| CVE | Package | Severity | Title | Installed | Fixed | Service |
|---|---|---|---|---|---|---|
| CVE-2023-25775 | linux-libc-dev | CRITICAL | kernel: irdma: Improper access control | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-45853 | zlib1g | CRITICAL | zlib: integer overflow and resultant heap-based buffer overf | 1:1.2.13.dfsg-1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2023-47248 | pyarrow | CRITICAL | PyArrow: Arbitrary code execution when loading a malicious d | 12.0.1 | 14.0.1 | dagster |
| CVE-2024-37371 | libgssapi-krb5-2 | CRITICAL | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-37371 | libk5crypto3 | CRITICAL | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-37371 | libkrb5-3 | CRITICAL | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-37371 | libkrb5support0 | CRITICAL | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-45491 | libexpat1 | CRITICAL | libexpat: Integer Overflow or Wraparound | 2.5.0-1 | 2.5.0-1+deb12u1 | dagster |
| CVE-2024-45492 | libexpat1 | CRITICAL | libexpat: integer overflow | 2.5.0-1 | 2.5.0-1+deb12u1 | dagster |
| CVE-2024-47685 | linux-libc-dev | CRITICAL | kernel: netfilter: nf_reject_ipv6: fix nf_reject_ip6_tcphdr_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2025-58367 | deepdiff | CRITICAL | DeepDiff is a project focused on Deep Difference and search | 7.0.1 | 8.6.1 | dagster |
| CVE-2025-68121 | stdlib | CRITICAL | crypto/tls: crypto/tls: Incorrect certificate validation dur | v1.22.4 | 1.24.13, 1.25.7, 1.26.0-rc.3 | dagster |
| CVE-2025-6965 | libsqlite3-0 | CRITICAL | sqlite: Integer Truncation in SQLite | 3.40.1-2 | 3.40.1-2+deb12u2 | dagster |
| CVE-2025-7458 | libsqlite3-0 | CRITICAL | sqlite: SQLite integer overflow | 3.40.1-2 | no fix | dagster |
| CVE-2026-23112 | linux-libc-dev | CRITICAL | kernel: nvmet-tcp: add bounds checks in nvmet_tcp_build_pdu_ | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-31789 | libssl3t64 | CRITICAL | openssl: OpenSSL: Heap buffer overflow on 32-bit systems fro | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-31789 | openssl | CRITICAL | openssl: OpenSSL: Heap buffer overflow on 32-bit systems fro | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-31789 | openssl-provider-legacy | CRITICAL | openssl: OpenSSL: Heap buffer overflow on 32-bit systems fro | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2013-7445 | linux-libc-dev | HIGH | kernel: memory exhaustion via crafted Graphics Execution Man | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-19449 | linux-libc-dev | HIGH | kernel: mounting a crafted f2fs filesystem image can lead to | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-19814 | linux-libc-dev | HIGH | kernel: out-of-bounds write in __remove_dirty_segment in fs/ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2021-3847 | linux-libc-dev | HIGH | kernel: low-privileged user privileges escalation | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2021-3864 | linux-libc-dev | HIGH | kernel: descendant's dumpable setting with certain SUID bina | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-1989 | linux-libc-dev | HIGH | kernel: Use after free bug in btsdio_remove due to race cond | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-2176 | linux-libc-dev | HIGH | kernel: Slab-out-of-bound read in compare_netdev_and_ip | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-2953 | libldap-2.5-0 | HIGH | openldap: null pointer dereference in ber_memalloc_x funct | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2023-2953 | libldap-common | HIGH | openldap: null pointer dereference in ber_memalloc_x funct | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2023-34319 | linux-libc-dev | HIGH | xen: buffer overrun in netback due to unusual packet (XSA-43 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-35827 | linux-libc-dev | HIGH | kernel: ravb: race condition leading to use-after-free in ra | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-3611 | linux-libc-dev | HIGH | kernel: net/sched: sch_qfq component can be exploited if in | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-3776 | linux-libc-dev | HIGH | kernel: net/sched: cls_fw component can be exploited as resu | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-3777 | linux-libc-dev | HIGH | kernel: use-after-free in netfilter: nf_tables | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-37920 | certifi | HIGH | python-certifi: Removal of e-Tugra root certificate | 2023.5.7 | 2023.7.22 | dagster |
| CVE-2023-3867 | linux-libc-dev | HIGH | kernel: Out of bounds read in smb2_sess_setup | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-39176 | linux-libc-dev | HIGH | kernel: ksmbd: Transform Header Out-Of-Bounds Read Informati | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-39179 | linux-libc-dev | HIGH | kernel: ksmbd: Read Request Out-Of-Bounds Read Information D | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-39180 | linux-libc-dev | HIGH | kernel: ksmbd: Read Request Memory Leak Denial-of-Service Vu | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-39197 | linux-libc-dev | HIGH | kernel: DCCP: conntrack out-of-bounds read in nf_conntrack_d | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4004 | linux-libc-dev | HIGH | kernel: netfilter: use-after-free due to improper element re | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4015 | linux-libc-dev | HIGH | kernel: use after free in nft_immediate_deactivate | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-40283 | linux-libc-dev | HIGH | kernel: use-after-free in l2cap_sock_release in net/bluetoot | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4147 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables_newrule when adding a rule with | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4206 | linux-libc-dev | HIGH | kernel: net/sched: Use-after-free vulnerabilities in the net | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4207 | linux-libc-dev | HIGH | kernel: net/sched: Use-after-free vulnerabilities in the net | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4208 | linux-libc-dev | HIGH | kernel: net/sched: Use-after-free vulnerabilities in the net | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4244 | linux-libc-dev | HIGH | kernel: Use-after-free in nft_verdict_dump due to a race bet | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-42753 | linux-libc-dev | HIGH | kernel: netfilter: potential slab-out-of-bound access due to | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-44466 | linux-libc-dev | HIGH | kernel: buffer overflow in ceph file net/ceph/messenger_v2.c | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4458 | linux-libc-dev | HIGH | kernel: ksmbd: smb2_open out-of-bounds read information disc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-45871 | linux-libc-dev | HIGH | kernel: IGB driver inadequate buffer size for frames larger | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-4622 | linux-libc-dev | HIGH | kernel: use after free in unix_stream_sendpage | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4623 | linux-libc-dev | HIGH | kernel: net/sched: sch_hfsc UAF | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-46813 | linux-libc-dev | HIGH | kernel: SEV-ES local priv escalation | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-46838 | linux-libc-dev | HIGH | Transmit requests in Xen's virtual network protocol can cons | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-4911 | libc-bin | HIGH | glibc: buffer overflow in ld.so leading to privilege escalat | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4911 | libc-dev-bin | HIGH | glibc: buffer overflow in ld.so leading to privilege escalat | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4911 | libc6 | HIGH | glibc: buffer overflow in ld.so leading to privilege escalat | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4911 | libc6-dev | HIGH | glibc: buffer overflow in ld.so leading to privilege escalat | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4921 | linux-libc-dev | HIGH | kernel: use-after-free in sch_qfq network scheduler | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-50387 | libsystemd0 | HIGH | bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator | 252.12-1~deb12u1 | 252.23-1~deb12u1 | dagster |
| CVE-2023-50387 | libudev1 | HIGH | bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator | 252.12-1~deb12u1 | 252.23-1~deb12u1 | dagster |
| CVE-2023-50782 | cryptography | HIGH | python-cryptography: Bleichenbacher timing oracle attack aga | 41.0.5 | 42.0.0 | dagster |
| CVE-2023-50868 | libsystemd0 | HIGH | bind9: Preparing an NSEC3 closest encloser proof can exhaust | 252.12-1~deb12u1 | 252.23-1~deb12u1 | dagster |
| CVE-2023-50868 | libudev1 | HIGH | bind9: Preparing an NSEC3 closest encloser proof can exhaust | 252.12-1~deb12u1 | 252.23-1~deb12u1 | dagster |
| CVE-2023-51042 | linux-libc-dev | HIGH | kernel: use-after-free in amdgpu_cs_wait_all_fences in drive | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-51043 | linux-libc-dev | HIGH | kernel: use-after-free during a race condition between a non | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-51779 | linux-libc-dev | HIGH | kernel: bluetooth: bt_sock_ioctl race condition leads to use | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-5178 | linux-libc-dev | HIGH | kernel: use after free in nvmet_tcp_free_crypto in NVMe | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-51780 | linux-libc-dev | HIGH | kernel: use-after-free in net/atm/ioctl.c | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-51781 | linux-libc-dev | HIGH | kernel: use-after-free in net/appletalk/ddp.c | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-51782 | linux-libc-dev | HIGH | An issue was discovered in the Linux kernel before 6.6.8. ro | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-52340 | linux-libc-dev | HIGH | kernel: ICMPv6 “Packet Too Big” packets force a DoS of the L | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52425 | libexpat1 | HIGH | expat: parsing large tokens can trigger a denial of service | 2.5.0-1 | 2.5.0-1+deb12u2 | dagster |
| CVE-2023-52434 | linux-libc-dev | HIGH | kernel: smb: client: fix potential OOBs in smb2_parse_contex | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52436 | linux-libc-dev | HIGH | kernel: f2fs: explicitly null-terminate the xattr list | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52438 | linux-libc-dev | HIGH | kernel: binder: fix use-after-free in shinker's callback | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52439 | linux-libc-dev | HIGH | kernel: uio: Fix use-after-free in uio_open | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52440 | linux-libc-dev | HIGH | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-52441 | linux-libc-dev | HIGH | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-52444 | linux-libc-dev | HIGH | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52445 | linux-libc-dev | HIGH | kernel: pvrusb2: fix use after free on context disconnection | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52451 | linux-libc-dev | HIGH | kernel: powerpc: Fix access beyond end of drmem array | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52452 | linux-libc-dev | HIGH | kernel: bpf: Fix accesses to uninit stack slots | 6.1.38-4 | no fix | dagster |
| CVE-2023-52457 | linux-libc-dev | HIGH | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52464 | linux-libc-dev | HIGH | kernel: EDAC/thunderx: Incorrect buffer size in drivers/edac | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52469 | linux-libc-dev | HIGH | kernel: use-after-free in kv_parse_power_table | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52475 | linux-libc-dev | HIGH | kernel: use-after-free in powermate_config_complete | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52480 | linux-libc-dev | HIGH | kernel: ksmbd: fix race condition between session lookup and | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52482 | linux-libc-dev | HIGH | kernel: x86/srso: Add SRSO mitigation for Hygon processors | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52483 | linux-libc-dev | HIGH | kernel: mctp: perform route lookups under a RCU read-side lo | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52491 | linux-libc-dev | HIGH | kernel: media: mtk-jpeg: Fix use after free bug due to error | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52494 | linux-libc-dev | HIGH | kernel: bus: mhi: host: Add alignment check for event ring r | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52501 | linux-libc-dev | HIGH | kernel: ring-buffer: Do not attempt to read past "commit" | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52502 | linux-libc-dev | HIGH | kernel: net: nfc: fix races in nfc_llcp_sock_get() and nfc_l | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52503 | linux-libc-dev | HIGH | kernel: tee: amdtee: fix use-after-free vulnerability in amd | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52504 | linux-libc-dev | HIGH | kernel: x86/alternatives: Disable KASAN in apply_alternative | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52507 | linux-libc-dev | HIGH | kernel: nfc: nci: assert requested protocol is valid | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52509 | linux-libc-dev | HIGH | kernel: ravb: Fix use-after-free issue in ravb_tx_timeout_wo | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52510 | linux-libc-dev | HIGH | kernel: ieee802154: ca8210: Fix a potential UAF in ca8210_pr | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52515 | linux-libc-dev | HIGH | kernel: RDMA/srp: Do not call scsi_done() from srp_abort() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52517 | linux-libc-dev | HIGH | kernel: spi: sun6i: fix race between DMA RX transfer complet | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52519 | linux-libc-dev | HIGH | kernel: HID: intel-ish-hid: ipc: Disable and reenable ACPI G | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52524 | linux-libc-dev | HIGH | kernel: net: nfc: llcp: Add lock when modifying device list | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52525 | linux-libc-dev | HIGH | kernel: wifi: mwifiex: Fix oob check condition in mwifiex_pr | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52530 | linux-libc-dev | HIGH | kernel: wifi: mac80211: fix potential key use-after-free | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52531 | linux-libc-dev | HIGH | kernel: wifi: iwlwifi: mvm: Fix a memory corruption issue | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52565 | linux-libc-dev | HIGH | kernel: media: uvcvideo: out-of-bounds read in uvc_query_v4l | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52572 | linux-libc-dev | HIGH | kernel: cifs: use-after-free in cifs_demultiplex_thread() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52578 | linux-libc-dev | HIGH | kernel: net: bridge: data races indata-races in br_handle_fr | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52586 | linux-libc-dev | HIGH | kernel: drm/msm/dpu: Add mutex lock in control vblank irq | 6.1.38-4 | no fix | dagster |
| CVE-2023-52588 | linux-libc-dev | HIGH | kernel: f2fs: fix to tag gcing flag on page during block mig | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52594 | linux-libc-dev | HIGH | kernel: wifi: ath9k: Fix potential array-index-out-of-bounds | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52598 | linux-libc-dev | HIGH | kernel: s390/ptrace: handle setting of fpc register correctl | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52599 | linux-libc-dev | HIGH | kernel: jfs: fix array-index-out-of-bounds in diNewExt | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52600 | linux-libc-dev | HIGH | kernel: jfs: fix uaf in jfs_evict_inode | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52603 | linux-libc-dev | HIGH | kernel: UBSAN: array-index-out-of-bounds in dtSplitRoot | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52604 | linux-libc-dev | HIGH | kernel: FS:JFS:UBSAN: array-index-out-of-bounds in dbAdjTree | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52612 | linux-libc-dev | HIGH | kernel: crypto: scomp - fix req->dst buffer overflow | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52614 | linux-libc-dev | HIGH | kernel: PM / devfreq: Fix buffer overflow in trans_stat_show | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52621 | linux-libc-dev | HIGH | kernel: bpf: Check rcu_read_lock_trace_held() before calling | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52624 | linux-libc-dev | HIGH | kernel: drm/amd/display: Wake DMCUB before executing GPINT c | 6.1.38-4 | no fix | dagster |
| CVE-2023-52628 | linux-libc-dev | HIGH | kernel: netfilter: nftables: exthdr: fix 4-byte stack OOB wr | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-52637 | linux-libc-dev | HIGH | kernel: can: j1939: Fix UAF in j1939_sk_match_filter during | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52640 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Fix oob in ntfs_listxattr | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52642 | linux-libc-dev | HIGH | kernel: media: rc: bpf attach/detach requires write permissi | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52664 | linux-libc-dev | HIGH | kernel: net: atlantic: eliminate double free in error handli | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52667 | linux-libc-dev | HIGH | kernel: net/mlx5e: fix a potential double-free in fs_any_cre | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52669 | linux-libc-dev | HIGH | kernel: crypto: s390/aes - Fix buffer overread in CTR mode | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52679 | linux-libc-dev | HIGH | kernel: of: Fix double free in of_parse_phandle_with_args_ma | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52682 | linux-libc-dev | HIGH | kernel: f2fs: fix to wait on block writeback for post_read c | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52691 | linux-libc-dev | HIGH | kernel: drm/amd/pm: fix a double-free in si_dpm_init | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52748 | linux-libc-dev | HIGH | kernel: f2fs: avoid format-overflow warning | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52751 | linux-libc-dev | HIGH | kernel: smb: client: fix use-after-free in smb2_query_info_c | 6.1.38-4 | no fix | dagster |
| CVE-2023-52752 | linux-libc-dev | HIGH | kernel: smb: client: fix use-after-free bug in cifs_debug_da | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52755 | linux-libc-dev | HIGH | kernel: ksmbd: fix slab out of bounds write in smb_inherit_d | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52757 | linux-libc-dev | HIGH | kernel: smb: client: fix potential deadlock when releasing m | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52764 | linux-libc-dev | HIGH | kernel: media: gspca: cpia1: shift-out-of-bounds in set_flic | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52766 | linux-libc-dev | HIGH | kernel: i3c: mipi-i3c-hci: Fix out of bounds access in hci_d | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52772 | linux-libc-dev | HIGH | kernel: af_unix: fix use-after-free in unix_stream_read_acto | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52775 | linux-libc-dev | HIGH | kernel: net/smc: avoid data corruption caused by decline | 6.1.38-4 | 6.1.66-1 | dagster |
| CVE-2023-52777 | linux-libc-dev | HIGH | kernel: wifi: ath11k: fix gtk offload status event locking | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52795 | linux-libc-dev | HIGH | kernel: vhost-vdpa: fix use after free in vhost_vdpa_probe() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52796 | linux-libc-dev | HIGH | kernel: ipvlan: add ipvlan_route_v6_outbound() helper | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52799 | linux-libc-dev | HIGH | kernel: jfs: fix array-index-out-of-bounds in dbFindLeaf | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52804 | linux-libc-dev | HIGH | kernel: fs/jfs: Add validity check for db_maxag and db_agpre | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52805 | linux-libc-dev | HIGH | kernel: jfs: fix array-index-out-of-bounds in diAlloc | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52807 | linux-libc-dev | HIGH | kernel: net: hns3: fix out-of-bounds access may occur when c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52812 | linux-libc-dev | HIGH | kernel: drm/amd: check num of link levels when update pcie p | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2023-52816 | linux-libc-dev | HIGH | kernel: drm/amdkfd: Fix shift out-of-bounds issue | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52818 | linux-libc-dev | HIGH | kernel: drm/amd: Fix UBSAN array-index-out-of-bounds for SMU | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52835 | linux-libc-dev | HIGH | kernel: perf/core: Bail out early if the request AUX area is | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52836 | linux-libc-dev | HIGH | kernel: locking/ww_mutex/test: Fix potential workqueue corru | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52837 | linux-libc-dev | HIGH | kernel: nbd: fix uaf in nbd_open | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52840 | linux-libc-dev | HIGH | kernel: Input: synaptics-rmi4 - fix use after free in rmi_un | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52842 | linux-libc-dev | HIGH | kernel: virtio/vsock: Fix uninit-value in virtio_transport_r | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52846 | linux-libc-dev | HIGH | kernel: hsr: Prevent use after free in prp_create_tagged_fra | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52847 | linux-libc-dev | HIGH | kernel: media: bttv: fix use after free error due to btv->ti | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52851 | linux-libc-dev | HIGH | kernel: IB/mlx5: Fix init stage error handling to avoid doub | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52852 | linux-libc-dev | HIGH | kernel: f2fs: compress: fix to avoid use-after-free on dic | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52854 | linux-libc-dev | HIGH | kernel: padata: Fix refcnt handling in padata_free_shell() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52859 | linux-libc-dev | HIGH | kernel: perf: hisi: Fix use-after-free when register pmu fai | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52864 | linux-libc-dev | HIGH | kernel: platform/x86: wmi: Fix opening of char device | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52867 | linux-libc-dev | HIGH | kernel: drm/radeon: possible buffer overflow | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52868 | linux-libc-dev | HIGH | kernel: thermal: core: prevent potential string overflow | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52885 | linux-libc-dev | HIGH | kernel: SUNRPC: Fix UAF in svc_tcp_listen_data_ready() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-52916 | linux-libc-dev | HIGH | kernel: media: aspeed: Fix memory overwrite if timing is 160 | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2023-52922 | linux-libc-dev | HIGH | kernel: can: bcm: Fix UAF in bcm_proc_show() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-52927 | linux-libc-dev | HIGH | kernel: netfilter: allow exp not to be removed in nf_ct_find | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2023-53034 | linux-libc-dev | HIGH | kernel: Linux kernel: Information disclosure and denial of s | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2023-53145 | linux-libc-dev | HIGH | kernel: Bluetooth: btsdio: fix use after free bug in btsdio_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53148 | linux-libc-dev | HIGH | kernel: igb: Fix igb_down hung on surprise removal | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53179 | linux-libc-dev | HIGH | kernel: netfilter: ipset: add the missing IP_SET_HASH_WITH_N | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53184 | linux-libc-dev | HIGH | kernel: arm64/sme: Set new vector length before reallocating | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53187 | linux-libc-dev | HIGH | kernel: btrfs: fix use-after-free of new block group that be | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53192 | linux-libc-dev | HIGH | kernel: Linux kernel: Out-of-bounds write in VXLAN due to in | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53194 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Add length check in indx_get_root | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-53205 | linux-libc-dev | HIGH | kernel: KVM: s390/diag: fix racy access of physical cpu numb | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53215 | linux-libc-dev | HIGH | kernel: sched/fair: Don't balance task to its current runnin | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53218 | linux-libc-dev | HIGH | kernel: rxrpc: Make it so that a waiting process can be abor | 6.1.38-4 | no fix | dagster |
