"CVE-2023-52764",
"CVE-2021-47468",
"CVE-2021-47284",
"CVE-2024-36025",
"CVE-2024-36941",
"CVE-2024-36940",
"CVE-2024-36904",
"CVE-2024-36896",
"CVE-2024-36954",
"CVE-2024-36950",
"CVE-2024-38575",
"CVE-2024-36917",
"CVE-2024-36016",
"CVE-2023-52762",
"CVE-2024-27025",
"CVE-2021-47548",
"CVE-2023-52619"
],
"summary": "Important: kernel-rt security update"
}
GHSA-R8JG-75QW-69PW
Vulnerability from github – Published: 2024-05-19 09:34 – Updated: 2024-06-03 18:56In the Linux kernel, the following vulnerability has been resolved:
x86/mce: Make sure to grab mce_sysfs_mutex in set_bank()
Modifying a MCA bank's MCA_CTL bits which control which error types to be reported is done over
/sys/devices/system/machinecheck/ ├── machinecheck0 │ ├── bank0 │ ├── bank1 │ ├── bank10 │ ├── bank11 ...
sysfs nodes by writing the new bit mask of events to enable.
When the write is accepted, the kernel deletes all current timers and reinits all banks.
Doing that in parallel can lead to initializing a timer which is already armed and in the timer wheel, i.e., in use already:
ODEBUG: init active (active state 0) object: ffff888063a28000 object type: timer_list hint: mce_timer_fn+0x0/0x240 arch/x86/kernel/cpu/mce/core.c:2642 WARNING: CPU: 0 PID: 8120 at lib/debugobjects.c:514 debug_print_object+0x1a0/0x2a0 lib/debugobjects.c:514
Fix that by grabbing the sysfs mutex as the rest of the MCA sysfs code does.
Reported by: Yue Sun samsun1006219@gmail.com Reported by: xingwei lee xrivendell7@gmail.com
{
"affected": [],
"aliases": [
"CVE-2024-35876"
],
"database_specific": {
"cwe_ids": [],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-05-19T09:15:08Z",
"severity": null
},
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nx86/mce: Make sure to grab mce_sysfs_mutex in set_bank()\n\nModifying a MCA bank\u0027s MCA_CTL bits which control which error types to\nbe reported is done over\n\n /sys/devices/system/machinecheck/\n \u251c\u2500\u2500 machinecheck0\n \u2502\u00a0\u00a0 \u251c\u2500\u2500 bank0\n \u2502\u00a0\u00a0 \u251c\u2500\u2500 bank1\n \u2502\u00a0\u00a0 \u251c\u2500\u2500 bank10\n \u2502\u00a0\u00a0 \u251c\u2500\u2500 bank11\n ...\n\nsysfs nodes by writing the new bit mask of events to enable.\n\nWhen the write is accepted, the kernel deletes all current timers and\nreinits all banks.\n\nDoing that in parallel can lead to initializing a timer which is already\narmed and in the timer wheel, i.e., in use already:\n\n ODEBUG: init active (active state 0) object: ffff888063a28000 object\n type: timer_list hint: mce_timer_fn+0x0/0x240 arch/x86/kernel/cpu/mce/core.c:2642\n WARNING: CPU: 0 PID: 8120 at lib/debugobjects.c:514\n debug_print_object+0x1a0/0x2a0 lib/debugobjects.c:514\n\nFix that by grabbing the sysfs mutex as the rest of the MCA sysfs code\ndoes.\n\nReported by: Yue Sun \u003csamsun1006219@gmail.com\u003e\nReported by: xingwei lee \u003cxrivendell7@gmail.com\u003e",
"id": "GHSA-r8jg-75qw-69pw",
"modified": "2024-06-03T18:56:15Z",
"published": "2024-05-19T09:34:46Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-35876"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/20a915154ccb88da08986ab6c9fc4c1cf6259de2"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/32223b0b60d53f49567fc501f91ca076ae96be6b"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/3ddf944b32f88741c303f0b21459dbb3872b8bc5"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/5a02df3e92470efd589712925b5c722e730276a0"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/976b1b2680fb4c01aaf05a0623288d87619a6c93"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/f5e65b782f3e07324b9a8fa3cdaee422f057c758"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/f860595512ff5c05a29fa4d64169c3fd1186b8cf"
}
],
"schema_version": "1.4.0",
"severity": []
}
CERTFR-2024-AVI-0668
Vulnerability from certfr_avis - Published: 2024-08-09 - Updated: 2024-08-09
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Vendor | Product | Description | ||
|---|---|---|---|---|
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server - AUS 8.6 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server for IBM z Systems - 4 years of updates 9.2 s390x | ||
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Power, little endian 8 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux for IBM z Systems 8 s390x | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server - TUS 8.6 x86_64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 9.2 s390x | ||
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.6 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2 ppc64le | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for ARM 64 8 aarch64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for x86_64 8 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.6 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates 9.2 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time for NFV 8 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server - AUS 9.2 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for ARM 64 8 aarch64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server for ARM 64 - 4 years of updates 9.2 aarch64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2 s390x | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 9.2 aarch64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.2 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 8 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time 8 x86_64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for Power, little endian 8 ppc64le | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.2 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates 9.2 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2 aarch64 |
| Title | Publication Time | Tags | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