| CVE-2023-53222 | linux-libc-dev | HIGH | kernel: jfs: jfs_dmap: Validate db_l2nbperpage while mountin | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53238 | linux-libc-dev | HIGH | kernel: phy: hisilicon: Fix an out of bounds check in hisi_i | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53252 | linux-libc-dev | HIGH | kernel: Bluetooth: use RCU for hci_conn_params and iterate s | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53257 | linux-libc-dev | HIGH | kernel: wifi: mac80211: check S1G action frame size | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53263 | linux-libc-dev | HIGH | kernel: drm/nouveau/disp: fix use-after-free in error handli | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53272 | linux-libc-dev | HIGH | kernel: net: ena: fix shift-out-of-bounds in exponential bac | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53286 | linux-libc-dev | HIGH | kernel: RDMA/mlx5: Return the firmware result upon destroyin | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53305 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: Fix use-after-free | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53311 | linux-libc-dev | HIGH | kernel: nilfs2: fix use-after-free of nilfs_root in dirtying | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53316 | linux-libc-dev | HIGH | kernel: drm/msm/dp: Free resources after unregistering them | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53321 | linux-libc-dev | HIGH | kernel: wifi: mac80211_hwsim: drop short frames | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53322 | linux-libc-dev | HIGH | kernel: scsi: qla2xxx: Wait for io return on terminate rport | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53331 | linux-libc-dev | HIGH | kernel: pstore/ram: Check start of empty przs during init | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53333 | linux-libc-dev | HIGH | kernel: netfilter: conntrack: dccp: copy entire header to st | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53338 | linux-libc-dev | HIGH | kernel: lwt: Fix return values of BPF xmit ops | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53357 | linux-libc-dev | HIGH | kernel: md/raid10: check slab-out-of-bounds in md_bitmap_get | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53363 | linux-libc-dev | HIGH | kernel: PCI: Fix use-after-free in pci_bus_release_domain_nr | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2023-53377 | linux-libc-dev | HIGH | kernel: cifs: prevent use-after-free by freeing the cfile la | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53386 | linux-libc-dev | HIGH | kernel: Bluetooth: Fix potential use-after-free when clear k | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53395 | linux-libc-dev | HIGH | kernel: ACPICA: Add AML_NO_OPERAND_RESOLVE flag to Timer | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53420 | linux-libc-dev | HIGH | kernel: ntfs: Fix panic about slab-out-of-bounds caused by n | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53426 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in xsk_diag due to u | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53432 | linux-libc-dev | HIGH | kernel: firewire: net: fix use after free in fwnet_finish_in | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53446 | linux-libc-dev | HIGH | kernel: PCI/ASPM: Disable ASPM on MFD function removal to av | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-5345 | linux-libc-dev | HIGH | kernel: use-after-free vulnerability in the smb client compo | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-53454 | linux-libc-dev | HIGH | kernel: HID: multitouch: Correct devm device reference for h | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53465 | linux-libc-dev | HIGH | kernel: soundwire: qcom: fix storing port config out-of-boun | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53479 | linux-libc-dev | HIGH | kernel: Linux kernel CXL driver: Use-after-free vulnerabilit | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53485 | linux-libc-dev | HIGH | kernel: fs: jfs: Fix UBSAN: array-index-out-of-bounds in dbA | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53486 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Enhance the attribute size check | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-53487 | linux-libc-dev | HIGH | kernel: powerpc/rtas_flash: allow user copy to flash block c | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53492 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables: do not ignore genmask when loo | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53495 | linux-libc-dev | HIGH | kernel: net: ethernet: mvpp2_main: fix possible OOB write in | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53500 | linux-libc-dev | HIGH | kernel: xfrm: fix slab-use-after-free in decode_session6 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53508 | linux-libc-dev | HIGH | kernel: ublk: fail to start device if queue setup is interru | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53510 | linux-libc-dev | HIGH | kernel: scsi: ufs: core: Fix handling of lrbp->cmd | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2023-53515 | linux-libc-dev | HIGH | kernel: virtio-mmio: don't break lifecycle of vm_dev | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53541 | linux-libc-dev | HIGH | kernel: mtd: rawnand: brcmnand: Fix potential out-of-bounds | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53543 | linux-libc-dev | HIGH | kernel: vdpa: Add max vqp attr to vdpa_nl_policy for nlattr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53552 | linux-libc-dev | HIGH | kernel: drm/i915: mark requests for GuC virtual engines to a | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53554 | linux-libc-dev | HIGH | kernel: staging: ks7010: potential buffer overflow in ks_wla | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53556 | linux-libc-dev | HIGH | kernel: Linux kernel iavf driver: Denial of Service via use- | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53559 | linux-libc-dev | HIGH | kernel: ip_vti: fix potential slab-use-after-free in decode_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53560 | linux-libc-dev | HIGH | kernel: tracing/histograms: Add histograms to hist_vars if t | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53570 | linux-libc-dev | HIGH | kernel: wifi: nl80211: fix integer overflow in nl80211_parse | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53572 | linux-libc-dev | HIGH | kernel: clk: imx: scu: use _safe list iterator to avoid a us | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53577 | linux-libc-dev | HIGH | kernel: bpf, cpumap: Make sure kthread is running before map | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53596 | linux-libc-dev | HIGH | kernel: drivers: base: Free devm resources when unregisterin | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53600 | linux-libc-dev | HIGH | kernel: tunnels: fix kasan splat when generating ipv4 pmtu e | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53613 | linux-libc-dev | HIGH | kernel: dax: Fix dax_mapping_release() use after free | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53616 | linux-libc-dev | HIGH | kernel: jfs: fix invalid free of JFS_IP(ipimap)->i_imap in d | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53619 | linux-libc-dev | HIGH | kernel: netfilter: conntrack: Avoid nf_ct_helper_hash uses a | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53622 | linux-libc-dev | HIGH | kernel: gfs2: Fix possible data races in gfs2_show_options() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53652 | linux-libc-dev | HIGH | kernel: vdpa: Add features attr to vdpa_nl_policy for nlattr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53659 | linux-libc-dev | HIGH | kernel: iavf: Fix out-of-bounds when setting channels on rem | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53668 | linux-libc-dev | HIGH | kernel: ring-buffer: Fix deadloop issue on reading trace_pip | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53673 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_event: call disconnect callback befor | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53676 | linux-libc-dev | HIGH | kernel: scsi: target: iscsi: Fix buffer overflow in lio_targ | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53752 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service via integer overflow | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53762 | linux-libc-dev | HIGH | kernel: Linux kernel Bluetooth: Denial of Service due to use | 6.1.38-4 | no fix | dagster |
| CVE-2023-53781 | linux-libc-dev | HIGH | kernel: smc: Fix use-after-free in tcp_write_timer_handler() | 6.1.38-4 | no fix | dagster |
| CVE-2023-53819 | linux-libc-dev | HIGH | kernel: amdgpu: validate offset_in_bo of drm_amdgpu_gem_va | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53821 | linux-libc-dev | HIGH | kernel: ip6_vti: fix slab-use-after-free in decode_session6 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54148 | linux-libc-dev | HIGH | kernel: net/mlx5e: Move representor neigh cleanup to profile | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54207 | linux-libc-dev | HIGH | kernel: HID: uclogic: Correct devm device reference for hidi | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54285 | linux-libc-dev | HIGH | kernel: iomap: Fix possible overflow condition in iomap_writ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2023-5633 | linux-libc-dev | HIGH | kernel: vmwgfx: reference count issue leads to use-after-fre | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-5717 | linux-libc-dev | HIGH | kernel: A heap out-of-bounds write when function perf_read_g | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-6111 | linux-libc-dev | HIGH | kernel: netfilter: use-after-free when removing catchall ele | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-6246 | libc-bin | HIGH | glibc: heap-based buffer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6246 | libc-dev-bin | HIGH | glibc: heap-based buffer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6246 | libc6 | HIGH | glibc: heap-based buffer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6246 | libc6-dev | HIGH | glibc: heap-based buffer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6270 | linux-libc-dev | HIGH | kernel: AoE: improper reference count leads to use-after-fre | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-6356 | linux-libc-dev | HIGH | kernel: NULL pointer dereference in nvmet_tcp_build_iovec | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-6531 | linux-libc-dev | HIGH | kernel: GC's deletion of an SKB races with unix_stream_read_ | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-6535 | linux-libc-dev | HIGH | kernel: NULL pointer dereference in nvmet_tcp_execute_reques | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-6536 | linux-libc-dev | HIGH | kernel: NULL pointer dereference in __nvmet_req_complete | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-6546 | linux-libc-dev | HIGH | kernel: GSM multiplexing race condition leads to privilege e | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-6606 | linux-libc-dev | HIGH | kernel: Out-Of-Bounds Read vulnerability in smbCalcSize | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-6779 | libc-bin | HIGH | glibc: off-by-one heap-based buffer overflow in __vsyslog_in | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6779 | libc-dev-bin | HIGH | glibc: off-by-one heap-based buffer overflow in __vsyslog_in | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6779 | libc6 | HIGH | glibc: off-by-one heap-based buffer overflow in __vsyslog_in | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6779 | libc6-dev | HIGH | glibc: off-by-one heap-based buffer overflow in __vsyslog_in | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6817 | linux-libc-dev | HIGH | kernel: inactive elements in nft_pipapo_walk | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-6931 | linux-libc-dev | HIGH | kernel: Out of boundary write in perf_read_group() as result | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-6932 | linux-libc-dev | HIGH | kernel: use-after-free in IPv4 IGMP | 6.1.38-4 | 6.1.66-1 | dagster |
| CVE-2023-7104 | libsqlite3-0 | HIGH | sqlite: heap-buffer-overflow at sessionfuzz | 3.40.1-2 | 3.40.1-2+deb12u1 | dagster |
| CVE-2024-0553 | libgnutls30 | HIGH | gnutls: incomplete fix for CVE-2023-5981 | 3.7.9-2 | 3.7.9-2+deb12u2 | dagster |
| CVE-2024-0565 | linux-libc-dev | HIGH | kernel: CIFS Filesystem Decryption Improper Input Validation | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2024-0567 | libgnutls30 | HIGH | gnutls: rejects certificate chain with distributed trust | 3.7.9-2 | 3.7.9-2+deb12u2 | dagster |
| CVE-2024-0646 | linux-libc-dev | HIGH | kernel: ktls overwrites readonly memory pages when using fun | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2024-0841 | linux-libc-dev | HIGH | kernel: hugetlbfs: Null pointer dereference in hugetlbfs_fil | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-1085 | linux-libc-dev | HIGH | kernel: nf_tables: use-after-free vulnerability in the nft_s | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-1086 | linux-libc-dev | HIGH | kernel: nf_tables: use-after-free vulnerability in the nft_v | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-21803 | linux-libc-dev | HIGH | kernel: bluetooth: use-after-free vulnerability in af_blueto | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-22705 | linux-libc-dev | HIGH | kernel: out-of-bounds access smb2_get_data_area_len | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-23307 | linux-libc-dev | HIGH | kernel: Integer Overflow in raid5_cache_count | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-23334 | aiohttp | HIGH | aiohttp: follow_symlinks directory traversal vulnerability | 3.8.5 | 3.9.2 | dagster |
| CVE-2024-25742 | linux-libc-dev | HIGH | hw: amd: Instruction raise #VC exception at exit | 6.1.38-4 | no fix | dagster |
| CVE-2024-25743 | linux-libc-dev | HIGH | hw: amd: Instruction raise #VC exception at exit | 6.1.38-4 | no fix | dagster |
| CVE-2024-25744 | linux-libc-dev | HIGH | kernel: untrusted VMM can trigger int80 syscall handling | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2024-26130 | cryptography | HIGH | python-cryptography: NULL pointer dereference with pkcs12.se | 41.0.5 | 42.0.4 | dagster |
| CVE-2024-26581 | linux-libc-dev | HIGH | kernel: nftables: nft_set_rbtree skip end interval element f | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26582 | linux-libc-dev | HIGH | kernel: tls: use-after-free with partial reads and async dec | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26588 | linux-libc-dev | HIGH | kernel: bpf: Prevent out-of-bounds memory access on LoongArc | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26589 | linux-libc-dev | HIGH | kernel: bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26592 | linux-libc-dev | HIGH | kernel: ksmbd: fix UAF issue in ksmbd_tcp_new_connection() | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26593 | linux-libc-dev | HIGH | kernel: i2c: i801: Fix block process call transactions | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26594 | linux-libc-dev | HIGH | kernel: ksmbd: validate mech token in session setup | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26597 | linux-libc-dev | HIGH | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26598 | linux-libc-dev | HIGH | kernel: kvm: Avoid potential UAF in LPI translation cache | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26599 | linux-libc-dev | HIGH | kernel: pwm: Fix out-of-bounds access in of_pwm_single_xlate | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26610 | linux-libc-dev | HIGH | kernel: wifi: iwlwifi: fix a memory corruption | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26620 | linux-libc-dev | HIGH | kernel: s390/vfio-ap: always filter entire AP matrix | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26622 | linux-libc-dev | HIGH | kernel: tomoyo: fix UAF write bug in tomoyo_write_control() | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26625 | linux-libc-dev | HIGH | kernel: llc: call sock_orphan() at release time | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26654 | linux-libc-dev | HIGH | kernel: ALSA: sh: aica: reorder cleanup operations to avoid | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26664 | linux-libc-dev | HIGH | kernel: hwmon: (coretemp) Fix out-of-bounds memory access | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26665 | linux-libc-dev | HIGH | kernel: tunnels: fix out of bounds access when building IPv6 | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26669 | linux-libc-dev | HIGH | kernel: net/sched: flower: Fix chain template offload | 6.1.38-4 | no fix | dagster |
| CVE-2024-26673 | linux-libc-dev | HIGH | kernel: netfilter: nft_ct: sanitize layer 3 and 4 protocol n | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26689 | linux-libc-dev | HIGH | kernel: ceph: prevent use-after-free in encode_cap_msg() | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26704 | linux-libc-dev | HIGH | kernel: ext4: fix double-free of blocks due to wrong extents | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26736 | linux-libc-dev | HIGH | kernel: afs: Increase buffer size in afs_update_volume_statu | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26739 | linux-libc-dev | HIGH | kernel: net/sched: act_mirred: don't override retval if we a | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2024-26742 | linux-libc-dev | HIGH | kernel: scsi: smartpqi: Fix disable_managed_interrupts | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26748 | linux-libc-dev | HIGH | kernel: usb: cdns3: fix memory double free when handle zero | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26749 | linux-libc-dev | HIGH | kernel: usb: cdns3: fixed memory use after free at cdns3_gad | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26753 | linux-libc-dev | HIGH | kernel: crypto: virtio/akcipher - Fix stack overflow on memc | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26754 | linux-libc-dev | HIGH | kernel: gtp: fix use-after-free and null-ptr-deref in gtp_ge | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26763 | linux-libc-dev | HIGH | kernel: dm-crypt: don't modify the data when using authentic | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26782 | linux-libc-dev | HIGH | kernel: mptcp: fix double-free on socket dismantle | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26791 | linux-libc-dev | HIGH | kernel: btrfs: dev-replace: properly validate device names | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26793 | linux-libc-dev | HIGH | kernel: gtp: fix use-after-free and null-ptr-deref in gtp_ne | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26800 | linux-libc-dev | HIGH | kernel: tls: fix use-after-free on failed backlog decryption | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26836 | linux-libc-dev | HIGH | kernel: platform/x86: think-lmi: Fix password opcode orderin | 6.1.38-4 | no fix | dagster |
| CVE-2024-26852 | linux-libc-dev | HIGH | kernel: net/ipv6: avoid possible UAF in ip6_route_mpath_noti | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26856 | linux-libc-dev | HIGH | kernel: net: sparx5: Fix use after free inside sparx5_del_ma | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26865 | linux-libc-dev | HIGH | kernel: rds: tcp: Fix use-after-free of net in reqsk_timer_h | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26872 | linux-libc-dev | HIGH | kernel: RDMA/srpt: Do not register event handler until srpt | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26882 | linux-libc-dev | HIGH | kernel: net: ip_tunnel: make sure to pull inner header in ip | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26883 | linux-libc-dev | HIGH | kernel: bpf: Fix stackmap overflow check on 32-bit arches | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26884 | linux-libc-dev | HIGH | kernel: bpf: Fix hashtab overflow check on 32-bit arches | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26885 | linux-libc-dev | HIGH | kernel: bpf: Fix DEVMAP_HASH overflow check on 32-bit arches | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26895 | linux-libc-dev | HIGH | kernel: wifi: wilc1000: prevent use-after-free on vif when c | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26898 | linux-libc-dev | HIGH | kernel: aoe: fix the potential use-after-free problem in aoe | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26907 | linux-libc-dev | HIGH | kernel: RDMA/mlx5: Fix fortify source warning while accessin | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26913 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix dcn35 8k30 Underflow/Corruption | 6.1.38-4 | no fix | dagster |
| CVE-2024-26914 | linux-libc-dev | HIGH | kernel: drm/amd/display: fix incorrect mpc_combine array siz | 6.1.38-4 | no fix | dagster |
| CVE-2024-26928 | linux-libc-dev | HIGH | kernel: smb: client: potential use-after-free in cifs_debug_ | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26933 | linux-libc-dev | HIGH | kernel: USB: core: Fix deadlock in port "disable" sy | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26934 | linux-libc-dev | HIGH | kernel: USB: core: Fix deadlock in usb_deauthorize_interface | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26936 | linux-libc-dev | HIGH | kernel: ksmbd: validate request buffer size in smb2_allocate | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26939 | linux-libc-dev | HIGH | kernel: drm/i915/vma: Fix UAF on destroy against retire race | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26944 | linux-libc-dev | HIGH | kernel: btrfs: zoned: fix use-after-free in do_zone_finish() | 6.1.38-4 | no fix | dagster |
| CVE-2024-26951 | linux-libc-dev | HIGH | kernel: wireguard: netlink: check for dangling peer via is_d | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26952 | linux-libc-dev | HIGH | kernel: ksmbd: fix potencial out-of-bounds when buffer offse | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-26954 | linux-libc-dev | HIGH | kernel: ksmbd: fix slab-out-of-bounds in smb_strndup_from_ut | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-26955 | linux-libc-dev | HIGH | kernel: nilfs2: prevent kernel bug at submit_bh_wbc() | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26956 | linux-libc-dev | HIGH | kernel: nilfs2: fix failure to detect DAT corruption in btre | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26957 | linux-libc-dev | HIGH | kernel: s390/zcrypt: fix reference counting on zcrypt card o | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26958 | linux-libc-dev | HIGH | kernel: nfs: fix UAF in direct writes | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26961 | linux-libc-dev | HIGH | kernel: mac802154: fix llsec key resources release in mac802 | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26965 | linux-libc-dev | HIGH | kernel: clk: qcom: mmcc-msm8974: fix terminating of frequenc | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26974 | linux-libc-dev | HIGH | kernel: crypto: qat - resolve race condition during AER reco | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26981 | linux-libc-dev | HIGH | kernel: nilfs2: fix OOB in nilfs_set_de_type | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26982 | linux-libc-dev | HIGH | kernel: Squashfs: check the inode number is not the invalid | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-26983 | linux-libc-dev | HIGH | kernel: bootconfig: use memblock_free_late to free xbc memor | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26988 | linux-libc-dev | HIGH | kernel: init/main.c: Fix potential static_command_line memor | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26989 | linux-libc-dev | HIGH | kernel: arm64: hibernate: Fix level3 translation fault in sw | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26996 | linux-libc-dev | HIGH | kernel: usb: gadget: f_ncm: Fix UAF ncm object at re-bind af | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27000 | linux-libc-dev | HIGH | kernel: serial: mxs-auart: add spinlock around changing cts | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27008 | linux-libc-dev | HIGH | kernel: drm: nv04: Fix out of bounds access | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27018 | linux-libc-dev | HIGH | kernel: netfilter: br_netfilter: skip conntrack input hook f | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27020 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables: Fix potential data-race in __n | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27022 | linux-libc-dev | HIGH | kernel: fork: defer linking file vma until vma is fully init | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27024 | linux-libc-dev | HIGH | kernel: net/rds: fix WARNING in rds_conn_connect_if_down | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27043 | linux-libc-dev | HIGH | kernel: media: edia: dvbdev: fix a use-after-free | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27045 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix a potential buffer overflow in | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27065 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables: do not compare internal table | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27075 | linux-libc-dev | HIGH | kernel: media: dvb-frontends: avoid stack overflow warnings | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27395 | linux-libc-dev | HIGH | kernel: net: openvswitch: Fix Use-After-Free in ovs_ct_exit | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27396 | linux-libc-dev | HIGH | kernel: net: gtp: Fix Use-After-Free in gtp_dellink | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27397 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables: use timestamp to check for set | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-27398 | linux-libc-dev | HIGH | kernel: Bluetooth: Fix use-after-free bugs caused by sco_soc | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-27401 | linux-libc-dev | HIGH | kernel: firewire: nosy: ensure user_length is taken into acc | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-2961 | libc-bin | HIGH | glibc: Out of bounds write in iconv may lead to remote code | 2.36-9+deb12u1 | 2.36-9+deb12u6 | dagster |
| CVE-2024-2961 | libc-dev-bin | HIGH | glibc: Out of bounds write in iconv may lead to remote code | 2.36-9+deb12u1 | 2.36-9+deb12u6 | dagster |
| CVE-2024-2961 | libc6 | HIGH | glibc: Out of bounds write in iconv may lead to remote code | 2.36-9+deb12u1 | 2.36-9+deb12u6 | dagster |
| CVE-2024-2961 | libc6-dev | HIGH | glibc: Out of bounds write in iconv may lead to remote code | 2.36-9+deb12u1 | 2.36-9+deb12u6 | dagster |
| CVE-2024-30251 | aiohttp | HIGH | aiohttp: DoS when trying to parse malformed POST requests | 3.8.5 | 3.9.4 | dagster |
| CVE-2024-33599 | libc-bin | HIGH | glibc: stack-based buffer overflow in netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33599 | libc-dev-bin | HIGH | glibc: stack-based buffer overflow in netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33599 | libc6 | HIGH | glibc: stack-based buffer overflow in netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33599 | libc6-dev | HIGH | glibc: stack-based buffer overflow in netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-34156 | stdlib | HIGH | encoding/gob: golang: Calling Decoder.Decode on a message wh | v1.22.4 | 1.22.7, 1.23.1 | dagster |
| CVE-2024-34777 | linux-libc-dev | HIGH | kernel: dma-mapping: benchmark: fix node id validation | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-35785 | linux-libc-dev | HIGH | kernel: tee: optee: Fix kernel panic caused by incorrect err | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35789 | linux-libc-dev | HIGH | kernel: wifi: mac80211: check/clear fast rx for non-4addr st | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35791 | linux-libc-dev | HIGH | kernel: KVM: SVM: Flush pages under kvm->lock to fix UAF | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35847 | linux-libc-dev | HIGH | kernel: irqchip/gic-v3-its: Prevent double free on error | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35849 | linux-libc-dev | HIGH | kernel: btrfs: fix information leak in btrfs_ioctl_logical_t | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35855 | linux-libc-dev | HIGH | kernel: mlxsw: spectrum_acl_tcam: Fix possible use-after-fre | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35861 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in cifs_signal_cifsd_ | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35862 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in smb2_is_network_na | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35863 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in is_valid_oplock_br | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35864 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in smb2_is_valid_leas | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35866 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in cifs_dump_full_key | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-35867 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in cifs_stats_proc_sh | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35868 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in cifs_stats_proc_wr | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35871 | linux-libc-dev | HIGH | kernel: riscv: process: Fix kernel gp leakage | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35886 | linux-libc-dev | HIGH | kernel: ipv6: Fix infinite recursion in fib6_dump_done(). | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35887 | linux-libc-dev | HIGH | kernel: ax25: fix use-after-free bugs caused by ax25_ds_del_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-35896 | linux-libc-dev | HIGH | kernel: netfilter: validate user input for expected length | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35905 | linux-libc-dev | HIGH | kernel: bpf: Protect against int overflow for stack access s | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35932 | linux-libc-dev | HIGH | kernel: drm/vc4: don't check if plane->state->fb == state->f | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35937 | linux-libc-dev | HIGH | kernel: wifi: cfg80211: check A-MSDU format more carefully | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-35939 | linux-libc-dev | HIGH | kernel: dma-direct: Leak pages on dma_set_decrypted() failur | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35963 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_sock: Fix not validating setsockopt u | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-35964 | linux-libc-dev | HIGH | kernel: Bluetooth: ISO: Fix not validating setsockopt user i | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-35965 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: Fix not validating setsockopt user | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35966 | linux-libc-dev | HIGH | kernel: Bluetooth: RFCOMM: Fix not validating setsockopt use | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-35967 | linux-libc-dev | HIGH | kernel: Bluetooth: SCO: Fix not validating setsockopt user i | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36012 | linux-libc-dev | HIGH | kernel: Bluetooth: msft: fix slab-use-after-free in msft_do_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36013 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: Fix slab-use-after-free in l2cap_c | 6.1.38-4 | no fix | dagster |
| CVE-2024-36015 | linux-libc-dev | HIGH | kernel: ppdev: Add an error check in register_device | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36032 | linux-libc-dev | HIGH | kernel: Bluetooth: qca: fix info leak when fetching fw build | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36033 | linux-libc-dev | HIGH | kernel: Bluetooth: qca: fix info leak when fetching board id | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36880 | linux-libc-dev | HIGH | kernel: Bluetooth: qca: add missing firmware sanity checks | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36883 | linux-libc-dev | HIGH | kernel: net: fix out-of-bounds access in ops_init | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36886 | linux-libc-dev | HIGH | kernel: TIPC message reassembly use-after-free remote code e | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36898 | linux-libc-dev | HIGH | kernel: gpiolib: cdev: fix uninitialised kfifo | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36899 | linux-libc-dev | HIGH | kernel: gpiolib: cdev: Fix use after free in lineinfo_change | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-36904 | linux-libc-dev | HIGH | kernel: tcp: Use refcount_inc_not_zero() in tcp_twsk_unique( | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36906 | linux-libc-dev | HIGH | kernel: ARM: 9381/1: kasan: clear stale stack poison | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36914 | linux-libc-dev | HIGH | kernel: drm/amd/display: Skip on writeback when it's not | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-36915 | linux-libc-dev | HIGH | kernel: nfc: llcp: fix nfc_llcp_setsockopt() unsafe copies | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-36916 | linux-libc-dev | HIGH | kernel: blk-iocost: avoid out of bounds shift | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36931 | linux-libc-dev | HIGH | kernel: s390/cio: Ensure the copied buf is NUL terminated | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36934 | linux-libc-dev | HIGH | kernel: bna: ensure the copied buf is NUL terminated | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36940 | linux-libc-dev | HIGH | kernel: pinctrl: core: delete incorrect free in pinctrl_enab | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36960 | linux-libc-dev | HIGH | kernel: drm/vmwgfx: Fix invalid reads in fence signaled even | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36971 | linux-libc-dev | HIGH | kernel: net: kernel: UAF in network route management | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36973 | linux-libc-dev | HIGH | kernel: double free in the error handling of gp_aux_bus_prob | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-36974 | linux-libc-dev | HIGH | kernel: net/sched: taprio: always validate TCA_TAPRIO_ATTR_P | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36978 | linux-libc-dev | HIGH | kernel: net: sched: sch_multiq: fix possible OOB write in mu | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-36979 | linux-libc-dev | HIGH | kernel: net: bridge: mst: fix vlan use-after-free | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-37078 | linux-libc-dev | HIGH | kernel: nilfs2: fix potential kernel bug due to lack of writ | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-37370 | libgssapi-krb5-2 | HIGH | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-37370 | libk5crypto3 | HIGH | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-37370 | libkrb5-3 | HIGH | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-37370 | libkrb5support0 | HIGH | krb5: GSS message token handling | 1.20.1-2 | 1.20.1-2+deb12u2 | dagster |
| CVE-2024-38381 | linux-libc-dev | HIGH | kernel: nfc: nci: Fix uninit-value in nci_rx_work | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38538 | linux-libc-dev | HIGH | kernel: net: bridge: xmit: make sure we have at least eth he | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38545 | linux-libc-dev | HIGH | kernel: RDMA/hns: Fix UAF for cq async event | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38552 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix potential index out of bounds i | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38555 | linux-libc-dev | HIGH | kernel: net/mlx5: Discard command completions in internal er | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38556 | linux-libc-dev | HIGH | kernel: net/mlx5: Add a timeout to acquire the command queue | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38560 | linux-libc-dev | HIGH | kernel: scsi: bfa: Ensure the copied buf is NUL terminated | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38561 | linux-libc-dev | HIGH | kernel: kunit: Fix kthread reference | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38568 | linux-libc-dev | HIGH | kernel: drivers/perf: hisi: hns3: Fix out-of-bound access wh | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38569 | linux-libc-dev | HIGH | kernel: drivers/perf: hisi_pcie: Fix out-of-bound access whe | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38570 | linux-libc-dev | HIGH | kernel: gfs2: Fix potential glock use-after-free on unmount | 6.1.38-4 | no fix | dagster |
| CVE-2024-38577 | linux-libc-dev | HIGH | kernel: rcu-tasks: Fix show_rcu_tasks_trace_gp_kthread buffe | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38578 | linux-libc-dev | HIGH | kernel: ecryptfs: Fix buffer size for tag 66 packet | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38581 | linux-libc-dev | HIGH | kernel: drm/amdgpu/mes: fix use-after-free issue | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38583 | linux-libc-dev | HIGH | kernel: nilfs2: fix use-after-free of timer for log writer t | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38585 | linux-libc-dev | HIGH | kernel: tools/nolibc/stdlib: fix memory error in realloc() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38586 | linux-libc-dev | HIGH | kernel: r8169: Fix possible ring buffer corruption on fragme | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38588 | linux-libc-dev | HIGH | kernel: ftrace: Fix possible use-after-free issue in ftrace_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38599 | linux-libc-dev | HIGH | kernel: jffs2: prevent xattr node from overflowing the erase | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38610 | linux-libc-dev | HIGH | kernel: drivers/virt/acrn: fix PFNMAP PTE checks in acrn_vm_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38621 | linux-libc-dev | HIGH | kernel: media: stk1160: fix bounds checking in stk1160_copy_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38627 | linux-libc-dev | HIGH | kernel: stm class: Fix a double free in stm_register_device( | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38630 | linux-libc-dev | HIGH | kernel: watchdog: cpu5wdt.c: Fix use-after-free bug caused b | 6.1.38-4 | no fix | dagster |
| CVE-2024-38635 | linux-libc-dev | HIGH | kernel: soundwire: cadence: fix invalid PDI offset | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38659 | linux-libc-dev | HIGH | kernel: enic: Validate length of nl attributes in enic_set_v | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38667 | linux-libc-dev | HIGH | kernel: riscv: prevent pt_regs corruption for secondary idle | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39277 | linux-libc-dev | HIGH | kernel: dma-mapping: benchmark: handle NUMA_NO_NODE correctl | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39463 | linux-libc-dev | HIGH | kernel: 9p: add missing locking around taking dentry fid lis | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39467 | linux-libc-dev | HIGH | kernel: f2fs: fix to do sanity check on i_xattr_nid in sanit | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39469 | linux-libc-dev | HIGH | kernel: nilfs2: fix nilfs_empty_dir() misjudgment and long l | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39471 | linux-libc-dev | HIGH | kernel: drm/amdgpu: add error handle to avoid out-of-bounds | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39480 | linux-libc-dev | HIGH | kernel: kdb: Fix buffer overflow during tab-complete | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39487 | linux-libc-dev | HIGH | kernel: bonding: Fix out-of-bounds read in bond_option_arp_i | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39494 | linux-libc-dev | HIGH | kernel: ima: Fix use-after-free on a dentry's dname.name | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39495 | linux-libc-dev | HIGH | kernel: greybus: Fix use-after-free bug in gb_interface_rele | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39496 | linux-libc-dev | HIGH | kernel: btrfs: zoned: fix use-after-free due to race with de | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39499 | linux-libc-dev | HIGH | kernel: vmci: prevent speculation leaks by sanitizing event | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39502 | linux-libc-dev | HIGH | kernel: ionic: fix use after netif_napi_del() | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39503 | linux-libc-dev | HIGH | kernel: netfilter: ipset: Fix race between namespace cleanup | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39510 | linux-libc-dev | HIGH | kernel: cachefiles: fix slab-use-after-free in cachefiles_on | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40899 | linux-libc-dev | HIGH | kernel: cachefiles: fix slab-use-after-free in cachefiles_on | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40900 | linux-libc-dev | HIGH | kernel: cachefiles: remove requests from xarray during flush | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40901 | linux-libc-dev | HIGH | kernel: scsi: mpt3sas: Avoid test/set_bit() operating in non | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40902 | linux-libc-dev | HIGH | kernel: jfs: xattr: fix buffer overflow for invalid xattr | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40903 | linux-libc-dev | HIGH | kernel: usb: typec: tcpm: fix use-after-free case in tcpm_re | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40906 | linux-libc-dev | HIGH | kernel: net/mlx5: Always stop health timer during driver rem | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40913 | linux-libc-dev | HIGH | kernel: cachefiles: defer exposing anon_fd until after copy_ | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40920 | linux-libc-dev | HIGH | kernel: net: bridge: mst: fix suspicious rcu usage in br_mst | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40927 | linux-libc-dev | HIGH | kernel: xhci: Handle TD clearing for multiple streams case | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40929 | linux-libc-dev | HIGH | kernel: wifi: iwlwifi: mvm: check n_ssids before accessing t | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40935 | linux-libc-dev | HIGH | kernel: cachefiles: flush all requests after setting CACHEFI | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40939 | linux-libc-dev | HIGH | kernel: net: wwan: iosm: Fix tainted pointer delete is case | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40940 | linux-libc-dev | HIGH | kernel: net/mlx5: Fix tainted pointer delete is case of flow | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40954 | linux-libc-dev | HIGH | kernel: net: do not leave a dangling sk pointer, when socket | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40956 | linux-libc-dev | HIGH | kernel: dmaengine: idxd: Fix possible Use-After-Free in irq_ | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40958 | linux-libc-dev | HIGH | kernel: netns: Make get_net_ns() handle zero refcount net | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40974 | linux-libc-dev | HIGH | kernel: powerpc/pseries: Enforce hcall result buffer validit | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40978 | linux-libc-dev | HIGH | kernel: scsi: qedi: Fix crash while reading debugfs attribut | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40989 | linux-libc-dev | HIGH | kernel: KVM: arm64: Disassociate vcpus from redistributor re | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40994 | linux-libc-dev | HIGH | kernel: ptp: fix integer overflow in max_vclocks_store | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40996 | linux-libc-dev | HIGH | kernel: bpf: Avoid splat in pskb_pull_reason | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41000 | linux-libc-dev | HIGH | kernel: block/ioctl: prefer different overflow check | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41011 | linux-libc-dev | HIGH | kernel: drm/amdkfd: don't allow mapping the MMIO HDP page wi | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-41013 | linux-libc-dev | HIGH | kernel: xfs: don't walk off the end of a directory data | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2024-41014 | linux-libc-dev | HIGH | kernel: xfs: add bounds checking to xlog_recover_process_dat | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-41028 | linux-libc-dev | HIGH | kernel: platform/x86: toshiba_acpi: Fix array out-of-bounds | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41039 | linux-libc-dev | HIGH | kernel: firmware: cs_dsp: Fix overflow checking of wmfw head | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41040 | linux-libc-dev | HIGH | kernel: net/sched: Fix UAF when resolving a clash | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41042 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables: prefer nft_chain_validate | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41045 | linux-libc-dev | HIGH | kernel: bpf: Defer work in bpf_timer_cancel_and_free | 6.1.38-4 | no fix | dagster |
| CVE-2024-41046 | linux-libc-dev | HIGH | kernel: net: ethernet: lantiq_etop: fix double free in detac | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41049 | linux-libc-dev | HIGH | kernel: filelock: fix potential use-after-free in posix_lock | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41050 | linux-libc-dev | HIGH | kernel: cachefiles: cyclic allocation of msg_id to avoid reu | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41051 | linux-libc-dev | HIGH | kernel: cachefiles: wait for ondemand_object_worker to finis | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41057 | linux-libc-dev | HIGH | kernel: cachefiles: fix slab-use-after-free in cachefiles_wi | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41058 | linux-libc-dev | HIGH | kernel: cachefiles: fix slab-use-after-free in fscache_withd | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41059 | linux-libc-dev | HIGH | kernel: hfsplus: fix uninit-value in copy_name | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41069 | linux-libc-dev | HIGH | kernel: ASoC: topology: Fix references to freed memory | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41070 | linux-libc-dev | HIGH | kernel: KVM: PPC: Book3S HV: Prevent UAF in kvm_spapr_tce_at | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41073 | linux-libc-dev | HIGH | kernel: nvme: avoid double free special payload | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41074 | linux-libc-dev | HIGH | kernel: cachefiles: Set object to close if ondemand_id < | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41087 | linux-libc-dev | HIGH | kernel: ata: libata-core: Fix double free on error | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41090 | linux-libc-dev | HIGH | kernel: virtio-net: tap: mlx5_core short frame denial of ser | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41091 | linux-libc-dev | HIGH | kernel: virtio-net: tun: mlx5_core short frame denial of ser | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41092 | linux-libc-dev | HIGH | kernel: drm/i915/gt: Fix potential UAF by revoke of fence re | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41096 | linux-libc-dev | HIGH | kernel: PCI/MSI: Fix UAF in msi_capability_init | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-41935 | linux-libc-dev | HIGH | kernel: f2fs: fix to shrink read extent node in batches | 6.1.38-4 | no fix | dagster |
| CVE-2024-42086 | linux-libc-dev | HIGH | kernel: iio: chemical: bme680: Fix overflows in compensate() | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42092 | linux-libc-dev | HIGH | kernel: gpio: davinci: Validate the obtained number of IRQs | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42093 | linux-libc-dev | HIGH | kernel: net/dpaa2: Avoid explicit cpumask var allocation on | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42094 | linux-libc-dev | HIGH | kernel: net/iucv: Avoid explicit cpumask var allocation on s | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42104 | linux-libc-dev | HIGH | kernel: nilfs2: add missing check for inode numbers on direc | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42105 | linux-libc-dev | HIGH | kernel: nilfs2: fix inode number range checks | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42118 | linux-libc-dev | HIGH | kernel: drm/amd/display: Do not return negative stream id fo | 6.1.38-4 | no fix | dagster |
| CVE-2024-42119 | linux-libc-dev | HIGH | kernel: drm/amd/display: Skip finding free audio for unknown | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42120 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check pipe offset before setting vb | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42121 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check index msg_id before read or w | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42136 | linux-libc-dev | HIGH | kernel: cdrom: rearrange last_media_change check to avoid un | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42138 | linux-libc-dev | HIGH | kernel: mlxsw: core_linecards: Fix double memory deallocatio | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42147 | linux-libc-dev | HIGH | kernel: crypto: hisilicon/debugfs - Fix debugfs uninit proce | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42148 | linux-libc-dev | HIGH | kernel: bnx2x: Fix multiple UBSAN array-index-out-of-bounds | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42159 | linux-libc-dev | HIGH | kernel: scsi: mpi3mr: Sanitise num_phys | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42160 | linux-libc-dev | HIGH | kernel: f2fs: check validation of fault attrs in f2fs_build_ | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42162 | linux-libc-dev | HIGH | kernel: gve: Account for stopped queues when reading NIC sta | 6.1.38-4 | no fix | dagster |
| CVE-2024-42225 | linux-libc-dev | HIGH | kernel: wifi: mt76: replace skb_put with skb_put_zero | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42228 | linux-libc-dev | HIGH | kernel: drm/amdgpu: Using uninitialized value *size when cal | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-42271 | linux-libc-dev | HIGH | kernel: net/iucv: fix use after free in iucv_sock_close() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42280 | linux-libc-dev | HIGH | kernel: mISDN: Fix a use after free in hfcmulti_tx() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42284 | linux-libc-dev | HIGH | kernel: tipc: Return non-zero value from tipc_udp_addr2str() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42285 | linux-libc-dev | HIGH | kernel: RDMA/iwcm: Fix a use-after-free related to destroyin | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42292 | linux-libc-dev | HIGH | kernel: kobject_uevent: Fix OOB access within zap_modalias_e | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42301 | linux-libc-dev | HIGH | kernel: dev/parport: fix the array out-of-bounds risk | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42302 | linux-libc-dev | HIGH | kernel: PCI/DPC: Fix use-after-free on concurrent DPC and ho | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42313 | linux-libc-dev | HIGH | kernel: media: venus: fix use after free in vdec_close | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42314 | linux-libc-dev | HIGH | kernel: btrfs: fix extent map use-after-free when adding pag | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-43830 | linux-libc-dev | HIGH | kernel: leds: trigger: Unregister sysfs attributes before ca | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43839 | linux-libc-dev | HIGH | kernel: bna: adjust 'name' buf size of bna_tcb and bna_ccb s | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43842 | linux-libc-dev | HIGH | kernel: wifi: rtw89: Fix array index mistake in rtw89_sta_in | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43858 | linux-libc-dev | HIGH | kernel: jfs: Fix array-index-out-of-bounds in diFree | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43873 | linux-libc-dev | HIGH | kernel: vhost/vsock: always initialize seqpacket_allow | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43877 | linux-libc-dev | HIGH | kernel: media: pci: ivtv: Add check for DMA map result | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43882 | linux-libc-dev | HIGH | kernel: exec: Fix ToCToU between perm check and set-uid/gid | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43883 | linux-libc-dev | HIGH | kernel: usb: vhci-hcd: Do not drop references before new ref | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43900 | linux-libc-dev | HIGH | kernel: media: xc2028: avoid use-after-free in load_firmware | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44934 | linux-libc-dev | HIGH | kernel: net: bridge: mcast: wait for previous gc cycles when | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44940 | linux-libc-dev | HIGH | kernel: fou: remove warn in gue_gro_receive on unsupported p | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44941 | linux-libc-dev | HIGH | kernel: f2fs: fix to cover read extent cache access with loc | 6.1.38-4 | no fix | dagster |
| CVE-2024-44942 | linux-libc-dev | HIGH | kernel: f2fs: fix to do sanity check on F2FS_INLINE_DATA fla | 6.1.38-4 | no fix | dagster |
| CVE-2024-44949 | linux-libc-dev | HIGH | kernel: parisc: fix a possible DMA corruption | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-44951 | linux-libc-dev | HIGH | kernel: serial: sc16is7xx: fix TX fifo corruption | 6.1.38-4 | no fix | dagster |
| CVE-2024-44967 | linux-libc-dev | HIGH | kernel: drm/mgag200: Bind I2C lifetime to DRM device | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44974 | linux-libc-dev | HIGH | kernel: mptcp: pm: avoid possible UaF when selecting endp | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44977 | linux-libc-dev | HIGH | kernel: drm/amdgpu: Validate TA binary size | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44983 | linux-libc-dev | HIGH | kernel: netfilter: flowtable: validate vlan header | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44985 | linux-libc-dev | HIGH | kernel: ipv6: prevent possible UAF in ip6_xmit() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44986 | linux-libc-dev | HIGH | kernel: ipv6: fix possible UAF in ip6_finish_output2() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44987 | linux-libc-dev | HIGH | kernel: ipv6: prevent UAF in ip6_send_skb() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44998 | linux-libc-dev | HIGH | kernel: atm: idt77252: prevent use after free in dequeue_rx( | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44999 | linux-libc-dev | HIGH | kernel: gtp: pull network headers in gtp_dev_xmit() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45026 | linux-libc-dev | HIGH | kernel: s390/dasd: fix error recovery leading to data corrup | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45490 | libexpat1 | HIGH | libexpat: Negative Length Parsing Vulnerability in libexpat | 2.5.0-1 | 2.5.0-1+deb12u1 | dagster |
| CVE-2024-46673 | linux-libc-dev | HIGH | kernel: scsi: aacraid: Fix double-free on probe failure | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46674 | linux-libc-dev | HIGH | kernel: usb: dwc3: st: fix probed platform device ref count | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46713 | linux-libc-dev | HIGH | kernel: perf/aux: Fix AUX buffer serialization | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46722 | linux-libc-dev | HIGH | kernel: drm/amdgpu: fix mc_data out-of-bounds read warning | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46723 | linux-libc-dev | HIGH | kernel: drm/amdgpu: fix ucode out-of-bounds read warning | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46724 | linux-libc-dev | HIGH | kernel: drm/amdgpu: Fix out-of-bounds read of df_v1_7_channe | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46725 | linux-libc-dev | HIGH | kernel: drm/amdgpu: Fix out-of-bounds write warning | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46729 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix incorrect size calculation for | 6.1.38-4 | no fix | dagster |
| CVE-2024-46731 | linux-libc-dev | HIGH | kernel: drm/amd/pm: fix the Out-of-bounds read warning | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46738 | linux-libc-dev | HIGH | kernel: VMCI: Fix use-after-free when removing resource in v | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46740 | linux-libc-dev | HIGH | kernel: binder: fix UAF caused by offsets overwrite | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46743 | linux-libc-dev | HIGH | kernel: of/irq: Prevent device address out-of-bounds read in | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46744 | linux-libc-dev | HIGH | kernel: Squashfs: sanity check symbolic link size | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46746 | linux-libc-dev | HIGH | kernel: HID: amd_sfh: free driver_data after destroying hid | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46747 | linux-libc-dev | HIGH | kernel: HID: cougar: fix slab-out-of-bounds Read in cougar_r | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46759 | linux-libc-dev | HIGH | kernel: hwmon: (adc128d818) Fix underflows seen when writing | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46774 | linux-libc-dev | HIGH | kernel: powerpc/rtas: Prevent Spectre v1 gadget construction | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-46782 | linux-libc-dev | HIGH | kernel: ila: call nf_unregister_net_hooks() sooner | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46786 | linux-libc-dev | HIGH | kernel: fscache: delete fscache_cookie_lru_timer when fscach | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2024-46798 | linux-libc-dev | HIGH | kernel: ASoC: dapm: Fix UAF for snd_soc_pcm_runtime object | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46800 | linux-libc-dev | HIGH | kernel: sch/netem: fix use after free in netem_dequeue | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46804 | linux-libc-dev | HIGH | kernel: drm/amd/display: Add array index check for hdcp ddc | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46811 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix index may exceed array range wi | 6.1.38-4 | no fix | dagster |
| CVE-2024-46812 | linux-libc-dev | HIGH | kernel: drm/amd/display: Skip inactive planes within ModeSup | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46813 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check link_index before accessing d | 6.1.38-4 | no fix | dagster |
| CVE-2024-46814 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check msg_id before processing tran | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46815 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check num_valid_sets before accessi | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46818 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check gpio_id before used as array | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46821 | linux-libc-dev | HIGH | kernel: drm/amd/pm: Fix negative array index read | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46828 | linux-libc-dev | HIGH | kernel: sched: sch_cake: fix bulk flow accounting logic for | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46830 | linux-libc-dev | HIGH | kernel: KVM: x86: Acquire kvm->srcu when handling KVM_SET | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46836 | linux-libc-dev | HIGH | kernel: usb: gadget: aspeed_udc: validate endpoint index for | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46844 | linux-libc-dev | HIGH | kernel: um: line: always fill *error_out in setup_one_line() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46849 | linux-libc-dev | HIGH | kernel: ASoC: meson: axg-card: fix 'use-after-free' | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46852 | linux-libc-dev | HIGH | kernel: dma-buf: heaps: Fix off-by-one in CMA heap fault han | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46853 | linux-libc-dev | HIGH | kernel: spi: nxp-fspi: fix the KASAN report out-of-bounds bu | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46854 | linux-libc-dev | HIGH | kernel: net: dpaa: Pad packets to ETH_ZLEN | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46858 | linux-libc-dev | HIGH | kernel: mptcp: pm: Fix uaf in __timer_delete_sync | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46859 | linux-libc-dev | HIGH | kernel: platform/x86: panasonic-laptop: Fix SINF array out o | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46865 | linux-libc-dev | HIGH | kernel: fou: fix initialization of grc | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46871 | linux-libc-dev | HIGH | kernel: drm/amd/display: Correct the defined value for AMDGP | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47659 | linux-libc-dev | HIGH | kernel: smack: tcp: ipv4, fix incorrect labeling | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47670 | linux-libc-dev | HIGH | kernel: ocfs2: add bounds checking to ocfs2_xattr_find_entry | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47682 | linux-libc-dev | HIGH | kernel: scsi: sd: Fix off-by-one error in sd_read_block_char | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47686 | linux-libc-dev | HIGH | kernel: ep93xx: clock: Fix off by one in ep93xx_div_recalc_r | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47691 | linux-libc-dev | HIGH | kernel: f2fs: fix to avoid use-after-free in f2fs_stop_gc_th | 6.1.38-4 | no fix | dagster |