|||||||||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server - AUS 8.6 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server for IBM z Systems - 4 years of updates 9.2 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Power, little endian 8 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for IBM z Systems 8 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server - TUS 8.6 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 9.2 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.6 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for ARM 64 8 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for x86_64 8 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.6 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates 9.2 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time for NFV 8 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server - AUS 9.2 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for ARM 64 8 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server for ARM 64 - 4 years of updates 9.2 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 9.2 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.2 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for x86_64 8 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time 8 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for Power, little endian 8 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.2 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates 9.2 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2023-52471",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52471"
},
{
"name": "CVE-2024-26601",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26601"
},
{
"name": "CVE-2024-36889",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36889"
},
{
"name": "CVE-2024-35810",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35810"
},
{
"name": "CVE-2023-52834",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52834"
},
{
"name": "CVE-2024-38627",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38627"
},
{
"name": "CVE-2023-52622",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52622"
},
{
"name": "CVE-2024-38555",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38555"
},
{
"name": "CVE-2024-36921",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36921"
},
{
"name": "CVE-2024-26614",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26614"
},
{
"name": "CVE-2023-52762",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52762"
},
{
"name": "CVE-2024-27030",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27030"
},
{
"name": "CVE-2024-36904",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36904"
},
{
"name": "CVE-2023-52845",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52845"
},
{
"name": "CVE-2024-27010",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27010"
},
{
"name": "CVE-2024-35912",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35912"
},
{
"name": "CVE-2024-25739",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-25739"
},
{
"name": "CVE-2021-47304",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47304"
},
{
"name": "CVE-2024-35807",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35807"
},
{
"name": "CVE-2022-48632",
"url": "https://www.cve.org/CVERecord?id=CVE-2022-48632"
},
{
"name": "CVE-2024-26586",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26586"
},
{
"name": "CVE-2024-26961",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26961"
},
{
"name": "CVE-2024-35876",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35876"
},
{
"name": "CVE-2024-38384",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38384"
},
{
"name": "CVE-2021-47284",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47284"
},
{
"name": "CVE-2024-36945",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36945"
},
{
"name": "CVE-2023-52653",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52653"
},
{
"name": "CVE-2023-52756",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52756"
},
{
"name": "CVE-2021-46939",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-46939"
},
{
"name": "CVE-2022-48743",
"url": "https://www.cve.org/CVERecord?id=CVE-2022-48743"
},
{
"name": "CVE-2024-35824",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35824"
},
{
"name": "CVE-2024-26704",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26704"
},
{
"name": "CVE-2024-35925",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35925"
},
{
"name": "CVE-2024-36886",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36886"
},
{
"name": "CVE-2023-52803",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52803"
},
{
"name": "CVE-2024-21823",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-21823"
},
{
"name": "CVE-2023-28746",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-28746"
},
{
"name": "CVE-2023-52847",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52847"
},
{
"name": "CVE-2023-52635",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52635"
},
{
"name": "CVE-2023-52864",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52864"
},
{
"name": "CVE-2024-35897",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35897"
},
{
"name": "CVE-2024-38596",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38596"
},
{
"name": "CVE-2024-36929",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36929"
},
{
"name": "CVE-2024-26802",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26802"
},
{
"name": "CVE-2024-27062",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27062"
},
{
"name": "CVE-2024-26852",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26852"
},
{
"name": "CVE-2024-27395",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27395"
},
{
"name": "CVE-2024-26921",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26921"
},
{
"name": "CVE-2024-35952",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35952"
},
{
"name": "CVE-2024-35814",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35814"
},
{
"name": "CVE-2023-52764",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52764"
},
{
"name": "CVE-2024-26698",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26698"
},
{
"name": "CVE-2024-26686",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26686"
},
{
"name": "CVE-2024-35946",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35946"
},
{
"name": "CVE-2024-36020",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36020"
},
{
"name": "CVE-2024-35962",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35962"
},
{
"name": "CVE-2024-36917",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36917"
},
{
"name": "CVE-2023-52784",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52784"
},
{
"name": "CVE-2021-47461",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47461"
},
{
"name": "CVE-2024-26669",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26669"
},
{
"name": "CVE-2024-26940",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26940"
},
{
"name": "CVE-2024-35937",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35937"
},
{
"name": "CVE-2024-36025",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36025"
},
{
"name": "CVE-2024-26773",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26773"
},
{
"name": "CVE-2024-36017",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36017"
},
{
"name": "CVE-2024-27434",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27434"
},
{
"name": "CVE-2024-40974",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-40974"
},
{
"name": "CVE-2024-35924",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35924"
},
{
"name": "CVE-2023-52775",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52775"
},
{
"name": "CVE-2024-36960",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36960"
},
{
"name": "CVE-2023-52486",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52486"
},
{
"name": "CVE-2023-52619",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52619"
},
{
"name": "CVE-2023-52796",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52796"
},
{
"name": "CVE-2024-36286",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36286"
},
{
"name": "CVE-2021-47579",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47579"
},
{
"name": "CVE-2024-39502",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-39502"
},
{
"name": "CVE-2024-27065",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27065"
},
{
"name": "CVE-2024-27388",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27388"
},
{
"name": "CVE-2024-36005",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36005"
},
{
"name": "CVE-2024-36905",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36905"
},
{
"name": "CVE-2024-35893",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35893"
},
{
"name": "CVE-2021-47373",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47373"
},
{
"name": "CVE-2024-36270",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36270"
},
{
"name": "CVE-2023-52469",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52469"
},
{
"name": "CVE-2024-26740",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26740"
},
{
"name": "CVE-2021-47468",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47468"
},
{
"name": "CVE-2023-52809",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52809"
},
{
"name": "CVE-2023-52451",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52451"
},
{
"name": "CVE-2024-39472",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-39472"
},
{
"name": "CVE-2024-35790",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35790"
},
{
"name": "CVE-2024-33621",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-33621"
},
{
"name": "CVE-2024-36978",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36978"
},
{
"name": "CVE-2022-48637",
"url": "https://www.cve.org/CVERecord?id=CVE-2022-48637"
},
{
"name": "CVE-2024-35947",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35947"
},
{
"name": "CVE-2024-36927",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36927"
},
{
"name": "CVE-2024-26947",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26947"
},
{
"name": "CVE-2024-26826",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26826"
},
{
"name": "CVE-2024-35847",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35847"
},
{
"name": "CVE-2024-35896",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35896"
},
{
"name": "CVE-2024-26733",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26733"
},
{
"name": "CVE-2024-39487",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-39487"
},
{
"name": "CVE-2024-26837",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26837"
},
{
"name": "CVE-2024-35885",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35885"
},
{
"name": "CVE-2024-31076",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-31076"
},
{
"name": "CVE-2021-47624",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47624"
},
{
"name": "CVE-2024-35910",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35910"
},
{
"name": "CVE-2022-48757",
"url": "https://www.cve.org/CVERecord?id=CVE-2022-48757"
},
{
"name": "CVE-2024-36971",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36971"
},
{
"name": "CVE-2024-26840",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26840"
},
{
"name": "CVE-2024-38663",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38663"
},
{
"name": "CVE-2023-52832",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52832"
},
{
"name": "CVE-2023-52662",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52662"
},
{
"name": "CVE-2023-52730",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52730"
},
{
"name": "CVE-2024-36941",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36941"
},
{
"name": "CVE-2024-36896",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36896"
},
{
"name": "CVE-2024-26958",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26958"
},
{
"name": "CVE-2024-26908",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26908"
},
{
"name": "CVE-2024-26960",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26960"
},
{
"name": "CVE-2024-36489",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36489"
},
{
"name": "CVE-2024-38575",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38575"
},
{
"name": "CVE-2023-52679",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52679"
},
{
"name": "CVE-2021-47018",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47018"