| CVE-2024-47695 | linux-libc-dev | HIGH | kernel: RDMA/rtrs-clt: Reset cid to con_num - 1 to stay in b | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47696 | linux-libc-dev | HIGH | kernel: RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47697 | linux-libc-dev | HIGH | kernel: drivers: media: dvb-frontends/rtl2830: fix an out-of | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47698 | linux-libc-dev | HIGH | kernel: drivers: media: dvb-frontends/rtl2832: fix an out-of | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47701 | linux-libc-dev | HIGH | kernel: ext4: avoid OOB when system.data xattr changes under | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47718 | linux-libc-dev | HIGH | kernel: wifi: rtw88: always wait for both firmware loading a | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47723 | linux-libc-dev | HIGH | kernel: jfs: fix out-of-bounds in dbNextAG() and diAlloc() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47727 | linux-libc-dev | HIGH | kernel: x86/tdx: Fix "in-kernel MMIO" check | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47730 | linux-libc-dev | HIGH | kernel: crypto: hisilicon/qm - inject error before stopping | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47742 | linux-libc-dev | HIGH | kernel: firmware_loader: Block path traversal | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47745 | linux-libc-dev | HIGH | kernel: mm: call the security_mmap_file() LSM hook in remap_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-47747 | linux-libc-dev | HIGH | kernel: net: seeq: Fix use after free vulnerability in ether | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47748 | linux-libc-dev | HIGH | kernel: vhost_vdpa: assign irq bypass producer token correct | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47750 | linux-libc-dev | HIGH | kernel: RDMA/hns: Fix Use-After-Free of rsv_qp on HIP08 | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47751 | linux-libc-dev | HIGH | kernel: PCI: kirin: Fix buffer overflow in kirin_pcie_parse_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47757 | linux-libc-dev | HIGH | kernel: nilfs2: fix potential oob read in nilfs_btree_check_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49852 | linux-libc-dev | HIGH | kernel: scsi: elx: libefc: Fix potential use after free in e | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49853 | linux-libc-dev | HIGH | kernel: firmware: arm_scmi: Fix double free in OPTEE transpo | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49855 | linux-libc-dev | HIGH | kernel: nbd: fix race between timeout and normal completion | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49860 | linux-libc-dev | HIGH | kernel: ACPI: sysfs: validate return type of _STR method | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49861 | linux-libc-dev | HIGH | kernel: bpf: Fix helper writes to read-only maps | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49882 | linux-libc-dev | HIGH | kernel: ext4: fix double brelse() the buffer of the extents | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49883 | linux-libc-dev | HIGH | kernel: ext4: aovid use-after-free in ext4_ext_insert_extent | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49884 | linux-libc-dev | HIGH | kernel: ext4: fix slab-use-after-free in ext4_split_extent_a | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49889 | linux-libc-dev | HIGH | kernel: ext4: avoid use-after-free in ext4_ext_show_leaf() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49894 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix index out of bounds in degamma | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49895 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix index out of bounds in DCN30 de | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49900 | linux-libc-dev | HIGH | kernel: jfs: Fix uninit-value access of new_ea in ea_buffer | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49903 | linux-libc-dev | HIGH | kernel: jfs: Fix uaf in dbFreeBits | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49924 | linux-libc-dev | HIGH | kernel: fbdev: pxafb: Fix possible use after free in pxafb_t | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49930 | linux-libc-dev | HIGH | kernel: wifi: ath11k: fix array out-of-bound access in SoC s | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49936 | linux-libc-dev | HIGH | kernel: net/xen-netback: prevent UAF in xenvif_flush_hash() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49950 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: Fix uaf in l2cap_connect | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-49960 | linux-libc-dev | HIGH | kernel: ext4: fix timer use-after-free on failed mount | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-49966 | linux-libc-dev | HIGH | kernel: ocfs2: cancel dqi_sync_work before freeing oinfo | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49969 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix index out of bounds in DCN30 co | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49981 | linux-libc-dev | HIGH | kernel: media: venus: fix use after free bug in venus_remove | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49982 | linux-libc-dev | HIGH | kernel: aoe: fix the potential use-after-free problem in mor | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49983 | linux-libc-dev | HIGH | kernel: ext4: drop ppath from ext4_ext_replay_update_ex() to | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49986 | linux-libc-dev | HIGH | kernel: platform/x86: x86-android-tablets: Fix use after fre | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-49989 | linux-libc-dev | HIGH | kernel: drm/amd/display: fix double free issue during amdgpu | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-49991 | linux-libc-dev | HIGH | kernel: drm/amdkfd: amdkfd_free_gtt_mem clear the correct po | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-49992 | linux-libc-dev | HIGH | kernel: drm/stm: Avoid use-after-free issues with crtc and p | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49996 | linux-libc-dev | HIGH | kernel: cifs: Fix buffer overflow when parsing NFS reparse p | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49997 | linux-libc-dev | HIGH | kernel: net: ethernet: lantiq_etop: fix memory disclosure | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50007 | linux-libc-dev | HIGH | kernel: ALSA: asihpi: Fix potential OOB array access | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50029 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_conn: Fix UAF in hci_enhanced_setup_s | 6.1.38-4 | no fix | dagster |
| CVE-2024-50033 | linux-libc-dev | HIGH | kernel: slip: make slhc_remember() more robust against malic | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50035 | linux-libc-dev | HIGH | kernel: ppp: fix ppp_async_encode() illegal access | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50036 | linux-libc-dev | HIGH | kernel: net: do not delay dst_entries_add() in dst_release() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50047 | linux-libc-dev | HIGH | kernel: smb: client: fix UAF in async decryption | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-50051 | linux-libc-dev | HIGH | kernel: spi: mpc52xx: Add cancel_work_sync before module rem | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50055 | linux-libc-dev | HIGH | kernel: driver core: bus: Fix double free in driver API bus_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50059 | linux-libc-dev | HIGH | kernel: ntb: ntb_hw_switchtec: Fix use after free vulnerabil | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50061 | linux-libc-dev | HIGH | kernel: i3c: master: cdns: Fix use after free vulnerability | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-50063 | linux-libc-dev | HIGH | kernel: bpf: Prevent tail call between progs attached to dif | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-50067 | linux-libc-dev | HIGH | kernel: uprobe: avoid out-of-bounds memory access of fetchin | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50073 | linux-libc-dev | HIGH | kernel: tty: n_gsm: Fix use-after-free in gsm_cleanup_mux | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50074 | linux-libc-dev | HIGH | kernel: parport: Proper fix for array out-of-bounds access | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50083 | linux-libc-dev | HIGH | kernel: tcp: fix mptcp DSS corruption due to large pmtu xmit | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50086 | linux-libc-dev | HIGH | kernel: ksmbd: fix user-after-free from session log off | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50088 | linux-libc-dev | HIGH | kernel: btrfs: fix uninitialized pointer free in add_inode_r | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50115 | linux-libc-dev | HIGH | kernel: KVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs from | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50121 | linux-libc-dev | HIGH | kernel: nfsd: cancel nfsd_shrinker_work using sync mode in n | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50124 | linux-libc-dev | HIGH | kernel: Bluetooth: ISO: Fix UAF on iso_sock_timeout | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50125 | linux-libc-dev | HIGH | kernel: Bluetooth: SCO: Fix UAF on sco_sock_timeout | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50126 | linux-libc-dev | HIGH | kernel: net: sched: use RCU read-side critical section in ta | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50127 | linux-libc-dev | HIGH | kernel: net: sched: fix use-after-free in taprio_change() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50128 | linux-libc-dev | HIGH | kernel: net: wwan: fix global oob in wwan_rtnl_policy | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50131 | linux-libc-dev | HIGH | kernel: tracing: Consider the NULL character when validating | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50143 | linux-libc-dev | HIGH | kernel: udf: fix uninit-value use in udf_get_fileshortad | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50150 | linux-libc-dev | HIGH | kernel: usb: typec: altmode should keep reference to parent | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50151 | linux-libc-dev | HIGH | kernel: smb: client: fix OOBs when building SMB2_IOCTL reque | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50154 | linux-libc-dev | HIGH | kernel: tcp/dccp: Don't use timer_pending() in reqsk_que | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50155 | linux-libc-dev | HIGH | kernel: netdevsim: use cond_resched() in nsim_dev_trap_repor | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50164 | linux-libc-dev | HIGH | kernel: bpf: Fix overloading of MEM_UNINIT's meaning | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-50180 | linux-libc-dev | HIGH | kernel: fbdev: sisfb: Fix strbuf array overflow | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50186 | linux-libc-dev | HIGH | kernel: net: explicitly clear the sk pointer, when pf->cr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50193 | linux-libc-dev | HIGH | kernel: x86/entry_32: Clear CPU buffers after register resto | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50209 | linux-libc-dev | HIGH | kernel: RDMA/bnxt_re: Add a check for memory allocation | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50215 | linux-libc-dev | HIGH | kernel: nvmet-auth: assign dh_key to NULL after kfree_sensit | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50217 | linux-libc-dev | HIGH | kernel: btrfs: fix use-after-free of block device file in __ | 6.1.38-4 | no fix | dagster |
| CVE-2024-50226 | linux-libc-dev | HIGH | kernel: cxl/port: Fix use-after-free, permit out-of-order de | 6.1.38-4 | no fix | dagster |
| CVE-2024-50230 | linux-libc-dev | HIGH | kernel: nilfs2: fix kernel bug due to missing clearing of ch | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50234 | linux-libc-dev | HIGH | kernel: wifi: iwlegacy: Clear stale interrupts before resumi | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50235 | linux-libc-dev | HIGH | kernel: wifi: cfg80211: clear wdev->cqm_config pointer on fr | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50242 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Additional check in ntfs_file_release | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50246 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Add rough attr alloc_size check | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-50247 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Check if more than chunk-size bytes are wr | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50250 | linux-libc-dev | HIGH | kernel: fsdax: dax_unshare_iter needs to copy entire blocks | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50257 | linux-libc-dev | HIGH | kernel: netfilter: Fix use-after-free in get_info() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50261 | linux-libc-dev | HIGH | kernel: macsec: Fix use-after-free while sending the offload | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50262 | linux-libc-dev | HIGH | kernel: bpf: Fix out-of-bounds write in trie_get_next_key() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50264 | linux-libc-dev | HIGH | kernel: vsock/virtio: Initialization of the dangling pointer | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50267 | linux-libc-dev | HIGH | kernel: USB: serial: io_edgeport: fix use after free in debu | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50268 | linux-libc-dev | HIGH | kernel: usb: typec: fix potential out of bounds in ucsi_ccg_ | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50269 | linux-libc-dev | HIGH | kernel: usb: musb: sunxi: Fix accessing an released usb phy | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50275 | linux-libc-dev | HIGH | kernel: arm64/sve: Discard stale CPU state when handling SVE | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50276 | linux-libc-dev | HIGH | kernel: net: vertexcom: mse102x: Fix possible double free of | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50278 | linux-libc-dev | HIGH | kernel: dm cache: fix potential out-of-bounds access on the | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50279 | linux-libc-dev | HIGH | kernel: dm cache: fix out-of-bounds access to the dirty bits | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50282 | linux-libc-dev | HIGH | kernel: drm/amdgpu: add missing size check in amdgpu_debugfs | 6.1.38-4 | no fix | dagster |
| CVE-2024-50283 | linux-libc-dev | HIGH | kernel: ksmbd: fix slab-use-after-free in smb3_preauth_hash_ | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50286 | linux-libc-dev | HIGH | kernel: ksmbd: fix slab-use-after-free in ksmbd_smb2_session | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50301 | linux-libc-dev | HIGH | kernel: security/keys: fix slab-out-of-bounds in key_task_pe | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-52332 | linux-libc-dev | HIGH | kernel: igb: Fix potential invalid memory access in igb_init | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53057 | linux-libc-dev | HIGH | kernel: net/sched: stop qdisc_tree_reduce_backlog on TC_H_RO | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53059 | linux-libc-dev | HIGH | kernel: wifi: iwlwifi: mvm: Fix response handling in iwl_mvm | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53061 | linux-libc-dev | HIGH | kernel: media: s5p-jpeg: prevent buffer overflows | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53068 | linux-libc-dev | HIGH | kernel: firmware: arm_scmi: Fix slab-use-after-free in scmi_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-53082 | linux-libc-dev | HIGH | kernel: virtio_net: Add hash_key_length check | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53096 | linux-libc-dev | HIGH | kernel: mm: resolve faulty mmap_region() error path behaviou | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53099 | linux-libc-dev | HIGH | kernel: bpf: Check validity of link->type in bpf_link_show_f | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53103 | linux-libc-dev | HIGH | kernel: hv_sock: Initializing vsk->trans to NULL to prevent | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53104 | linux-libc-dev | HIGH | kernel: media: uvcvideo: Skip parsing frames of type UVC_VS_ | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53106 | linux-libc-dev | HIGH | kernel: ima: fix buffer overrun in ima_eventdigest_init_comm | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53141 | linux-libc-dev | HIGH | kernel: netfilter: ipset: add missing range check in bitmap_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53142 | linux-libc-dev | HIGH | kernel: initramfs: avoid filename buffer overrun | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53147 | linux-libc-dev | HIGH | kernel: exfat: fix out-of-bounds access of directory entries | 6.1.38-4 | no fix | dagster |
| CVE-2024-53150 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Fix out of bounds reads when findin | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53155 | linux-libc-dev | HIGH | kernel: ocfs2: fix uninitialized value in ocfs2_file_read_it | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53156 | linux-libc-dev | HIGH | kernel: wifi: ath9k: add range check for conn_rsp_epid in ht | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53165 | linux-libc-dev | HIGH | kernel: sh: intc: Fix use-after-free bug in register_intc_co | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53166 | linux-libc-dev | HIGH | kernel: block, bfq: fix bfqq uaf in bfq_limit_depth() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-53168 | linux-libc-dev | HIGH | kernel: sunrpc: fix one UAF issue caused by sunrpc kernel tc | 6.1.38-4 | no fix | dagster |
| CVE-2024-53170 | linux-libc-dev | HIGH | kernel: block: fix uaf for flush rq while iterating tags | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-53171 | linux-libc-dev | HIGH | kernel: ubifs: authentication: Fix use-after-free in ubifs_t | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53173 | linux-libc-dev | HIGH | kernel: NFSv4.0: Fix a use-after-free problem in the asynchr | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53174 | linux-libc-dev | HIGH | kernel: SUNRPC: make sure cache entry active before cache_sh | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53179 | linux-libc-dev | HIGH | kernel: smb: client: fix use-after-free of signing key | 6.1.38-4 | no fix | dagster |
| CVE-2024-53203 | linux-libc-dev | HIGH | kernel: usb: typec: fix potential array underflow in ucsi_cc | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-53206 | linux-libc-dev | HIGH | kernel: tcp: Fix use-after-free of nreq in reqsk_timer_handl | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53208 | linux-libc-dev | HIGH | kernel: Bluetooth: MGMT: Fix slab-use-after-free Read in set | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53213 | linux-libc-dev | HIGH | kernel: net: usb: lan78xx: Fix double free issue with interr | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53214 | linux-libc-dev | HIGH | kernel: vfio/pci: Properly hide first-in-list PCIe extended | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53216 | linux-libc-dev | HIGH | kernel: nfsd: release svc_expkey/svc_export with rcu_work | 6.1.38-4 | no fix | dagster |
| CVE-2024-53218 | linux-libc-dev | HIGH | kernel: f2fs: fix race in concurrent f2fs_stop_gc_thread | 6.1.38-4 | no fix | dagster |
| CVE-2024-53227 | linux-libc-dev | HIGH | kernel: scsi: bfa: Fix use-after-free in bfad_im_module_exit | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53237 | linux-libc-dev | HIGH | kernel: Bluetooth: fix use-after-free in device_for_each_chi | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53239 | linux-libc-dev | HIGH | kernel: ALSA: 6fire: Release resources at card release | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56538 | linux-libc-dev | HIGH | kernel: drm: zynqmp_kms: Unplug DRM device before removal | 6.1.38-4 | no fix | dagster |
| CVE-2024-56548 | linux-libc-dev | HIGH | kernel: hfsplus: don't query the device logical block size m | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56551 | linux-libc-dev | HIGH | kernel: drm/amdgpu: fix usage slab after free | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-56558 | linux-libc-dev | HIGH | kernel: nfsd: make sure exp active before svc_export_show | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56570 | linux-libc-dev | HIGH | kernel: ovl: Filter invalid inodes with missing lookup funct | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56581 | linux-libc-dev | HIGH | kernel: btrfs: ref-verify: fix use-after-free after invalid | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56582 | linux-libc-dev | HIGH | kernel: btrfs: fix use-after-free in btrfs_encoded_read_endi | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-56595 | linux-libc-dev | HIGH | kernel: jfs: add a check to prevent array-index-out-of-bound | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56596 | linux-libc-dev | HIGH | kernel: jfs: fix array-index-out-of-bounds in jfs_readdir | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56597 | linux-libc-dev | HIGH | kernel: jfs: fix shift-out-of-bounds in dbSplit | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56598 | linux-libc-dev | HIGH | kernel: jfs: array-index-out-of-bounds fix in dtReadFirst | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56600 | linux-libc-dev | HIGH | kernel: net: inet6: do not leave a dangling sk pointer in in | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56601 | linux-libc-dev | HIGH | kernel: net: inet: do not leave a dangling sk pointer in ine | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56602 | linux-libc-dev | HIGH | kernel: net: ieee802154: do not leave a dangling sk pointer | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56603 | linux-libc-dev | HIGH | kernel: net: af_can: do not leave a dangling sk pointer in c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56604 | linux-libc-dev | HIGH | kernel: Bluetooth: RFCOMM: avoid leaving dangling sk pointer | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56605 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: do not leave dangling sk pointer o | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56606 | linux-libc-dev | HIGH | kernel: af_packet: avoid erroring out after sock_init_data() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56608 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix out-of-bounds access in 'dcn21_ | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-56609 | linux-libc-dev | HIGH | kernel: wifi: rtw88: use ieee80211_purge_tx_queue() to purge | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2024-56614 | linux-libc-dev | HIGH | kernel: xsk: fix OOB map writes when deleting elements | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56615 | linux-libc-dev | HIGH | kernel: bpf: fix OOB devmap writes when deleting elements | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56616 | linux-libc-dev | HIGH | kernel: drm/dp_mst: Fix MST sideband message body length che | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56619 | linux-libc-dev | HIGH | kernel: nilfs2: fix potential out-of-bounds memory access in | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56626 | linux-libc-dev | HIGH | kernel: ksmbd: fix Out-of-Bounds Write in ksmbd_vfs_stream_w | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56627 | linux-libc-dev | HIGH | kernel: ksmbd: fix Out-of-Bounds Read in ksmbd_vfs_stream_re | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56628 | linux-libc-dev | HIGH | kernel: LoongArch: Add architecture specific huge_pte_clear( | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56631 | linux-libc-dev | HIGH | kernel: scsi: sg: Fix slab-use-after-free read in sg_release | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-56633 | linux-libc-dev | HIGH | kernel: tcp_bpf: Fix the sk_mem_uncharge logic in tcp_bpf_se | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56640 | linux-libc-dev | HIGH | kernel: net/smc: fix LGR and link use-after-free issue | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56642 | linux-libc-dev | HIGH | kernel: tipc: Fix use-after-free of kernel socket in cleanup | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56650 | linux-libc-dev | HIGH | kernel: netfilter: x_tables: fix LED ID check in led_tg_chec | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56651 | linux-libc-dev | HIGH | kernel: can: hi311x: hi3110_can_ist(): fix potential use-aft | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56658 | linux-libc-dev | HIGH | kernel: net: defer final 'struct net' free in netns dismantl | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56663 | linux-libc-dev | HIGH | kernel: wifi: nl80211: fix NL80211_ATTR_MLO_LINK_ID off-by-o | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56664 | linux-libc-dev | HIGH | kernel: bpf, sockmap: Fix race between element replace and c | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-56672 | linux-libc-dev | HIGH | kernel: blk-cgroup: Fix UAF in blkcg_unpin_online() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56675 | linux-libc-dev | HIGH | kernel: bpf: Fix UAF via mismatching bpf_prog/attachment RCU | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56704 | linux-libc-dev | HIGH | kernel: 9p/xen: fix release of IRQ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56708 | linux-libc-dev | HIGH | kernel: EDAC/igen6: Avoid segmentation fault on module unloa | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56759 | linux-libc-dev | HIGH | kernel: btrfs: fix use-after-free when COWing tree bock and | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-56765 | linux-libc-dev | HIGH | kernel: powerpc/pseries/vas: Add close() callback in vas_vm_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56766 | linux-libc-dev | HIGH | kernel: mtd: rawnand: fix double free in atmel_pmecc_create_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56775 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix handling of plane refcount | 6.1.38-4 | no fix | dagster |
| CVE-2024-57791 | linux-libc-dev | HIGH | kernel: net/smc: check return value of sock_recvmsg when dra | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57792 | linux-libc-dev | HIGH | kernel: power: supply: gpio-charger: Fix set charge current | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57798 | linux-libc-dev | HIGH | kernel: drm/dp_mst: Ensure mst_primary pointer is valid in d | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57838 | linux-libc-dev | HIGH | kernel: s390/entry: Mark IRQ entries to fix stack depot warn | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57849 | linux-libc-dev | HIGH | kernel: s390/cpum_sf: Handle CPU hotplug remove during sampl | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57850 | linux-libc-dev | HIGH | kernel: jffs2: Prevent rtime decompress memory corruption | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57876 | linux-libc-dev | HIGH | kernel: drm/dp_mst: Fix resetting msg rx state after topolog | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57887 | linux-libc-dev | HIGH | kernel: drm: adv7511: Fix use-after-free in adv7533_attach_d | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57892 | linux-libc-dev | HIGH | kernel: ocfs2: fix slab-use-after-free due to dangling point | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57896 | linux-libc-dev | HIGH | kernel: btrfs: flush delalloc workers queue before stopping | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57900 | linux-libc-dev | HIGH | kernel: ila: serialize calls to nf_register_net_hooks() | 6.1.38-4 | no fix | dagster |
| CVE-2024-57904 | linux-libc-dev | HIGH | kernel: iio: adc: at91: call input_free_device() on allocate | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57906 | linux-libc-dev | HIGH | kernel: iio: adc: ti-ads8688: fix information leak in trigge | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57907 | linux-libc-dev | HIGH | kernel: iio: adc: rockchip_saradc: fix information leak in t | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57908 | linux-libc-dev | HIGH | kernel: iio: imu: kmx61: fix information leak in triggered b | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57910 | linux-libc-dev | HIGH | kernel: iio: light: vcnl4035: fix information leak in trigge | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57911 | linux-libc-dev | HIGH | kernel: iio: dummy: iio_simply_dummy_buffer: fix information | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57912 | linux-libc-dev | HIGH | kernel: iio: pressure: zpa2326: fix information leak in trig | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57917 | linux-libc-dev | HIGH | kernel: topology: Keep the cpumask unchanged when printing c | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57925 | linux-libc-dev | HIGH | kernel: ksmbd: fix a missing return value check bug | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57929 | linux-libc-dev | HIGH | kernel: dm array: fix releasing a faulty array block twice i | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57945 | linux-libc-dev | HIGH | kernel: riscv: mm: Fix the out of bound issue of vmemmap add | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-57951 | linux-libc-dev | HIGH | kernel: hrtimers: Handle CPU state correctly on hotplug | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57980 | linux-libc-dev | HIGH | kernel: media: uvcvideo: Fix double free in error path | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57982 | linux-libc-dev | HIGH | kernel: xfrm: state: fix out-of-bounds read during lookup | 6.1.38-4 | no fix | dagster |
| CVE-2024-57984 | linux-libc-dev | HIGH | kernel: i3c: dw: Fix use-after-free in dw_i3c_master driver | 6.1.38-4 | no fix | dagster |
| CVE-2024-57998 | linux-libc-dev | HIGH | kernel: OPP: add index check to assert to avoid buffer overf | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58002 | linux-libc-dev | HIGH | kernel: media: uvcvideo: Remove dangling pointers | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-58007 | linux-libc-dev | HIGH | kernel: soc: qcom: socinfo: Avoid out of bounds read of seri | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58013 | linux-libc-dev | HIGH | kernel: Bluetooth: MGMT: Fix slab-use-after-free Read in mgm | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58014 | linux-libc-dev | HIGH | kernel: wifi: brcmsmac: add gain range check to wlc_phy_iqca | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58015 | linux-libc-dev | HIGH | kernel: wifi: ath12k: Fix for out-of bound access error | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2024-58034 | linux-libc-dev | HIGH | kernel: memory: tegra20-emc: fix an OF node reference bug in | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58054 | linux-libc-dev | HIGH | kernel: staging: media: max96712: fix kernel oops when remov | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58055 | linux-libc-dev | HIGH | kernel: usb: gadget: f_tcm: Don't free command immediately | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58069 | linux-libc-dev | HIGH | kernel: rtc: pcf85063: fix potential OOB write in PCF85063 N | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58072 | linux-libc-dev | HIGH | kernel: wifi: rtlwifi: remove unused check_buddy_priv | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58087 | linux-libc-dev | HIGH | kernel: ksmbd: fix racy issue from session lookup and expire | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-58093 | linux-libc-dev | HIGH | kernel: Linux kernel: PCI/ASPM use-after-free during hot-unp | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-58240 | linux-libc-dev | HIGH | kernel: tls: separate no-async decryption request handling f | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2024-6345 | setuptools | HIGH | pypa/setuptools: Remote code execution via download function | 65.5.1 | 70.0.0 | dagster |
| CVE-2024-8176 | libexpat1 | HIGH | libexpat: expat: Improper Restriction of XML Entity Expansio | 2.5.0-1 | 2.5.0-1+deb12u2 | dagster |
| CVE-2024-8805 | linux-libc-dev | HIGH | BlueZ HID over GATT Profile Improper Access Control Remote C | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2025-21631 | linux-libc-dev | HIGH | kernel: block, bfq: fix waker_bfqq UAF after bfq_split_bfqq( | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21647 | linux-libc-dev | HIGH | kernel: sched: sch_cake: add bounds checks to host bulk flow | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21671 | linux-libc-dev | HIGH | kernel: zram: fix potential UAF of zram table | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21680 | linux-libc-dev | HIGH | kernel: pktgen: Avoid out-of-bounds access in get_imix_entri | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21687 | linux-libc-dev | HIGH | kernel: vfio/platform: check the bounds of read/write syscal | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21692 | linux-libc-dev | HIGH | kernel: net: sched: fix ets qdisc OOB Indexing | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21702 | linux-libc-dev | HIGH | kernel: pfifo_tail_enqueue: Drop new packet when sch->limit | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21703 | linux-libc-dev | HIGH | kernel: netem: Update sch->q.qlen before qdisc_tree_reduce_b | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21704 | linux-libc-dev | HIGH | kernel: Linux kernel: usb: cdc-acm: Memory corruption due to | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21715 | linux-libc-dev | HIGH | kernel: net: davicom: fix UAF in dm9000_drv_remove | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21718 | linux-libc-dev | HIGH | kernel: net: rose: fix timer races against user threads | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21719 | linux-libc-dev | HIGH | kernel: ipmr: do not call mr_mfc_uses_dev() for unres entrie | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21724 | linux-libc-dev | HIGH | kernel: Linux kernel: iommufd/iova_bitmap shift-out-of-bound | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21726 | linux-libc-dev | HIGH | kernel: padata: avoid UAF for reorder_work | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21727 | linux-libc-dev | HIGH | kernel: padata: fix UAF in padata_reorder | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21734 | linux-libc-dev | HIGH | kernel: misc: fastrpc: Fix copy buffer page size | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21735 | linux-libc-dev | HIGH | kernel: NFC: nci: Add bounds checking in nci_hci_create_pipe | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21753 | linux-libc-dev | HIGH | kernel: btrfs: fix use-after-free when attempting to join an | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21756 | linux-libc-dev | HIGH | kernel: vsock: Keep the binding until socket destruction | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21761 | linux-libc-dev | HIGH | kernel: openvswitch: use RCU protection in ovs_vport_cmd_fil | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21762 | linux-libc-dev | HIGH | kernel: arp: use RCU protection in arp_xmit() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21764 | linux-libc-dev | HIGH | kernel: ndisc: use RCU protection in ndisc_alloc_skb() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21772 | linux-libc-dev | HIGH | kernel: partitions: mac: fix handling of bogus partition tab | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21780 | linux-libc-dev | HIGH | kernel: drm/amdgpu: avoid buffer overflow attach in smu_sys_ | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21782 | linux-libc-dev | HIGH | kernel: orangefs: fix a oob in orangefs_debug_write | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21785 | linux-libc-dev | HIGH | kernel: arm64: cacheinfo: Avoid out-of-bounds write to cache | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21791 | linux-libc-dev | HIGH | kernel: vrf: use RCU protection in l3mdev_l3_out() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21794 | linux-libc-dev | HIGH | kernel: HID: hid-thrustmaster: fix stack-out-of-bounds read | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21811 | linux-libc-dev | HIGH | kernel: nilfs2: protect access to buffers with no active ref | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21812 | linux-libc-dev | HIGH | kernel: ax25: rcu protect dev->ax25_ptr | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21855 | linux-libc-dev | HIGH | kernel: ibmvnic: Don't reference skb after sending to VIOS | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21858 | linux-libc-dev | HIGH | kernel: geneve: Fix use-after-free in geneve_find_dev(). | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21863 | linux-libc-dev | HIGH | kernel: io_uring: prevent opcode speculation | 6.1.38-4 | no fix | dagster |
| CVE-2025-21867 | linux-libc-dev | HIGH | kernel: bpf, test_run: Fix use-after-free issue in eth_skb_p | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21887 | linux-libc-dev | HIGH | kernel: ovl: fix UAF in ovl_dentry_update_reval by moving dp | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21905 | linux-libc-dev | HIGH | kernel: wifi: iwlwifi: limit printed string from FW file | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21914 | linux-libc-dev | HIGH | kernel: slimbus: messaging: Free transaction ID in delayed i | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21919 | linux-libc-dev | HIGH | kernel: sched/fair: Fix potential memory corruption in child | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21920 | linux-libc-dev | HIGH | kernel: vlan: enforce underlying device type | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21927 | linux-libc-dev | HIGH | kernel: nvme-tcp: fix potential memory corruption in nvme_tc | 6.1.38-4 | no fix | dagster |
| CVE-2025-21928 | linux-libc-dev | HIGH | kernel: HID: intel-ish-hid: Fix use-after-free issue in isht | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21934 | linux-libc-dev | HIGH | kernel: rapidio: fix an API misues when rio_add_net() fails | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21945 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in smb2_lock | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21946 | linux-libc-dev | HIGH | kernel: ksmbd: fix out-of-bounds in parse_sec_desc() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-21950 | linux-libc-dev | HIGH | kernel: drivers: virt: acrn: hsm: Use kzalloc to avoid info | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21967 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in ksmbd_free_work_struct | 6.1.38-4 | no fix | dagster |
| CVE-2025-21968 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix slab-use-after-free on hdcp_wor | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21969 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: Fix slab-use-after-free Read in l2 | 6.1.38-4 | no fix | dagster |
| CVE-2025-21979 | linux-libc-dev | HIGH | kernel: wifi: cfg80211: cancel wiphy_work before freeing wip | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21985 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix out-of-bound accesses | 6.1.38-4 | no fix | dagster |
| CVE-2025-21991 | linux-libc-dev | HIGH | kernel: x86/microcode/AMD: Fix out-of-bounds on systems with | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21993 | linux-libc-dev | HIGH | kernel: iscsi_ibft: Fix UBSAN shift-out-of-bounds warning in | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22004 | linux-libc-dev | HIGH | kernel: net: atm: fix use after free in lec_send() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22020 | linux-libc-dev | HIGH | kernel: memstick: rtsx_usb_ms: Fix slab-use-after-free in rt | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22022 | linux-libc-dev | HIGH | kernel: usb: xhci: Apply the link chain quirk on NEC isoc en | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-22038 | linux-libc-dev | HIGH | kernel: ksmbd: validate zero num_subauth before sub_auth is | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22039 | linux-libc-dev | HIGH | kernel: ksmbd: fix overflow in dacloffset bounds check | 6.1.38-4 | no fix | dagster |
| CVE-2025-22040 | linux-libc-dev | HIGH | kernel: ksmbd: fix session use-after-free in multichannel co | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22041 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in ksmbd_sessions_deregist | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22056 | linux-libc-dev | HIGH | kernel: netfilter: nft_tunnel: fix geneve_opt type confusion | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22079 | linux-libc-dev | HIGH | kernel: ocfs2: validate l_tree_depth to avoid out-of-bounds | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22083 | linux-libc-dev | HIGH | kernel: vhost-scsi: Fix handling of multiple calls to vhost_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-22088 | linux-libc-dev | HIGH | kernel: RDMA/erdma: Prevent use-after-free in erdma_accept_n | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22104 | linux-libc-dev | HIGH | kernel: ibmvnic: Use kernel helpers for hex dumps | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-22107 | linux-libc-dev | HIGH | kernel: net: dsa: sja1105: fix kasan out-of-bounds warning i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-22121 | linux-libc-dev | HIGH | kernel: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-22126 | linux-libc-dev | HIGH | kernel: md: fix mddev uaf while iterating all_mddevs list | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23133 | linux-libc-dev | HIGH | kernel: wifi: ath11k: update channel list in reg notifier in | 6.1.38-4 | no fix | dagster |
| CVE-2025-23142 | linux-libc-dev | HIGH | kernel: Linux kernel: SCTP use-after-free due to race condit | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23156 | linux-libc-dev | HIGH | kernel: media: venus: hfi_parser: refactor hfi packet parsin | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23157 | linux-libc-dev | HIGH | kernel: media: venus: hfi_parser: add check to avoid out of | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23158 | linux-libc-dev | HIGH | kernel: media: venus: hfi: add check to handle incorrect que | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-24793 | snowflake-connector-python | HIGH | snowflake-connector-python vulnerable to SQL Injection in wr | 3.6.0 | 3.13.1 | dagster |
| CVE-2025-31115 | liblzma5 | HIGH | xz: XZ has a heap-use-after-free bug in threaded .xz decoder | 5.4.1-0.2 | 5.4.1-1 | dagster |
| CVE-2025-32988 | libgnutls30 | HIGH | gnutls: Vulnerability in GnuTLS otherName SAN export | 3.7.9-2 | 3.7.9-2+deb12u5 | dagster |
| CVE-2025-32990 | libgnutls30 | HIGH | gnutls: Vulnerability in GnuTLS certtool template parsing | 3.7.9-2 | 3.7.9-2+deb12u5 | dagster |
| CVE-2025-37738 | linux-libc-dev | HIGH | kernel: ext4: ignore xattrs past end | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37739 | linux-libc-dev | HIGH | kernel: f2fs: fix to avoid out-of-bounds access in f2fs_trun | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37749 | linux-libc-dev | HIGH | kernel: net: ppp: Add bound checking for skb data on ppp_syn | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37750 | linux-libc-dev | HIGH | kernel: smb: client: fix UAF in decryption with multichannel | 6.1.38-4 | no fix | dagster |
| CVE-2025-37752 | linux-libc-dev | HIGH | kernel: net_sched: sch_sfq: move the limit validation | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37776 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in smb_break_all_levII_opl | 6.1.38-4 | no fix | dagster |
| CVE-2025-37777 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in __smb2_lease_break_noti | 6.1.38-4 | no fix | dagster |
| CVE-2025-37778 | linux-libc-dev | HIGH | kernel: ksmbd: Fix dangling pointer in krb_authenticate | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37780 | linux-libc-dev | HIGH | kernel: isofs: Prevent the use of too small fid | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37785 | linux-libc-dev | HIGH | kernel: ext4: fix OOB read when checking dotdot dir | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37786 | linux-libc-dev | HIGH | kernel: net: dsa: free routing table on probe failure | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-37789 | linux-libc-dev | HIGH | kernel: Linux kernel (openvswitch): Denial of Service and li | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37796 | linux-libc-dev | HIGH | kernel: wifi: at76c50x: fix use after free access in at76_di | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37797 | linux-libc-dev | HIGH | kernel: net_sched: hfsc: Fix a UAF vulnerability in class ha | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37798 | linux-libc-dev | HIGH | kernel: codel: remove sch->q.qlen check before qdisc_tree_re | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37803 | linux-libc-dev | HIGH | kernel: udmabuf: fix a buf size overflow issue during udmabu | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37810 | linux-libc-dev | HIGH | kernel: usb: dwc3: gadget: check that event count does not e | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37817 | linux-libc-dev | HIGH | kernel: mcb: fix a double free bug in chameleon_parse_gdd() | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37819 | linux-libc-dev | HIGH | kernel: Linux kernel: irqchip/gic-v2m use-after-free vulnera | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37822 | linux-libc-dev | HIGH | kernel: riscv: uprobes: Add missing fence.i after building t | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-37823 | linux-libc-dev | HIGH | kernel: net_sched: hfsc: Fix a potential UAF in hfsc_dequeue | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37839 | linux-libc-dev | HIGH | kernel: jbd2: remove wrong sb->s_sequence check | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37840 | linux-libc-dev | HIGH | kernel: mtd: rawnand: brcmnand: fix PM resume warning | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37849 | linux-libc-dev | HIGH | kernel: KVM: arm64: Tear down vGIC on failed vCPU creation | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37854 | linux-libc-dev | HIGH | kernel: drm/amdkfd: Fix mode1 reset crash issue | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37861 | linux-libc-dev | HIGH | kernel: scsi: mpi3mr: Synchronous access b/w reset and tm th | 6.1.38-4 | no fix | dagster |
| CVE-2025-37879 | linux-libc-dev | HIGH | kernel: 9p/net: fix improper handling of bogus negative read | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37885 | linux-libc-dev | HIGH | kernel: KVM: x86: Reset IRTE to host control if *new* route | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37890 | linux-libc-dev | HIGH | kernel: net_sched: hfsc: Fix a UAF vulnerability in class wi | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37892 | linux-libc-dev | HIGH | kernel: mtd: inftlcore: Add error check for inftl_read_oob() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37899 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in session logoff | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-37903 | linux-libc-dev | HIGH | kernel: drm/amd/display: Fix slab-use-after-free in hdcp | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37913 | linux-libc-dev | HIGH | kernel: net_sched: qfq: Fix double list add in class with ne | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37914 | linux-libc-dev | HIGH | kernel: net_sched: ets: Fix double list add in class with ne | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37915 | linux-libc-dev | HIGH | kernel: net_sched: drr: Fix double list add in class with ne | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37921 | linux-libc-dev | HIGH | kernel: vxlan: vnifilter: Fix unlocked deletion of default F | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37923 | linux-libc-dev | HIGH | kernel: tracing: Fix oob write in trace_seq_to_buffer() | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37924 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in kerberos authentication | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37926 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in ksmbd_session_rpc_open | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-37927 | linux-libc-dev | HIGH | kernel: Linux kernel: `iommu/amd`: Buffer overflow in `parse | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37928 | linux-libc-dev | HIGH | kernel: dm-bufio: don't schedule in atomic context | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37947 | linux-libc-dev | HIGH | kernel: ksmbd: prevent out-of-bounds stream writes by valida | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37952 | linux-libc-dev | HIGH | kernel: ksmbd: Fix UAF in __close_file_table_ids | 6.1.38-4 | no fix | dagster |
| CVE-2025-37957 | linux-libc-dev | HIGH | kernel: KVM: SVM: Forcibly leave SMM mode on SHUTDOWN interc | 6.1.38-4 | no fix | dagster |
| CVE-2025-37979 | linux-libc-dev | HIGH | kernel: ASoC: qcom: Fix sc7280 lpass potential buffer overfl | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37991 | linux-libc-dev | HIGH | kernel: parisc: Fix double SIGFPE crash | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38000 | linux-libc-dev | HIGH | kernel: sch_hfsc: Fix qlen accounting bug when using peek in | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38004 | linux-libc-dev | HIGH | kernel: can: bcm: add locking for bcm_op runtime updates | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38022 | linux-libc-dev | HIGH | kernel: RDMA/core: Fix "KASAN: slab-use-after-free Read in i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38024 | linux-libc-dev | HIGH | kernel: Linux kernel: RDMA/rxe use-after-free vulnerability | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38027 | linux-libc-dev | HIGH | kernel: regulator: max20086: fix invalid memory access | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38051 | linux-libc-dev | HIGH | kernel: smb: client: Fix use-after-free in cifs_fill_dirent | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38052 | linux-libc-dev | HIGH | kernel: net/tipc: fix slab-use-after-free Read in tipc_aead_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38068 | linux-libc-dev | HIGH | kernel: Linux kernel: LZO compression buffer overrun due to | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38069 | linux-libc-dev | HIGH | kernel: PCI: endpoint: pci-epf-test: Fix double free that ca | 6.1.38-4 | no fix | dagster |
| CVE-2025-38077 | linux-libc-dev | HIGH | kernel: Linux kernel: Buffer overflow in dell-wmi-sysman lea | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38079 | linux-libc-dev | HIGH | kernel: crypto: algif_hash - fix double free in hash_accept | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38081 | linux-libc-dev | HIGH | kernel: spi-rockchip: Fix register out of bounds access | 6.1.38-4 | no fix | dagster |
| CVE-2025-38088 | linux-libc-dev | HIGH | kernel: powerpc/powernv/memtrace: Fix out of bounds issue in | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38102 | linux-libc-dev | HIGH | kernel: VMCI: fix race between vmci_host_setup_notify and vm | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38103 | linux-libc-dev | HIGH | kernel: HID: usbhid: Eliminate recurrent out-of-bounds bug i | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38107 | linux-libc-dev | HIGH | kernel: Linux kernel: Race condition in network scheduler ca | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38108 | linux-libc-dev | HIGH | kernel: net_sched: red: fix a race in __red_change() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38111 | linux-libc-dev | HIGH | kernel: net/mdiobus: Fix potential out-of-bounds read/write | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38117 | linux-libc-dev | HIGH | kernel: Bluetooth: MGMT: Protect mgmt_pending list with its | 6.1.38-4 | no fix | dagster |
| CVE-2025-38118 | linux-libc-dev | HIGH | kernel: Linux kernel: Bluetooth MGMT use-after-free vulnerab | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38129 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free vulnerability in page_p | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38131 | linux-libc-dev | HIGH | kernel: coresight: prevent deactivate active config while en | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38137 | linux-libc-dev | HIGH | kernel: PCI/pwrctrl: Cancel outstanding rescan work when unr | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38146 | linux-libc-dev | HIGH | kernel: Linux kernel Open vSwitch: Denial of Service via mal | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38153 | linux-libc-dev | HIGH | kernel: net: usb: aqc111: fix error handling of usbnet read | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38154 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in BPF sockmap can lead | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38157 | linux-libc-dev | HIGH | kernel: Linux kernel's ath9k_htc Wi-Fi driver: Denial of Ser | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38159 | linux-libc-dev | HIGH | kernel: wifi: rtw88: fix the 'para' buffer size to avoid rea | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38180 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-After-Free vulnerability in ATM su | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38182 | linux-libc-dev | HIGH | kernel: ublk: santizize the arguments from userspace when ad | 6.1.38-4 | no fix | dagster |
| CVE-2025-38183 | linux-libc-dev | HIGH | kernel: net: lan743x: fix potential out-of-bounds write in l | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38187 | linux-libc-dev | HIGH | kernel: drm/nouveau: fix a use-after-free in r535_gsp_rpc_pu | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38198 | linux-libc-dev | HIGH | kernel: fbcon: Make sure modelist not set on unregistered co | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38201 | linux-libc-dev | HIGH | kernel: netfilter: nft_set_pipapo: clamp maximum map bucket | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-38204 | linux-libc-dev | HIGH | kernel: jfs: fix array-index-out-of-bounds read in add_missi | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38206 | linux-libc-dev | HIGH | kernel: Kernel: Double free vulnerability in exFAT filesyste | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38211 | linux-libc-dev | HIGH | kernel: RDMA/iwcm: Fix use-after-free of work objects after | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38212 | linux-libc-dev | HIGH | kernel: ipc: fix to protect IPCS lookups using RCU | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38226 | linux-libc-dev | HIGH | kernel: media: vivid: Change the siize of the composing | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38227 | linux-libc-dev | HIGH | kernel: media: vidtv: Terminating the subsequent process of | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38230 | linux-libc-dev | HIGH | kernel: jfs: validate AG parameters in dbMount() to prevent | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38236 | linux-libc-dev | HIGH | kernel: af_unix: Don't leave consecutive consumed OOB skbs. | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38239 | linux-libc-dev | HIGH | kernel: scsi: megaraid_sas: Fix invalid node index | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38245 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in ATM subsystem due | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38248 | linux-libc-dev | HIGH | kernel: Linux kernel:A use-after-free in bridge multicast in | 6.1.38-4 | no fix | dagster |