},
{
"name": "CVE-2024-26640",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26640"
},
{
"name": "CVE-2024-35899",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35899"
},
{
"name": "CVE-2024-35823",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35823"
},
{
"name": "CVE-2023-52458",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52458"
},
{
"name": "CVE-2024-27020",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27020"
},
{
"name": "CVE-2023-52658",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52658"
},
{
"name": "CVE-2024-26737",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26737"
},
{
"name": "CVE-2024-38573",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38573"
},
{
"name": "CVE-2021-47408",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47408"
},
{
"name": "CVE-2024-39476",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-39476"
},
{
"name": "CVE-2024-35938",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35938"
},
{
"name": "CVE-2024-27019",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27019"
},
{
"name": "CVE-2024-26843",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26843"
},
{
"name": "CVE-2022-48747",
"url": "https://www.cve.org/CVERecord?id=CVE-2022-48747"
},
{
"name": "CVE-2024-36950",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36950"
},
{
"name": "CVE-2024-40927",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-40927"
},
{
"name": "CVE-2021-47491",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47491"
},
{
"name": "CVE-2023-52885",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52885"
},
{
"name": "CVE-2024-36016",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36016"
},
{
"name": "CVE-2023-52623",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52623"
},
{
"name": "CVE-2024-39276",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-39276"
},
{
"name": "CVE-2024-36940",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36940"
},
{
"name": "CVE-2023-52811",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52811"
},
{
"name": "CVE-2024-35801",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35801"
},
{
"name": "CVE-2024-35930",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35930"
},
{
"name": "CVE-2024-26660",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26660"
},
{
"name": "CVE-2024-36010",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36010"
},
{
"name": "CVE-2024-26878",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26878"
},
{
"name": "CVE-2024-35900",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35900"
},
{
"name": "CVE-2024-38598",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38598"
},
{
"name": "CVE-2021-47548",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47548"
},
{
"name": "CVE-2024-26853",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26853"
},
{
"name": "CVE-2021-47393",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47393"
},
{
"name": "CVE-2024-2201",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-2201"
},
{
"name": "CVE-2023-52777",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52777"
},
{
"name": "CVE-2024-35789",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35789"
},
{
"name": "CVE-2024-36979",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36979"
},
{
"name": "CVE-2024-36006",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36006"
},
{
"name": "CVE-2023-52463",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52463"
},
{
"name": "CVE-2024-26925",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26925"
},
{
"name": "CVE-2024-26870",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26870"
},
{
"name": "CVE-2024-26930",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26930"
},
{
"name": "CVE-2024-36954",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36954"
},
{
"name": "CVE-2024-36933",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36933"
},
{
"name": "CVE-2024-26810",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26810"
},
{
"name": "CVE-2023-52530",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52530"
},
{
"name": "CVE-2024-26772",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26772"
},
{
"name": "CVE-2024-36000",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36000"
},
{
"name": "CVE-2023-52648",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52648"
},
{
"name": "CVE-2023-52791",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52791"
},
{
"name": "CVE-2024-38538",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38538"
},
{
"name": "CVE-2023-52707",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52707"
},
{
"name": "CVE-2024-27025",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27025"
},
{
"name": "CVE-2024-27011",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27011"
},
{
"name": "CVE-2021-47257",
"url": "https://www.cve.org/CVERecord?id=CVE-2021-47257"
},
{
"name": "CVE-2024-38615",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-38615"
}
],
"initial_release_date": "2024-08-09T00:00:00",
"last_revision_date": "2024-08-09T00:00:00",
"links": [],
"reference": "CERTFR-2024-AVI-0668",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2024-08-09T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans le noyau Linux de Red Hat. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une \u00e9l\u00e9vation de privil\u00e8ges et un d\u00e9ni de service \u00e0 distance.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans le noyau Linux de Red Hat",
"vendor_advisories": [
{
"published_at": "2024-08-08",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2024:5101",
"url": "https://access.redhat.com/errata/RHSA-2024:5101"
},
{
"published_at": "2024-08-07",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2024:5066",
"url": "https://access.redhat.com/errata/RHSA-2024:5066"
},
{
"published_at": "2024-08-07",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2024:5067",
"url": "https://access.redhat.com/errata/RHSA-2024:5067"
},
{