| CVE-2025-38249 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Fix out-of-bounds read in snd_usb_g | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38250 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_core: Fix use-after-free in vhci_flus | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38257 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service via integer overflow | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38259 | linux-libc-dev | HIGH | kernel: ASoC: codecs: wcd9335: Fix missing free of regulator | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38280 | linux-libc-dev | HIGH | kernel: bpf: Avoid __bpf_prog_ret0_warn when jit fails | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38286 | linux-libc-dev | HIGH | kernel: pinctrl: at91: Fix possible out-of-boundary access | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38298 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service via out-of-bounds re | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38313 | linux-libc-dev | HIGH | kernel: Linux kernel: Double-free vulnerability in fsl-mc bu | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38320 | linux-libc-dev | HIGH | kernel: Linux kernel: Information disclosure and denial of s | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38323 | linux-libc-dev | HIGH | kernel: net: atm: add lec_mutex | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38342 | linux-libc-dev | HIGH | kernel: software node: Correct a OOB check in software_node_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38346 | linux-libc-dev | HIGH | kernel: ftrace: Fix UAF when lookup kallsym after ftrace dis | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38348 | linux-libc-dev | HIGH | kernel: wifi: p54: prevent buffer-overflow in p54_rx_eeprom_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38350 | linux-libc-dev | HIGH | kernel: net/sched: Always pass notifications when child clas | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38352 | linux-libc-dev | HIGH | kernel: posix-cpu-timers: fix race between handle_posix_cpu_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38361 | linux-libc-dev | HIGH | kernel: drm/amd/display: Check dce_hwseq before dereferencin | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38369 | linux-libc-dev | HIGH | kernel: dmaengine: idxd: Check availability of workqueue all | 6.1.38-4 | no fix | dagster |
| CVE-2025-38375 | linux-libc-dev | HIGH | kernel: virtio-net: ensure the received length does not exce | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38377 | linux-libc-dev | HIGH | kernel: rose: fix dangling neighbour pointers in rose_rt_dev | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38385 | linux-libc-dev | HIGH | kernel: net: usb: lan78xx: fix WARN in __netif_napi_del_lock | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38389 | linux-libc-dev | HIGH | kernel: drm/i915/gt: Fix timeline left held on VMA alloc err | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38395 | linux-libc-dev | HIGH | kernel: regulator: gpio: Fix the out-of-bounds access to drv | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38396 | linux-libc-dev | HIGH | kernel: fs: export anon_inode_make_secure_inode() and fix se | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38401 | linux-libc-dev | HIGH | kernel: mtk-sd: Prevent memory corruption from DMA map failu | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38403 | linux-libc-dev | HIGH | kernel: Kernel: Privilege escalation via uninitialized data | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38415 | linux-libc-dev | HIGH | kernel: Linux kernel: Memory corruption in Squashfs due to i | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38416 | linux-libc-dev | HIGH | kernel: NFC: nci: uart: Set tty->disc_data only in success p | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38421 | linux-libc-dev | HIGH | kernel: platform/x86/amd: pmf: Use device managed allocation | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38422 | linux-libc-dev | HIGH | kernel: net: lan743x: Modify the EEPROM and OTP size for PCI | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38425 | linux-libc-dev | HIGH | kernel: Linux kernel (i2c Tegra): Information disclosure or | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38428 | linux-libc-dev | HIGH | kernel: Input: ims-pcu - check record size in ims_pcu_flash_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38437 | linux-libc-dev | HIGH | kernel: ksmbd: fix potential use-after-free in oplock/lease | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38443 | linux-libc-dev | HIGH | kernel: nbd: fix uaf in nbd_genl_connect() error path | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38445 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service due to stack memory | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38456 | linux-libc-dev | HIGH | kernel: ipmi:msghandler: Fix potential memory corruption in | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38459 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in ATM CLIP module v | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38464 | linux-libc-dev | HIGH | kernel: tipc: Fix use-after-free in tipc_conn_close() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38471 | linux-libc-dev | HIGH | kernel: tls: always refresh the queue when reading sock | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38476 | linux-libc-dev | HIGH | kernel: rpl: Fix use-after-free in rpl_do_srh_inline() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38482 | linux-libc-dev | HIGH | kernel: comedi: das6402: Fix bit shift out of bounds | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38483 | linux-libc-dev | HIGH | kernel: comedi: das16m1: Fix bit shift out of bounds | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38485 | linux-libc-dev | HIGH | kernel: iio: accel: fxls8962af: Fix use after free in fxls89 | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38488 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in SMB client due to | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38494 | linux-libc-dev | HIGH | kernel: HID: core: do not bypass hid_hw_raw_request | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38497 | linux-libc-dev | HIGH | kernel: usb: gadget: configfs: Fix OOB read on empty string | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38500 | linux-libc-dev | HIGH | kernel: xfrm: interface: fix use-after-free after changing c | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38501 | linux-libc-dev | HIGH | kernel: ksmbd: limit repeated connections from clients with | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38502 | linux-libc-dev | HIGH | kernel: bpf: Fix oob access in cgroup local storage | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38512 | linux-libc-dev | HIGH | kernel: wifi: prevent A-MSDU attacks in mesh networks | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38527 | linux-libc-dev | HIGH | kernel: smb: client: fix use-after-free in cifs_oplock_break | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38529 | linux-libc-dev | HIGH | kernel: comedi: aio_iiro_16: Fix bit shift out of bounds | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38530 | linux-libc-dev | HIGH | kernel: comedi: pcl812: Fix bit shift out of bounds | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38535 | linux-libc-dev | HIGH | kernel: phy: tegra: xusb: Fix unbalanced regulator disable i | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38538 | linux-libc-dev | HIGH | kernel: dmaengine: nbpfaxi: Fix memory corruption in probe() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38548 | linux-libc-dev | HIGH | kernel: hwmon: (corsair-cpro) Validate the size of the recei | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38550 | linux-libc-dev | HIGH | kernel: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38552 | linux-libc-dev | HIGH | kernel: mptcp: plug races between subflow fail and subflow c | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38555 | linux-libc-dev | HIGH | kernel: usb: gadget : fix use-after-free in composite_dev_cl | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38556 | linux-libc-dev | HIGH | kernel: HID: core: Harden s32ton() against conversion to 0 b | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-38563 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in perf subsystem du | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38565 | linux-libc-dev | HIGH | kernel: perf/core: Exit early on perf_mmap() fail | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38572 | linux-libc-dev | HIGH | kernel: ipv6: reject malicious packets in ipv6_gso_segment() | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38574 | linux-libc-dev | HIGH | kernel: pptp: ensure minimal skb length in pptp_xmit() | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38579 | linux-libc-dev | HIGH | kernel: f2fs: fix KMSAN uninit-value in extent_info usage | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38582 | linux-libc-dev | HIGH | kernel: RDMA/hns: Fix double destruction of rsv_qp | 6.1.38-4 | no fix | dagster |
| CVE-2025-38584 | linux-libc-dev | HIGH | kernel: padata: Fix pd UAF once and for all | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38585 | linux-libc-dev | HIGH | kernel: staging: media: atomisp: Fix stack buffer overflow i | 6.1.38-4 | no fix | dagster |
| CVE-2025-38593 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in Bluetooth subsyst | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-38595 | linux-libc-dev | HIGH | kernel: xen: fix UAF in dmabuf_exp_from_pages() | 6.1.38-4 | no fix | dagster |
| CVE-2025-38616 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in kTLS due to race | 6.1.38-4 | no fix | dagster |
| CVE-2025-38618 | linux-libc-dev | HIGH | kernel: vsock: Do not allow binding to VMADDR_PORT_ANY | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38627 | linux-libc-dev | HIGH | kernel: f2fs: compress: fix UAF of f2fs_inode_info in f2fs_f | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38636 | linux-libc-dev | HIGH | kernel: rv: Use strings in da monitors tracepoints | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38652 | linux-libc-dev | HIGH | kernel: f2fs: fix to avoid out-of-boundary access in devs.pa | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38653 | linux-libc-dev | HIGH | kernel: proc: use the same treatment to check proc_lseek as | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38666 | linux-libc-dev | HIGH | kernel: net: appletalk: Fix use-after-free in AARP proxy pro | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38670 | linux-libc-dev | HIGH | kernel: arm64/entry: Mask DAIF in cpu_switch_to(), call_on_i | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38676 | linux-libc-dev | HIGH | kernel: iommu/amd: Avoid stack buffer overflow from kernel c | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38677 | linux-libc-dev | HIGH | kernel: f2fs: fix to avoid out-of-boundary access in dnode p | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38679 | linux-libc-dev | HIGH | kernel: media: venus: Fix OOB read due to missing payload bo | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38680 | linux-libc-dev | HIGH | kernel: media: uvcvideo: Fix 1-byte out-of-bounds read in uv | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38685 | linux-libc-dev | HIGH | kernel: fbdev: Fix vmalloc out-of-bounds write in fast_image | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38697 | linux-libc-dev | HIGH | kernel: jfs: upper bound check of tree index in dbAllocAG | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38699 | linux-libc-dev | HIGH | kernel: scsi: bfa: Double-free fix | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38702 | linux-libc-dev | HIGH | kernel: fbdev: fix potential buffer overflow in do_register_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38704 | linux-libc-dev | HIGH | kernel: rcu/nocb: Fix possible invalid rdp's->nocb_cb_kthrea | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38707 | linux-libc-dev | HIGH | kernel: fs/ntfs3: Add sanity check for file name | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38708 | linux-libc-dev | HIGH | kernel: drbd: add missing kref_get in handle_write_conflicts | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38713 | linux-libc-dev | HIGH | kernel: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2 | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38714 | linux-libc-dev | HIGH | kernel: hfsplus: fix slab-out-of-bounds in hfsplus_bnode_rea | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38715 | linux-libc-dev | HIGH | kernel: hfs: fix slab-out-of-bounds in hfs_bnode_read() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38718 | linux-libc-dev | HIGH | kernel: sctp: linearize cloned gso packets in sctp_rcv | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38722 | linux-libc-dev | HIGH | kernel: habanalabs: fix UAF in export_dmabuf() | 6.1.38-4 | no fix | dagster |
| CVE-2025-38724 | linux-libc-dev | HIGH | kernel: nfsd: handle get_client_locked() failure in nfsd4_se | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38728 | linux-libc-dev | HIGH | kernel: smb3: fix for slab out of bounds on mount to ksmbd | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38729 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Validate UAC3 power domain descript | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38734 | linux-libc-dev | HIGH | kernel: net/smc: fix UAF on smcsk after smc_listen_out() | 6.1.38-4 | no fix | dagster |
| CVE-2025-38736 | linux-libc-dev | HIGH | kernel: net: usb: asix_devices: Fix PHY address mask in MDIO | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39682 | linux-libc-dev | HIGH | kernel: tls: fix handling of zero-length records on the rx_l | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39683 | linux-libc-dev | HIGH | kernel: tracing: Limit access to parser->buffer when trace_g | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39685 | linux-libc-dev | HIGH | kernel: comedi: pcl726: Prevent invalid irq number | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39686 | linux-libc-dev | HIGH | kernel: comedi: Make insn_rw_emulate_bits() do insn->n sampl | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39687 | linux-libc-dev | HIGH | kernel: iio: light: as73211: Ensure buffer holes are zeroed | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39689 | linux-libc-dev | HIGH | kernel: ftrace: Also allocate and copy hash for reading of f | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39691 | linux-libc-dev | HIGH | kernel: fs/buffer: fix use-after-free when call bh_read() he | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39701 | linux-libc-dev | HIGH | kernel: ACPI: pfr_update: Fix the driver update version chec | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39702 | linux-libc-dev | HIGH | kernel: ipv6: sr: Fix MAC comparison to be constant-time | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39710 | linux-libc-dev | HIGH | kernel: media: venus: Add a check for packet size after read | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39719 | linux-libc-dev | HIGH | kernel: iio: imu: bno055: fix OOB access of hw_xlate array | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39730 | linux-libc-dev | HIGH | kernel: NFS: Fix filehandle bounds checking in nfs_fh_to_den | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-39735 | linux-libc-dev | HIGH | kernel: jfs: fix slab-out-of-bounds read in ea_get() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-39738 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in Btrfs due to relo | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39743 | linux-libc-dev | HIGH | kernel: jfs: truncate good inode pages when hard link is 0 | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39744 | linux-libc-dev | HIGH | kernel: rcu: Fix rcu_read_unlock() deadloop due to IRQ work | 6.1.38-4 | no fix | dagster |
| CVE-2025-39749 | linux-libc-dev | HIGH | kernel: rcu: Protect ->defer_qs_iw_pending from data race | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39757 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Validate UAC3 cluster segment descr | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39759 | linux-libc-dev | HIGH | kernel: Linux kernel (btrfs): Use-after-free in qgroup due t | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39760 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service via out-of-bounds re | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39766 | linux-libc-dev | HIGH | kernel: net/sched: Make cake_enqueue return NET_XMIT_CN when | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39776 | linux-libc-dev | HIGH | kernel: mm/debug_vm_pgtable: clear page table entries at des | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39783 | linux-libc-dev | HIGH | kernel: PCI: endpoint: Fix configfs group list head handling | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39788 | linux-libc-dev | HIGH | kernel: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39790 | linux-libc-dev | HIGH | kernel: bus: mhi: host: Detect events pointing to unexpected | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39797 | linux-libc-dev | HIGH | kernel: xfrm: Duplicate SPI Handling | 6.1.38-4 | no fix | dagster |
| CVE-2025-39806 | linux-libc-dev | HIGH | kernel: HID: multitouch: fix slab out-of-bounds access in mt | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39810 | linux-libc-dev | HIGH | kernel: bnxt_en: Fix memory corruption when FW resources cha | 6.1.38-4 | no fix | dagster |
| CVE-2025-39817 | linux-libc-dev | HIGH | kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compa | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39823 | linux-libc-dev | HIGH | kernel: KVM: x86: use array_index_nospec with indices that c | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39824 | linux-libc-dev | HIGH | kernel: Linux kernel (ASUS HID): Use-after-free vulnerabilit | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39826 | linux-libc-dev | HIGH | kernel: net: rose: convert 'use' field to refcount_t | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39828 | linux-libc-dev | HIGH | kernel: atm: atmtcp: Prevent arbitrary write in atmtcp_recv_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39835 | linux-libc-dev | HIGH | kernel: xfs: do not propagate ENODATA disk errors into xattr | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39839 | linux-libc-dev | HIGH | kernel: batman-adv: fix OOB read/write in network-coding dec | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39841 | linux-libc-dev | HIGH | kernel: scsi: lpfc: Fix buffer free/clear order in deferred | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39849 | linux-libc-dev | HIGH | kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_c | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39853 | linux-libc-dev | HIGH | kernel: i40e: Fix potential invalid access when MAC list is | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39859 | linux-libc-dev | HIGH | kernel: ptp: ocp: fix use-after-free bugs causing by ptp_ocp | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39860 | linux-libc-dev | HIGH | kernel: Bluetooth: Fix use-after-free in l2cap_sock_cleanup_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39862 | linux-libc-dev | HIGH | kernel: wifi: mt76: mt7915: fix list corruption after hardwa | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-39863 | linux-libc-dev | HIGH | kernel: wifi: brcmfmac: fix use-after-free when rescheduling | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-39864 | linux-libc-dev | HIGH | kernel: wifi: cfg80211: fix use-after-free in cmp_bss() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39866 | linux-libc-dev | HIGH | kernel: fs: writeback: fix use-after-free in __mark_inode_di | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39869 | linux-libc-dev | HIGH | kernel: dmaengine: ti: edma: Fix memory allocation size for | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39870 | linux-libc-dev | HIGH | kernel: dmaengine: idxd: Fix double free in idxd_setup_wqs() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39871 | linux-libc-dev | HIGH | kernel: dmaengine: idxd: Remove improper idxd_free | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-39873 | linux-libc-dev | HIGH | kernel: can: xilinx_can: xcan_write_frame(): fix use-after-f | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39877 | linux-libc-dev | HIGH | kernel: mm/damon/sysfs: fix use-after-free in state_show() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39880 | linux-libc-dev | HIGH | kernel: libceph: fix invalid accesses to ceph_connection_v1_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39881 | linux-libc-dev | HIGH | kernel: kernfs: Fix UAF in polling when open file is release | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39883 | linux-libc-dev | HIGH | kernel: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(p | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39891 | linux-libc-dev | HIGH | kernel: wifi: mwifiex: Initialize the chan_stats array to ze | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39901 | linux-libc-dev | HIGH | kernel: i40e: remove read access to debugfs files | 6.1.38-4 | no fix | dagster |
| CVE-2025-39911 | linux-libc-dev | HIGH | kernel: i40e: fix IRQ freeing in i40e_vsi_request_irq_msix e | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39913 | linux-libc-dev | HIGH | kernel: tcp_bpf: Call sk_msg_free() when tcp_bpf_send_verdic | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39943 | linux-libc-dev | HIGH | kernel: ksmbd: smbdirect: validate data_offset and data_leng | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39944 | linux-libc-dev | HIGH | kernel: octeontx2-pf: Fix use-after-free bugs in otx2_sync_t | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39945 | linux-libc-dev | HIGH | kernel: cnic: Fix use-after-free bugs in cnic_delete_task | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39951 | linux-libc-dev | HIGH | kernel: um: virtio_uml: Fix use-after-free after put_device | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39952 | linux-libc-dev | HIGH | kernel: wifi: wilc1000: avoid buffer overflow in WID string | 6.1.38-4 | no fix | dagster |
| CVE-2025-39955 | linux-libc-dev | HIGH | kernel: tcp: Clear tcp_sk(sk)->fastopen_rsk in tcp_disconnec | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39957 | linux-libc-dev | HIGH | kernel: wifi: mac80211: increase scan_ies_len for S1G | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39958 | linux-libc-dev | HIGH | kernel: iommu/s390: Make attach succeed when the device was | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-39967 | linux-libc-dev | HIGH | kernel: fbcon: fix integer overflow in fbcon_do_set_font | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39971 | linux-libc-dev | HIGH | kernel: i40e: fix idx validation in config queues msg | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39973 | linux-libc-dev | HIGH | kernel: i40e: add validation for ring_len param | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39981 | linux-libc-dev | HIGH | kernel: Bluetooth: MGMT: Fix possible UAFs | 6.1.38-4 | no fix | dagster |
| CVE-2025-39982 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_event: Fix UAF in hci_acl_create_conn | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39993 | linux-libc-dev | HIGH | kernel: media: rc: fix races with imon_disconnect() | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40064 | linux-libc-dev | HIGH | kernel: smc: Fix use-after-free in __pnet_find_base_ndev() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40082 | linux-libc-dev | HIGH | kernel: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2 | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-40096 | linux-libc-dev | HIGH | kernel: drm/sched: Fix potential double free in drm_sched_jo | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40135 | linux-libc-dev | HIGH | kernel: ipv6: use RCU in ip6_xmit() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-40141 | linux-libc-dev | HIGH | kernel: Bluetooth: ISO: Fix possible UAF on iso_conn_free | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40149 | linux-libc-dev | HIGH | kernel: tls: Use __sk_dst_get() and dst_dev_rcu() in get_net | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-40154 | linux-libc-dev | HIGH | kernel: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input m | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40158 | linux-libc-dev | HIGH | kernel: ipv6: use RCU in ip6_output() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40168 | linux-libc-dev | HIGH | kernel: smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40170 | linux-libc-dev | HIGH | kernel: net: use dst_dev_rcu() in sk_setup_caps() | 6.1.38-4 | no fix | dagster |
| CVE-2025-40176 | linux-libc-dev | HIGH | kernel: tls: wait for pending async decryptions if tls_strp_ | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40186 | linux-libc-dev | HIGH | kernel: Linux kernel: Privilege escalation or Denial of Serv | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40240 | linux-libc-dev | HIGH | kernel: sctp: avoid NULL dereference when chunk data buffer | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40248 | linux-libc-dev | HIGH | kernel: Linux kernel: vsock vulnerability may lead to memory | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40258 | linux-libc-dev | HIGH | kernel: mptcp: fix race condition in mptcp_schedule_work() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40259 | linux-libc-dev | HIGH | kernel: scsi: sg: Do not sleep in atomic context | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40269 | linux-libc-dev | HIGH | kernel: Linux kernel ALSA USB audio driver: Buffer overflow | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40271 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in proc_readdir_de() ca | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40277 | linux-libc-dev | HIGH | kernel: drm/vmwgfx: Validate command header size against SVG | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40294 | linux-libc-dev | HIGH | kernel: Linux kernel: Out-of-bounds write in Bluetooth MGMT | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40301 | linux-libc-dev | HIGH | kernel: Linux kernel: Information disclosure and denial of s | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40304 | linux-libc-dev | HIGH | kernel: Linux kernel: Out-of-bounds write in fbdev can lead | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40318 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_sync: fix race in hci_cmd_sync_dequeu | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40322 | linux-libc-dev | HIGH | kernel: Linux kernel: Information disclosure and denial of s | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40328 | linux-libc-dev | HIGH | kernel: smb: client: fix potential UAF in smb2_close_cached_ | 6.1.38-4 | no fix | dagster |
| CVE-2025-40349 | linux-libc-dev | HIGH | kernel: hfs: validate record offset in hfsplus_bmap_alloc | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40351 | linux-libc-dev | HIGH | kernel: hfsplus: fix KMSAN uninit-value issue in hfsplus_del | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40364 | linux-libc-dev | HIGH | kernel: io_uring: fix io_req_prep_async with provided buffer | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-47273 | setuptools | HIGH | setuptools: Path Traversal Vulnerability in setuptools Packa | 65.5.1 | 78.1.1 | dagster |
| CVE-2025-47907 | stdlib | HIGH | database/sql: Postgres Scan Race Condition | v1.22.4 | 1.23.12, 1.24.6 | dagster |
| CVE-2025-4802 | libc-bin | HIGH | glibc: static setuid binary dlopen may incorrectly search LD | 2.36-9+deb12u1 | 2.36-9+deb12u11 | dagster |
| CVE-2025-4802 | libc-dev-bin | HIGH | glibc: static setuid binary dlopen may incorrectly search LD | 2.36-9+deb12u1 | 2.36-9+deb12u11 | dagster |
| CVE-2025-4802 | libc6 | HIGH | glibc: static setuid binary dlopen may incorrectly search LD | 2.36-9+deb12u1 | 2.36-9+deb12u11 | dagster |
| CVE-2025-4802 | libc6-dev | HIGH | glibc: static setuid binary dlopen may incorrectly search LD | 2.36-9+deb12u1 | 2.36-9+deb12u11 | dagster |
| CVE-2025-58183 | stdlib | HIGH | golang: archive/tar: Unbounded allocation when parsing GNU s | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-6020 | libpam-modules | HIGH | linux-pam: Linux-pam directory Traversal | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2025-6020 | libpam-modules-bin | HIGH | linux-pam: Linux-pam directory Traversal | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2025-6020 | libpam-runtime | HIGH | linux-pam: Linux-pam directory Traversal | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2025-6020 | libpam0g | HIGH | linux-pam: Linux-pam directory Traversal | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2025-61726 | stdlib | HIGH | golang: net/url: Memory exhaustion in query parameter parsin | v1.22.4 | 1.24.12, 1.25.6 | dagster |
| CVE-2025-61728 | stdlib | HIGH | golang: archive/zip: Excessive CPU consumption when building | v1.22.4 | 1.24.12, 1.25.6 | dagster |
| CVE-2025-61729 | stdlib | HIGH | crypto/x509: golang: Denial of Service due to excessive reso | v1.22.4 | 1.24.11, 1.25.5 | dagster |
| CVE-2025-68168 | linux-libc-dev | HIGH | kernel: jfs: fix uninitialized waitqueue in transaction mana | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68183 | linux-libc-dev | HIGH | kernel: ima: don't clear IMA_DIGSIG flag when setting or rem | 6.1.38-4 | no fix | dagster |