"published_at": "2024-08-07",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2024:5065",
"url": "https://access.redhat.com/errata/RHSA-2024:5065"
},
{
"published_at": "2024-08-08",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2024:5102",
"url": "https://access.redhat.com/errata/RHSA-2024:5102"
}
]
}
CERTFR-2025-AVI-0153
Vulnerability from certfr_avis - Published: 2025-02-21 - Updated: 2025-02-21
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données, un contournement de la politique de sécurité et un déni de service.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Vendor | Product | Description | ||
|---|---|---|---|---|
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 9 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Power, little endian 9 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le | ||
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates 9.4 x86_64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 9.4 aarch64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.4 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4 aarch64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux Server - AUS 9.4 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4 s390x | ||
| Red Hat | N/A | Red Hat Enterprise Linux for ARM 64 9 aarch64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time 9 x86_64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.4 ppc64le | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for Power, little endian 9 ppc64le | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 9.4 s390x | ||
| Red Hat | N/A | Red Hat Enterprise Linux for IBM z Systems 9 s390x | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for x86_64 9 x86_64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates 9.4 x86_64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for ARM 64 9 aarch64 | ||
| Red Hat | N/A | Red Hat CodeReady Linux Builder for IBM z Systems 9 s390x | ||
| Red Hat | N/A | Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64 | ||
| Red Hat | N/A | Red Hat Enterprise Linux for Real Time for NFV 9 x86_64 |
| Title | Publication Time | Tags | ||||||
|---|---|---|---|---|---|---|---|---|
|
||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Red Hat Enterprise Linux for x86_64 9 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Power, little endian 9 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates 9.4 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 9.4 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.4 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux Server - AUS 9.4 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for ARM 64 9 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time 9 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.4 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for Power, little endian 9 ppc64le",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 9.4 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for IBM z Systems 9 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for x86_64 9 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates 9.4 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for ARM 64 9 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat CodeReady Linux Builder for IBM z Systems 9 s390x",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
},
{
"description": "Red Hat Enterprise Linux for Real Time for NFV 9 x86_64",
"product": {
"name": "N/A",
"vendor": {
"name": "Red Hat",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2024-50142",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-50142"
},
{
"name": "CVE-2024-35876",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35876"
},
{
"name": "CVE-2024-50275",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-50275"
},
{
"name": "CVE-2024-35824",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-35824"
},
{
"name": "CVE-2024-27012",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27012"
},
{
"name": "CVE-2024-23307",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-23307"
},
{
"name": "CVE-2024-53113",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-53113"
},
{
"name": "CVE-2024-27017",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27017"
},
{
"name": "CVE-2024-46695",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-46695"
},
{
"name": "CVE-2024-26960",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26960"
},
{
"name": "CVE-2023-52679",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52679"
},
{
"name": "CVE-2024-50256",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-50256"
},
{
"name": "CVE-2023-52490",
"url": "https://www.cve.org/CVERecord?id=CVE-2023-52490"
},
{
"name": "CVE-2024-36954",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-36954"
},
{
"name": "CVE-2024-50110",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-50110"
},
{
"name": "CVE-2024-27011",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-27011"
},
{
"name": "CVE-2024-26924",
"url": "https://www.cve.org/CVERecord?id=CVE-2024-26924"
}
],
"initial_release_date": "2025-02-21T00:00:00",
"last_revision_date": "2025-02-21T00:00:00",
"links": [],
"reference": "CERTFR-2025-AVI-0153",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2025-02-21T00:00:00.000000"
}
],
"risks": [
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
},
{
"description": "D\u00e9ni de service"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans le noyau Linux de Red Hat. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es, un contournement de la politique de s\u00e9curit\u00e9 et un d\u00e9ni de service.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans le noyau Linux de Red Hat",
"vendor_advisories": [
{
"published_at": "2025-02-19",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2025:1659",
"url": "https://access.redhat.com/errata/RHSA-2025:1659"
},
{
"published_at": "2025-02-19",
"title": "Bulletin de s\u00e9curit\u00e9 Red Hat RHSA-2025:1658",
"url": "https://access.redhat.com/errata/RHSA-2025:1658"
}
]
}
Sightings
| Author | Source | Type | Date |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.