| CVE-2025-68285 | linux-libc-dev | HIGH | kernel: libceph: fix potential use-after-free in have_mon_an | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68287 | linux-libc-dev | HIGH | kernel: usb: dwc3: Fix race condition between concurrent dwc | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68301 | linux-libc-dev | HIGH | kernel: net: atlantic: fix fragment overflow handling in RX | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68324 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service via use-after-free i | 6.1.38-4 | no fix | dagster |
| CVE-2025-68347 | linux-libc-dev | HIGH | kernel: ALSA: firewire-motu: fix buffer overflow in hwdep re | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68349 | linux-libc-dev | HIGH | kernel: NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68366 | linux-libc-dev | HIGH | kernel: nbd: defer config unlock in nbd_genl_connect | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68371 | linux-libc-dev | HIGH | kernel: scsi: smartpqi: Fix device resources accessed after | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68724 | linux-libc-dev | HIGH | kernel: crypto: asymmetric_keys - prevent overflow in asymme | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68800 | linux-libc-dev | HIGH | kernel: mlxsw: spectrum_mr: Fix use-after-free when updating | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68817 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in ksmbd_tree_connect_put | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68973 | gpgv | HIGH | GnuPG: GnuPG: Information disclosure and potential arbitrary | 2.2.40-1.1 | 2.2.40-1.1+deb12u2 | dagster |
| CVE-2025-69223 | aiohttp | HIGH | aiohttp: AIOHTTP's HTTP Parser auto_decompress feature is vu | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69720 | libncursesw6 | HIGH | ncurses: ncurses: Buffer overflow vulnerability may lead to | 6.4-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-69720 | libtinfo6 | HIGH | ncurses: ncurses: Buffer overflow vulnerability may lead to | 6.4-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-69720 | ncurses-base | HIGH | ncurses: ncurses: Buffer overflow vulnerability may lead to | 6.4-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-69720 | ncurses-bin | HIGH | ncurses: ncurses: Buffer overflow vulnerability may lead to | 6.4-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-71068 | linux-libc-dev | HIGH | kernel: svcrdma: bound check rq_pages index in inline path | 6.1.38-4 | no fix | dagster |
| CVE-2025-71071 | linux-libc-dev | HIGH | kernel: iommu/mediatek: fix use-after-free on probe deferral | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71073 | linux-libc-dev | HIGH | kernel: Input: lkkbd - disable pending work before freeing d | 6.1.38-4 | no fix | dagster |
| CVE-2025-71075 | linux-libc-dev | HIGH | kernel: scsi: aic94xx: fix use-after-free in device removal | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71078 | linux-libc-dev | HIGH | kernel: powerpc/64s/slb: Fix SLB multihit issue during SLB p | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71082 | linux-libc-dev | HIGH | kernel: Bluetooth: btusb: revert use of devm_kzalloc in btus | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71086 | linux-libc-dev | HIGH | kernel: net: rose: fix invalid array index in rose_kill_by_d | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71089 | linux-libc-dev | HIGH | kernel: iommu: disable SVA when CONFIG_X86 is set | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71091 | linux-libc-dev | HIGH | kernel: team: fix check for port enabled in team_queue_overr | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71093 | linux-libc-dev | HIGH | kernel: e1000: fix OOB in e1000_tbi_should_accept() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71112 | linux-libc-dev | HIGH | kernel: net: hns3: add VLAN id validation before using | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71116 | linux-libc-dev | HIGH | kernel: libceph: make decode_pool() more resilient against c | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71123 | linux-libc-dev | HIGH | kernel: ext4: fix string copying in parse_apply_sb_mount_opt | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71133 | linux-libc-dev | HIGH | kernel: RDMA/irdma: avoid invalid read in irdma_net_event | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71136 | linux-libc-dev | HIGH | kernel: media: adv7842: Avoid possible out-of-bounds array a | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71137 | linux-libc-dev | HIGH | kernel: octeontx2-pf: fix "UBSAN: shift-out-of-bounds error" | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71152 | linux-libc-dev | HIGH | kernel: net: dsa: properly keep track of conduit reference | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-71162 | linux-libc-dev | HIGH | kernel: dmaengine: tegra-adma: Fix use-after-free | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71220 | linux-libc-dev | HIGH | kernel: smb/server: call ksmbd_session_rpc_close() on error | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71221 | linux-libc-dev | HIGH | kernel: dmaengine: mmp_pdma: Fix race condition in mmp_pdma_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-71238 | linux-libc-dev | HIGH | kernel: Linux kernel (qla2xxx): Double free vulnerability le | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-0861 | libc-bin | HIGH | glibc: Integer overflow in memalign leads to heap corruption | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-0861 | libc-dev-bin | HIGH | glibc: Integer overflow in memalign leads to heap corruption | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-0861 | libc6 | HIGH | glibc: Integer overflow in memalign leads to heap corruption | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-0861 | libc6-dev | HIGH | glibc: Integer overflow in memalign leads to heap corruption | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-0994 | protobuf | HIGH | python: protobuf: Protobuf: Denial of Service due to recursi | 4.25.9 | 6.33.5, 5.29.6 | dagster |
| CVE-2026-22980 | linux-libc-dev | HIGH | kernel: nfsd: provide locking for v4_end_grace | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22984 | linux-libc-dev | HIGH | kernel: libceph: prevent potential out-of-bounds reads in ha | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22998 | linux-libc-dev | HIGH | kernel: nvme-tcp: fix NULL pointer dereferences in nvmet_tcp | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23001 | linux-libc-dev | HIGH | kernel: macvlan: fix possible UAF in macvlan_forward_source( | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23010 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in IPv6 address deletio | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23025 | linux-libc-dev | HIGH | kernel: mm/page_alloc: prevent pcp corruption with SMP=n | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23050 | linux-libc-dev | HIGH | kernel: pNFS: Fix a deadlock when returning a delegation dur | 6.1.38-4 | no fix | dagster |
| CVE-2026-23054 | linux-libc-dev | HIGH | kernel: net: hv_netvsc: reject RSS hash key programming with | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23068 | linux-libc-dev | HIGH | kernel: spi: spi-sprd-adi: Fix double free in probe error pa | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23073 | linux-libc-dev | HIGH | kernel: wifi: rsi: Fix memory corruption due to not set vif | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23074 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in teql queueing discip | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23076 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service in ALSA ctxfi driver | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23078 | linux-libc-dev | HIGH | kernel: ALSA: scarlett2: Fix buffer overflow in config retri | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23083 | linux-libc-dev | HIGH | kernel: fou: Don't allow 0 for FOU_ATTR_IPPROTO | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23089 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Fix use-after-free in snd_usb_mixer | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23098 | linux-libc-dev | HIGH | kernel: netrom: fix double-free in nr_route_frame() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23099 | linux-libc-dev | HIGH | kernel: bonding: limit BOND_MODE_8023AD to Ethernet devices | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23102 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of Service due to incorrect SVE | 6.1.38-4 | 6.1.162-1 | dagster, slack-rqd-api |
| CVE-2026-23111 | linux-libc-dev | HIGH | kernel: Kernel: Privilege escalation or denial of service in | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23156 | linux-libc-dev | HIGH | kernel: Linux kernel: Information disclosure in efivarfs via | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23171 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in bonding module can c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23187 | linux-libc-dev | HIGH | kernel: pmdomain: imx8m-blk-ctrl: fix out-of-range access of | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23191 | linux-libc-dev | HIGH | kernel: ALSA: aloop: Fix racy access at PCM trigger | 6.1.38-4 | no fix | dagster |
| CVE-2026-23193 | linux-libc-dev | HIGH | kernel: scsi: target: iscsi: Fix use-after-free in iscsit_de | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23204 | linux-libc-dev | HIGH | kernel: net/sched: cls_u32: use skb_header_pointer_careful() | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2026-23208 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Prevent excessive number of frames | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23209 | linux-libc-dev | HIGH | kernel: macvlan: fix error recovery in macvlan_common_newlin | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23216 | linux-libc-dev | HIGH | kernel: scsi: target: iscsi: Fix use-after-free in iscsit_de | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23221 | linux-libc-dev | HIGH | kernel: bus: fsl-mc: fix use-after-free in driver_override_s | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23226 | linux-libc-dev | HIGH | kernel: ksmbd: add chann_lock to protect ksmbd_chann_list xa | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23227 | linux-libc-dev | HIGH | kernel: drm/exynos: vidi: use ctx->lock to protect struct vi | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23231 | linux-libc-dev | HIGH | kernel: kernel: Privilege escalation or denial of service vi | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23234 | linux-libc-dev | HIGH | kernel: f2fs: fix to avoid UAF in f2fs_write_end_io() | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23235 | linux-libc-dev | HIGH | kernel: f2fs: fix out-of-bounds access in sysfs attribute re | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23243 | linux-libc-dev | HIGH | kernel: Linux kernel: Denial of service and memory corruptio | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23268 | linux-libc-dev | HIGH | kernel: apparmor: fix unprivileged local user can do privile | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23270 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in traffic control (act | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23315 | linux-libc-dev | HIGH | kernel: wifi: mt76: Fix possible oob access in mt76_connac2_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23318 | linux-libc-dev | HIGH | kernel: ALSA: usb-audio: Use correct version for UAC3 header | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23319 | linux-libc-dev | HIGH | kernel: bpf: Fix a UAF issue in bpf_trampoline_link_cgroup_s | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23325 | linux-libc-dev | HIGH | kernel: wifi: mt76: mt7996: Fix possible oob access in mt799 | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23327 | linux-libc-dev | HIGH | kernel: cxl/mbox: validate payload size before accessing con | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23343 | linux-libc-dev | HIGH | kernel: xdp: produce a warning when calculated tailroom is n | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23354 | linux-libc-dev | HIGH | kernel: x86/fred: Correct speculative safety in fred_extint( | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23359 | linux-libc-dev | HIGH | kernel: bpf: Fix stack-out-of-bounds write in devmap | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23361 | linux-libc-dev | HIGH | kernel: PCI: dwc: ep: Flush MSI-X write before unmapping its | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23363 | linux-libc-dev | HIGH | kernel: wifi: mt76: mt7925: Fix possible oob access in mt792 | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23378 | linux-libc-dev | HIGH | kernel: net/sched: act_ife: Fix metalist update behavior | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23387 | linux-libc-dev | HIGH | kernel: pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_ | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23388 | linux-libc-dev | HIGH | kernel: Squashfs: check metadata block offset is within rang | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23392 | linux-libc-dev | HIGH | kernel: netfilter: nf_tables: release flowtable after rcu gr | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23395 | linux-libc-dev | HIGH | kernel: Bluetooth: L2CAP: Fix accepting multiple L2CAP_ECRED | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23397 | linux-libc-dev | HIGH | Linux kernel: nfnetlink_osf: Linux kernel: Denial of Service | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23408 | linux-libc-dev | HIGH | kernel: apparmor: Fix double free of ns_name in aa_replace_p | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23410 | linux-libc-dev | HIGH | kernel: apparmor: fix race on rawdata dereference | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23411 | linux-libc-dev | HIGH | kernel: apparmor: fix race between freeing data and fs acces | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23412 | linux-libc-dev | HIGH | kernel: netfilter: bpf: defer hook memory release until rcu | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23413 | linux-libc-dev | HIGH | kernel: clsact: Fix use-after-free in init/destroy rollback | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23422 | linux-libc-dev | HIGH | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23427 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free in durable v2 replay of ac | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23428 | linux-libc-dev | HIGH | kernel: ksmbd: fix use-after-free of share_conf in compound | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23447 | linux-libc-dev | HIGH | kernel: net: usb: cdc_ncm: add ndpoffset to NDP32 nframes bo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23455 | linux-libc-dev | HIGH | kernel: netfilter: nf_conntrack_h323: check for zero length | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23949 | jaraco.context | HIGH | jaraco.context: jaraco.context: Path traversal via malicious | 5.3.0 | 6.1.0 | slack-rqd-api |
| CVE-2026-24049 | wheel | HIGH | wheel: wheel: Privilege Escalation or Arbitrary Code Executi | 0.41.1 | 0.46.2 | dagster, slack-rqd-api |
| CVE-2026-25210 | libexpat1 | HIGH | libexpat: libexpat: Information disclosure and data integrit | 2.5.0-1 | no fix | dagster |
| CVE-2026-25679 | stdlib | HIGH | net/url: Incorrect parsing of IPv6 host literals in net/url | v1.22.4 | 1.25.8, 1.26.1 | dagster |
| CVE-2026-26007 | cryptography | HIGH | cryptography: cryptography Subgroup Attack Due to Missing Su | 41.0.5 | 46.0.5 | dagster |
| CVE-2026-27135 | libnghttp2-14 | HIGH | nghttp2: nghttp2: Denial of Service via malformed HTTP/2 fra | 1.52.0-1+deb12u2 | no fix | dagster |
| CVE-2026-27459 | pyOpenSSL | HIGH | pyOpenSSL: DTLS cookie callback buffer overflow | 23.3.0 | 26.0.0 | dagster |
| CVE-2026-28387 | libssl3t64 | HIGH | openssl: OpenSSL: Arbitrary code execution due to use-after- | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28387 | openssl | HIGH | openssl: OpenSSL: Arbitrary code execution due to use-after- | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28387 | openssl-provider-legacy | HIGH | openssl: OpenSSL: Arbitrary code execution due to use-after- | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28388 | libssl3t64 | HIGH | openssl: OpenSSL: Denial of Service due to NULL pointer dere | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28388 | openssl | HIGH | openssl: OpenSSL: Denial of Service due to NULL pointer dere | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28388 | openssl-provider-legacy | HIGH | openssl: OpenSSL: Denial of Service due to NULL pointer dere | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28389 | libssl3t64 | HIGH | openssl: OpenSSL: Denial of Service vulnerability in CMS pro | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28389 | openssl | HIGH | openssl: OpenSSL: Denial of Service vulnerability in CMS pro | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28389 | openssl-provider-legacy | HIGH | openssl: OpenSSL: Denial of Service vulnerability in CMS pro | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28390 | libssl3t64 | HIGH | openssl: OpenSSL: Denial of Service due to NULL pointer dere | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28390 | openssl | HIGH | openssl: OpenSSL: Denial of Service due to NULL pointer dere | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-28390 | openssl-provider-legacy | HIGH | openssl: OpenSSL: Denial of Service due to NULL pointer dere | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-29111 | libsystemd0 | HIGH | systemd: systemd: Arbitrary code execution or Denial of Serv | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-29111 | libudev1 | HIGH | systemd: systemd: Arbitrary code execution or Denial of Serv | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-31402 | linux-libc-dev | HIGH | kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31408 | linux-libc-dev | HIGH | kernel: Bluetooth: SCO: Fix use-after-free in sco_recv_frame | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31411 | linux-libc-dev | HIGH | kernel: net: atm: fix crash due to unvalidated vcc pointer i | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31419 | linux-libc-dev | HIGH | kernel: Linux kernel: Use-after-free in bonding driver leads | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31431 | linux-libc-dev | HIGH | kernel: crypto: algif_aead - Revert to operating out-of-plac | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31485 | linux-libc-dev | HIGH | kernel: spi: spi-fsl-lpspi: fix teardown order issue (UAF) | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31489 | linux-libc-dev | HIGH | kernel: spi: meson-spicc: Fix double-put in remove path | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31493 | linux-libc-dev | HIGH | kernel: RDMA/efa: Fix use of completion ctx after free | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31500 | linux-libc-dev | HIGH | kernel: Bluetooth: btintel: serialize btintel_hw_error() wit | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31506 | linux-libc-dev | HIGH | kernel: net: bcmasp: fix double free of WoL irq | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31508 | linux-libc-dev | HIGH | kernel: net: openvswitch: Avoid releasing netdev before tear | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31527 | linux-libc-dev | HIGH | kernel: driver core: platform: use generic driver_override i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31530 | linux-libc-dev | HIGH | kernel: cxl/port: Fix use after free of parent_port in cxl_d | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31532 | linux-libc-dev | HIGH | kernel: can: raw: fix ro->uniq use-after-free in raw_rcv() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31566 | linux-libc-dev | HIGH | kernel: drm/amdgpu: Fix fence put before wait in amdgpu_amdk | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31568 | linux-libc-dev | HIGH | kernel: s390/mm: Add missing secure storage access fixups fo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31576 | linux-libc-dev | HIGH | kernel: media: hackrf: fix to not free memory after the devi | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31578 | linux-libc-dev | HIGH | kernel: media: as102: fix to not free memory after the devic | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31580 | linux-libc-dev | HIGH | kernel: bcache: fix cached_dev.sb_bio use-after-free and cra | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31581 | linux-libc-dev | HIGH | kernel: ALSA: 6fire: fix use-after-free on disconnect | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31582 | linux-libc-dev | HIGH | kernel: hwmon: (powerz) Fix use-after-free on USB disconnect | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31583 | linux-libc-dev | HIGH | kernel: media: em28xx: fix use-after-free in em28xx_v4l2_ope | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31586 | linux-libc-dev | HIGH | kernel: mm: blk-cgroup: fix use-after-free in cgwb_release_w | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31607 | linux-libc-dev | HIGH | kernel: usbip: validate number_of_packets in usbip_pack_ret_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31613 | linux-libc-dev | HIGH | kernel: smb: client: fix OOB reads parsing symlink error res | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31614 | linux-libc-dev | HIGH | kernel: smb: client: fix off-by-8 bounds check in check_wsl_ | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31663 | linux-libc-dev | HIGH | kernel: xfrm: hold dev ref until after transport_finish NF_H | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31669 | linux-libc-dev | HIGH | kernel: mptcp: fix slab-use-after-free in __inet_lookup_esta | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31684 | linux-libc-dev | HIGH | kernel: net: sched: act_csum: validate nested VLAN headers | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31685 | linux-libc-dev | HIGH | kernel: netfilter: ip6t_eui64: reject invalid MAC header for | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31692 | linux-libc-dev | HIGH | kernel: rtnetlink: add missing netlink_ns_capable() check fo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31693 | linux-libc-dev | HIGH | kernel: cifs: some missing initializations on replay | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31694 | linux-libc-dev | HIGH | kernel: fuse: reject oversized dirents in page cache | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31697 | linux-libc-dev | HIGH | kernel: crypto: ccp: Don't attempt to copy ID to userspace i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31698 | linux-libc-dev | HIGH | kernel: crypto: ccp: Don't attempt to copy PDH cert to users | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31699 | linux-libc-dev | HIGH | kernel: crypto: ccp: Don't attempt to copy CSR to userspace | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31700 | linux-libc-dev | HIGH | kernel: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tp | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31701 | linux-libc-dev | HIGH | kernel: ALSA: caiaq: take a reference on the USB device in c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31708 | linux-libc-dev | HIGH | kernel: smb: client: fix OOB read in smb2_ioctl_query_info Q | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31709 | linux-libc-dev | HIGH | kernel: smb: client: validate the whole DACL before rewritin | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31729 | linux-libc-dev | HIGH | kernel: usb: typec: ucsi: validate connector number in ucsi_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31731 | linux-libc-dev | HIGH | kernel: thermal: core: Address thermal zone removal races wi | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31738 | linux-libc-dev | HIGH | kernel: vxlan: validate ND option lengths in vxlan_na_create | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31752 | linux-libc-dev | HIGH | kernel: bridge: br_nd_send: validate ND option lengths | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31754 | linux-libc-dev | HIGH | kernel: usb: cdns3: gadget: fix state inconsistency on gadge | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31756 | linux-libc-dev | HIGH | kernel: usb: dwc2: gadget: Fix spin_lock/unlock mismatch in | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31758 | linux-libc-dev | HIGH | kernel: usb: usbtmc: Flush anchored URBs in usbtmc_release | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31759 | linux-libc-dev | HIGH | kernel: usb: ulpi: fix double free in ulpi_register_interfac | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31767 | linux-libc-dev | HIGH | kernel: drm/i915/dsi: Don't do DSC horizontal timing adjustm | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31771 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_event: move wake reason storage into | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31772 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_sync: fix stack buffer overflow in hc | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31773 | linux-libc-dev | HIGH | kernel: Bluetooth: SMP: derive legacy responder STK authenti | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31774 | linux-libc-dev | HIGH | kernel: io_uring/net: fix slab-out-of-bounds read in io_bund | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31777 | linux-libc-dev | HIGH | kernel: ALSA: ctxfi: Check the error for index mapping | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31778 | linux-libc-dev | HIGH | kernel: ALSA: caiaq: fix stack out-of-bounds read in init_ca | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31781 | linux-libc-dev | HIGH | kernel: drm/ioc32: stop speculation on the drm_compat_ioctl | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31786 | linux-libc-dev | HIGH | kernel: Buffer overflow in drivers/xen/sys-hypervisor.c | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31787 | linux-libc-dev | HIGH | kernel: xen/privcmd: fix double free via VMA splitting | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31788 | linux-libc-dev | HIGH | kernel: xen/privcmd: restrict usage in unprivileged domU | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-32280 | stdlib | HIGH | crypto/x509: crypto/tls: golang: Go: Denial of Service vulne | v1.22.4 | 1.25.9, 1.26.2 | dagster |
| CVE-2026-32281 | stdlib | HIGH | crypto/x509: golang: Go crypto/x509: Denial of Service via i | v1.22.4 | 1.25.9, 1.26.2 | dagster |
| CVE-2026-32283 | stdlib | HIGH | If one side of the TLS connection sends multiple key update | v1.22.4 | 1.25.9, 1.26.2 | dagster |
| CVE-2026-33155 | deepdiff | HIGH | deepdiff: DeepDiff: Denial of Service via unrestricted memor | 7.0.1 | 8.6.2 | dagster |
| CVE-2026-33845 | libgnutls30 | HIGH | gnutls: GnuTLS: Denial of Service via DTLS zero-length fragm | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2026-35385 | openssh-client | HIGH | OpenSSH: OpenSSH: Privilege escalation via scp legacy protoc | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2026-35386 | openssh-client | HIGH | OpenSSH: OpenSSH: Arbitrary command execution via shell meta | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2026-35414 | openssh-client | HIGH | OpenSSH: OpenSSH: Security bypass via mishandling of authori | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2026-41989 | libgcrypt20 | HIGH | Libgcrypt: Libgcrypt: Denial of Service and buffer overflow | 1.10.1-3 | no fix | dagster, rds-iam-mvp-app |
| CVE-2026-43009 | linux-libc-dev | HIGH | kernel: bpf: Fix incorrect pruning due to atomic fetch preci | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43016 | linux-libc-dev | HIGH | kernel: bpf: sockmap: Fix use-after-free of sk->sk_socket in | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43017 | linux-libc-dev | HIGH | kernel: Bluetooth: MGMT: validate mesh send advertising payl | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43018 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_event: fix potential UAF in hci_le_re | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43019 | linux-libc-dev | HIGH | kernel: Bluetooth: hci_conn: fix potential UAF in set_cig_pa | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-43020 | linux-libc-dev | HIGH | kernel: Bluetooth: MGMT: validate LTK enc_size on load | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43023 | linux-libc-dev | HIGH | kernel: Bluetooth: SCO: fix race conditions in sco_sock_conn | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43025 | linux-libc-dev | HIGH | kernel: netfilter: ctnetlink: ignore explicit helper on new | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43027 | linux-libc-dev | HIGH | kernel: netfilter: nf_conntrack_helper: pass helper to expec | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43029 | linux-libc-dev | HIGH | kernel: mptcp: fix soft lockup in mptcp_recvmsg() | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-43037 | linux-libc-dev | HIGH | kernel: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43038 | linux-libc-dev | HIGH | kernel: ipv6: icmp: clear skb2->cb[] in ip6_err_gen_icmpv6_u | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43040 | linux-libc-dev | HIGH | kernel: net: ipv6: ndisc: fix ndisc_ra_useropt to initialize | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43042 | linux-libc-dev | HIGH | kernel: mpls: add seqcount to protect the platform_label{,s} | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43044 | linux-libc-dev | HIGH | kernel: crypto: caam - fix DMA corruption on long hmac keys | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-43046 | linux-libc-dev | HIGH | kernel: btrfs: reject root items with drop_progress and zero | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43047 | linux-libc-dev | HIGH | kernel: HID: multitouch: Check to ensure report responses ma | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43048 | linux-libc-dev | HIGH | kernel: HID: core: Mitigate potential OOB by removing bogus | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43049 | linux-libc-dev | HIGH | kernel: HID: logitech-hidpp: Prevent use-after-free on force | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43050 | linux-libc-dev | HIGH | kernel: atm: lec: fix use-after-free in sock_def_readable() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43051 | linux-libc-dev | HIGH | kernel: HID: wacom: fix out-of-bounds read in wacom_intuos_b | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43052 | linux-libc-dev | HIGH | kernel: wifi: mac80211: check tdls flag in ieee80211_tdls_op | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43054 | linux-libc-dev | HIGH | kernel: scsi: target: tcm_loop: Drain commands in target_res | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-4878 | libcap2 | HIGH | libcap: libcap: Privilege escalation via TOCTOU race conditi | 1:2.66-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| GHSA-mjw2-v2hm-wj34 | dagster | HIGH | Dagster Vulnerable to SQL Injection via Dynamic Partition Ke | 1.12.8 | 1.13.1 | dagster |
| CVE-2019-15213 | linux-libc-dev | MEDIUM | kernel: use-after-free caused by malicious USB device in dri | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16089 | linux-libc-dev | MEDIUM | kernel: Improper return check in nbd_genl_status function in | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-20794 | linux-libc-dev | MEDIUM | kernel: task processes not being properly ended could lead t | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2020-14304 | linux-libc-dev | MEDIUM | kernel: ethtool when reading eeprom of device could lead to | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2020-36694 | linux-libc-dev | MEDIUM | kernel: netfilter: use-after-free in the packet processing c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2021-47432 | linux-libc-dev | MEDIUM | kernel: lib/generic-radix-tree.c: Don't overflow in peek() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2022-36402 | linux-libc-dev | MEDIUM | kernel: vmwgfx: integer overflow in vmwgfx_execbuf.c | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2022-38096 | linux-libc-dev | MEDIUM | kernel: vmwgfx: NULL pointer dereference in vmw_cmd_dx_defin | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2022-45888 | linux-libc-dev | MEDIUM | kernel: use-after-free due to race condition in drivers/char | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2022-48628 | linux-libc-dev | MEDIUM | kernel: ceph: drop messages from MDS when unmounting | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2022-48669 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries: Fix potential memleak in papr_get_a | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2022-48772 | linux-libc-dev | MEDIUM | kernel: media: lgdt3306a: Add a check against null-pointer-d | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2022-49034 | linux-libc-dev | MEDIUM | kernel: sh: cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTA | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2023-0160 | linux-libc-dev | MEDIUM | kernel: possibility of deadlock in libbpf function sock_hash | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-0597 | linux-libc-dev | MEDIUM | kernel: x86/mm: Randomize per-cpu entry area | 6.1.38-4 | no fix | dagster |
| CVE-2023-1192 | linux-libc-dev | MEDIUM | kernel: use-after-free in smb2_is_status_io_timeout() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-1193 | linux-libc-dev | MEDIUM | kernel: use-after-free in setup_async_work() | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-1206 | linux-libc-dev | MEDIUM | kernel: hash collisions in the IPv6 connection lookup table | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-20588 | linux-libc-dev | MEDIUM | hw: amd: division-by-zero may resulting in loss of confident | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-21264 | linux-libc-dev | MEDIUM | In multiple functions of mem_protect.c, there is a possible | 6.1.38-4 | no fix | dagster |
| CVE-2023-23005 | linux-libc-dev | MEDIUM | kernel: incorrect check for error case in the memory_tier_in | 6.1.38-4 | no fix | dagster |
| CVE-2023-24023 | linux-libc-dev | MEDIUM | kernel: Bluetooth Forward and Future Secrecy Attacks and Def | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-2430 | linux-libc-dev | MEDIUM | kernel: missing lock in io_uring/msg_ring.c for IOPOLL in io | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-28746 | linux-libc-dev | MEDIUM | kernel: Local information disclosure on Intel(R) Atom(R) pro | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-2898 | linux-libc-dev | MEDIUM | kernel: A null-ptr-deref bug in f2fs_write_end_io in fs/f2fs | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-31082 | linux-libc-dev | MEDIUM | kernel: sleeping function called from an invalid context in | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-31083 | linux-libc-dev | MEDIUM | kernel: race condition between HCIUARTSETPROTO and HCIUARTGE | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2023-3397 | linux-libc-dev | MEDIUM | kernel: slab-use-after-free Write in txEnd due to race condi | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-34324 | linux-libc-dev | MEDIUM | Closing of an event channel in the Linux kernel can result i | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-36054 | libgssapi-krb5-2 | MEDIUM | krb5: Denial of service through freeing uninitialized pointe | 1.20.1-2 | 1.20.1-2+deb12u1 | dagster |
| CVE-2023-36054 | libk5crypto3 | MEDIUM | krb5: Denial of service through freeing uninitialized pointe | 1.20.1-2 | 1.20.1-2+deb12u1 | dagster |
| CVE-2023-36054 | libkrb5-3 | MEDIUM | krb5: Denial of service through freeing uninitialized pointe | 1.20.1-2 | 1.20.1-2+deb12u1 | dagster |
| CVE-2023-36054 | libkrb5support0 | MEDIUM | krb5: Denial of service through freeing uninitialized pointe | 1.20.1-2 | 1.20.1-2+deb12u1 | dagster |
| CVE-2023-37453 | linux-libc-dev | MEDIUM | kernel: usb: out-of-bounds read in read_descriptors | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-37454 | linux-libc-dev | MEDIUM | kernel: udf: use-after-free write in udf_close_lvid | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-3772 | linux-libc-dev | MEDIUM | kernel: xfrm: NULL pointer dereference in xfrm_update_ae_par | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-3773 | linux-libc-dev | MEDIUM | kernel: xfrm: out-of-bounds read of XFRMA_MTIMER_THRESH nlat | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-3863 | linux-libc-dev | MEDIUM | kernel: use-after-free in nfc_llcp_find_loca in net/nfc/llcp | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-39189 | linux-libc-dev | MEDIUM | kernel: netfilter: nftables out-of-bounds read in nf_osf_mat | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-39192 | linux-libc-dev | MEDIUM | kernel: netfilter: xtables out-of-bounds read in u32_match_i | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-39193 | linux-libc-dev | MEDIUM | kernel: netfilter: xtables sctp out-of-bounds read in match_ | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-39194 | linux-libc-dev | MEDIUM | kernel: xfrm: out-of-bounds read in __xfrm_state_filter_matc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-39198 | linux-libc-dev | MEDIUM | kernel: QXL: race condition leading to use-after-free in qxl | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4010 | linux-libc-dev | MEDIUM | kernel: usb: hcd: malformed USB descriptor leads to infinite | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-4130 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix wrong next length validation of ea buffer | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4132 | linux-libc-dev | MEDIUM | kernel: smsusb: use-after-free caused by do_submit_urb() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4133 | linux-libc-dev | MEDIUM | kernel: cxgb4: use-after-free in ch_flower_stats_cb() | 6.1.38-4 | no fix | dagster |
| CVE-2023-4155 | linux-libc-dev | MEDIUM | kernel: KVM: SEV-ES / SEV-SNP VMGEXIT double fetch vulnerabi | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4194 | linux-libc-dev | MEDIUM | kernel: tap: tap_open(): correctly initialize socket uid nex | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4273 | linux-libc-dev | MEDIUM | kernel: exFAT: stack overflow in exfat_get_uniname_from_ext_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-42752 | linux-libc-dev | MEDIUM | kernel: integer overflow in igmpv3_newpack leading to exploi | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-42754 | linux-libc-dev | MEDIUM | kernel: ipv4: NULL pointer dereference in ipv4_send_dest_unr | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-42755 | linux-libc-dev | MEDIUM | kernel: rsvp: out-of-bounds read in rsvp_classify() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-42756 | linux-libc-dev | MEDIUM | kernel: netfilter: race condition between IPSET_CMD_ADD and | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-4515 | linux-libc-dev | MEDIUM | kernel: ksmbd: validate command request size | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-4527 | libc-bin | MEDIUM | glibc: Stack read overflow in getaddrinfo in no-aaaa mode | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4527 | libc-dev-bin | MEDIUM | glibc: Stack read overflow in getaddrinfo in no-aaaa mode | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4527 | libc6 | MEDIUM | glibc: Stack read overflow in getaddrinfo in no-aaaa mode | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4527 | libc6-dev | MEDIUM | glibc: Stack read overflow in getaddrinfo in no-aaaa mode | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4569 | linux-libc-dev | MEDIUM | kernel: information leak in nft_set_catchall_flush in net/ne | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-46343 | linux-libc-dev | MEDIUM | kernel: NULL pointer dereference in send_acknowledge in net/ | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-4641 | login | MEDIUM | shadow-utils: possible password leak during passwd(1) change | 1:4.13+dfsg1-1+b1 | 1:4.13+dfsg1-1+deb12u1 | dagster |
| CVE-2023-4641 | passwd | MEDIUM | shadow-utils: possible password leak during passwd(1) change | 1:4.13+dfsg1-1+b1 | 1:4.13+dfsg1-1+deb12u1 | dagster |
| CVE-2023-46862 | linux-libc-dev | MEDIUM | kernel: NULL pointer dereference vulnerability in io_uring_s | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-47233 | linux-libc-dev | MEDIUM | kernel: Use after free in brcmf_cfg80211_escan_timeout_worke | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-47627 | aiohttp | MEDIUM | python-aiohttp: numerous issues in HTTP parser with header p | 3.8.5 | 3.8.6 | dagster |
| CVE-2023-4806 | libc-bin | MEDIUM | glibc: potential use-after-free in getaddrinfo() | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4806 | libc-dev-bin | MEDIUM | glibc: potential use-after-free in getaddrinfo() | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4806 | libc6 | MEDIUM | glibc: potential use-after-free in getaddrinfo() | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-4806 | libc6-dev | MEDIUM | glibc: potential use-after-free in getaddrinfo() | 2.36-9+deb12u1 | 2.36-9+deb12u3 | dagster |
| CVE-2023-49081 | aiohttp | MEDIUM | aiohttp: HTTP request modification | 3.8.5 | 3.9.0 | dagster |
| CVE-2023-49082 | aiohttp | MEDIUM | aiohttp: CRLF injection if user controls the HTTP method usi | 3.8.5 | 3.9.0 | dagster |
| CVE-2023-49083 | cryptography | MEDIUM | python-cryptography: NULL-dereference when loading PKCS7 cer | 41.0.5 | 41.0.6 | dagster |
| CVE-2023-49559 | github.com/vektah/gqlparser/v2 | MEDIUM | gqlparser denial of service vulnerability via the parserDire | v2.5.1 | 2.5.14 | dagster |
| CVE-2023-50431 | linux-libc-dev | MEDIUM | kernel: information leak in sec_attest_info | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-50495 | libncursesw6 | MEDIUM | ncurses: segmentation fault via _nc_wrap_entry() | 6.4-4 | no fix | dagster |
| CVE-2023-50495 | libtinfo6 | MEDIUM | ncurses: segmentation fault via _nc_wrap_entry() | 6.4-4 | no fix | dagster, rds-iam-mvp-app |
| CVE-2023-50495 | ncurses-base | MEDIUM | ncurses: segmentation fault via _nc_wrap_entry() | 6.4-4 | no fix | dagster, rds-iam-mvp-app |
| CVE-2023-50495 | ncurses-bin | MEDIUM | ncurses: segmentation fault via _nc_wrap_entry() | 6.4-4 | no fix | dagster, rds-iam-mvp-app |
| CVE-2023-5090 | linux-libc-dev | MEDIUM | kernel: KVM: SVM: improper check in svm_set_x2apic_msr_inter | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-5158 | linux-libc-dev | MEDIUM | kernel: Possible DOS from guest to host invringh_kiov_advanc | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-5197 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: use-after-free due to addition | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52429 | linux-libc-dev | MEDIUM | kernel: missing check for struct in dm-table.c can cause a c | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52435 | linux-libc-dev | MEDIUM | kernel: net: prevent mss overflow in skb_segment() | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52442 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-52443 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52447 | linux-libc-dev | MEDIUM | kernel: bpf: Defer the free of inner map when necessary | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52448 | linux-libc-dev | MEDIUM | kernel: gfs2: Fix kernel NULL pointer dereference in gfs2_rg | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52449 | linux-libc-dev | MEDIUM | kernel: mtd: Fix gluebi NULL pointer dereference caused by f | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52454 | linux-libc-dev | MEDIUM | kernel: nvmet-tcp: Fix a kernel panic when host sends an inv | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52456 | linux-libc-dev | MEDIUM | kernel: imx: fix tx statemachine deadlock | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52458 | linux-libc-dev | MEDIUM | kernel: block: null pointer dereference in ioctl.c when leng | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52462 | linux-libc-dev | MEDIUM | kernel: bpf: fix check for attempt to corrupt spilled pointe | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52463 | linux-libc-dev | MEDIUM | kernel: efivarfs: force RO when remounting if SetVariable is | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52467 | linux-libc-dev | MEDIUM | kernel: null pointer dereference in of_syscon_register() | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52470 | linux-libc-dev | MEDIUM | kernel: null-ptr-deref in alloc_workqueue | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52476 | linux-libc-dev | MEDIUM | kernel: perf/x86/lbr: Filter vsyscall addresses | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52477 | linux-libc-dev | MEDIUM | kernel: usb: hub: Guard against accesses to uninitialized BO | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52478 | linux-libc-dev | MEDIUM | kernel: HID: logitech-hidpp: Fix kernel crash on receiver US | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52479 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix uaf in smb20_oplock_break_ack | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52481 | linux-libc-dev | MEDIUM | kernel: arm64: errata: Add Cortex-A520 speculative unprivile | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52484 | linux-libc-dev | MEDIUM | kernel: iommu/arm-smmu-v3: Fix soft lockup triggered by arm_ | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52485 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Wake DMCUB before sending a command | 6.1.38-4 | no fix | dagster |
| CVE-2023-52486 | linux-libc-dev | MEDIUM | kernel: drm: Don't unref the same fb many times by mistake d | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52488 | linux-libc-dev | MEDIUM | kernel: serial: sc16is7xx: convert from _raw_ to _noinc_ reg | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52489 | linux-libc-dev | MEDIUM | kernel: mm/sparsemem: fix race in accessing memory_section-> | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52492 | linux-libc-dev | MEDIUM | kernel: dmaengine: fix NULL pointer in channel unregistratio | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52493 | linux-libc-dev | MEDIUM | kernel: bus: mhi: host: Drop chan lock before queuing buffer | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52497 | linux-libc-dev | MEDIUM | kernel: erofs: fix lz4 inplace decompression | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52498 | linux-libc-dev | MEDIUM | kernel: PM: sleep: Fix possible deadlocks in core system-wid | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52499 | linux-libc-dev | MEDIUM | kernel: powerpc/47x: Fix 47x syscall return crash | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52500 | linux-libc-dev | MEDIUM | kernel: scsi: pm80xx: Avoid leaking tags when processing OPC | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52505 | linux-libc-dev | MEDIUM | kernel: phy: lynx-28g: serialize concurrent phy_set_mode_ext | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52506 | linux-libc-dev | MEDIUM | kernel: LoongArch: Set all reserved memblocks on Node#0 at i | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52508 | linux-libc-dev | MEDIUM | kernel: nvme-fc: Prevent null pointer dereference in nvme_fc | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52511 | linux-libc-dev | MEDIUM | kernel: spi: sun6i: reduce DMA RX transfer width to single b | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52512 | linux-libc-dev | MEDIUM | kernel: pinctrl: nuvoton: wpcm450: fix out of bounds write | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52513 | linux-libc-dev | MEDIUM | kernel: RDMA/siw: Fix connection failure handling | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52516 | linux-libc-dev | MEDIUM | kernel: dma-debug: don't call __dma_entry_alloc_check_leak() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52518 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_codec: Fix leaking content of local_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52520 | linux-libc-dev | MEDIUM | kernel: platform/x86: think-lmi: Fix reference leak | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52522 | linux-libc-dev | MEDIUM | kernel: net: fix possible store tearing in neigh_periodic_wo | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52523 | linux-libc-dev | MEDIUM | kernel: bpf, sockmap: Reject sk_msg egress redirects to non- | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52526 | linux-libc-dev | MEDIUM | kernel: erofs: fix memory leak of LZMA global compressed ded | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52527 | linux-libc-dev | MEDIUM | kernel: ipv4, ipv6: Fix handling of transhdrlen in __ip{,6}_ | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52528 | linux-libc-dev | MEDIUM | kernel: net: usb: smsc75xx: Fix uninit-value access in __sms | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52529 | linux-libc-dev | MEDIUM | kernel: HID: sony: Fix a potential memory leak in sony_probe | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52532 | linux-libc-dev | MEDIUM | kernel: net: mana: Fix TX CQE error handling | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52559 | linux-libc-dev | MEDIUM | kernel: iommu/vt-d: memory allocation in iommu_suspend() lea | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52560 | linux-libc-dev | MEDIUM | kernel: mm/damon/vaddr-test: memory leak in damon_do_test_ap | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52562 | linux-libc-dev | MEDIUM | kernel: mm/slab_common: slab_caches list corruption after km | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52563 | linux-libc-dev | MEDIUM | kernel: drm/meson: memory leak on ->hpd_notify callback | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52564 | linux-libc-dev | MEDIUM | kernel: tty: n_gsm: use-after-free in gsm_cleanup_mux() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52566 | linux-libc-dev | MEDIUM | kernel: nilfs2: potential use after free in nilfs_gccache_su | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52567 | linux-libc-dev | MEDIUM | kernel: serial: 8250_port: IRQ data NULL pointer dereference | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52568 | linux-libc-dev | MEDIUM | kernel: x86/sgx: SECS reclaim vs. page fault for EAUG race | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52570 | linux-libc-dev | MEDIUM | kernel: vfio/mdev: fault injection leading to NULL pointer d | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52573 | linux-libc-dev | MEDIUM | kernel: net: rds: NULL pointer dereference in rds_rdma_cm_ev | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52574 | linux-libc-dev | MEDIUM | kernel: team: NULL pointer dereference when team device type | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52576 | linux-libc-dev | MEDIUM | kernel: x86/mm, kexec, ima: potential use-after-free in memb | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52577 | linux-libc-dev | MEDIUM | kernel: dccp: out-of-bounds access in dccp_v4_err() and dccp | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52580 | linux-libc-dev | MEDIUM | kernel: net/core: kernel crash in ETH_P_1588 flow dissector | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52582 | linux-libc-dev | MEDIUM | kernel: netfs: improper loop in netfs_rreq_unlock_folios() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52583 | linux-libc-dev | MEDIUM | kernel: ceph: fix deadlock or deadcode of misusing dget() | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52584 | linux-libc-dev | MEDIUM | kernel: spmi: mediatek: Fix UAF on device remove | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52585 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix possible NULL dereference in amdgpu_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2023-52587 | linux-libc-dev | MEDIUM | kernel: IB/ipoib: Fix mcast list locking | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52589 | linux-libc-dev | MEDIUM | kernel: media: rkisp1: Fix IRQ disable race issue | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52590 | linux-libc-dev | MEDIUM | kernel: ocfs2: Avoid touching renamed directory if parent do | 6.1.38-4 | no fix | dagster |
| CVE-2023-52591 | linux-libc-dev | MEDIUM | kernel: reiserfs: Avoid touching renamed directory if parent | 6.1.38-4 | no fix | dagster |
| CVE-2023-52593 | linux-libc-dev | MEDIUM | kernel: wifi: wfx: fix possible NULL pointer dereference in | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52595 | linux-libc-dev | MEDIUM | kernel: wifi: rt2x00: restart beacon queue when hardware res | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52597 | linux-libc-dev | MEDIUM | kernel: KVM: s390: fix setting of fpc register | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52601 | linux-libc-dev | MEDIUM | kernel: jfs: fix array-index-out-of-bounds in dbAdjTree | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52602 | linux-libc-dev | MEDIUM | kernel: jfs: fix slab-out-of-bounds Read in dtSearch | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52606 | linux-libc-dev | MEDIUM | kernel: powerpc/lib: Validate size for vector operations | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52607 | linux-libc-dev | MEDIUM | kernel: powerpc/mm: Fix null-pointer dereference in pgtable_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52608 | linux-libc-dev | MEDIUM | kernel: firmware: arm_scmi: Check mailbox/SMT channel for co | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52609 | linux-libc-dev | MEDIUM | kernel: binder: fix race between mmput() and do_exit() | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52610 | linux-libc-dev | MEDIUM | kernel: net/sched: act_ct: fix skb leak and crash on ooo fra | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52615 | linux-libc-dev | MEDIUM | kernel: hwrng: core - Fix page fault dead lock on mmap-ed hw | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52616 | linux-libc-dev | MEDIUM | kernel: crypto: lib/mpi - Fix unexpected pointer access in m | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52617 | linux-libc-dev | MEDIUM | kernel: PCI: switchtec: Fix stdev_release() crash after surp | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52618 | linux-libc-dev | MEDIUM | kernel: block/rnbd-srv: Check for unlikely string overflow | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52619 | linux-libc-dev | MEDIUM | kernel: pstore/ram: Fix crash when setting number of cpus to | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52622 | linux-libc-dev | MEDIUM | kernel: ext4: avoid online resizing failures due to oversize | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52623 | linux-libc-dev | MEDIUM | kernel: SUNRPC: Fix a suspicious RCU usage warning | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52625 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Refactor DMCUB enter/exit idle inte | 6.1.38-4 | no fix | dagster |
| CVE-2023-52627 | linux-libc-dev | MEDIUM | kernel: iio: adc: ad7091r: Allow users to configure device e | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52629 | linux-libc-dev | MEDIUM | kernel: sh: push-switch: Reorder cleanup operations to avoid | 6.1.38-4 | no fix | dagster |
| CVE-2023-52631 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: NULL pointer dereference issue | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52632 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: lock dependency warning with srcu | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52633 | linux-libc-dev | MEDIUM | kernel: um: time-travel: fix time corruption | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52635 | linux-libc-dev | MEDIUM | kernel: PM / devfreq: Synchronize devfreq_monitor_[start/sto | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52638 | linux-libc-dev | MEDIUM | kernel: can: j1939: prevent deadlock by changing j1939_socks | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52639 | linux-libc-dev | MEDIUM | kernel: KVM: s390: vsie: fix race during shadow creation | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52641 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Add NULL ptr dereference checking at the e | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52643 | linux-libc-dev | MEDIUM | kernel: iio: core: fix memleak in iio_device_register_sysfs | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52644 | linux-libc-dev | MEDIUM | kernel: wifi: b43: Stop/wake correct queue in DMA Tx path wh | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52645 | linux-libc-dev | MEDIUM | kernel: pmdomain: mediatek: fix race conditions with genpd | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52648 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Unmap the surface before resetting it on | 6.1.38-4 | no fix | dagster |
| CVE-2023-52650 | linux-libc-dev | MEDIUM | kernel: drm/tegra: dsi: Add missing check for of_find_device | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52652 | linux-libc-dev | MEDIUM | kernel: NTB: fix possible name leak in ntb_register_device() | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52653 | linux-libc-dev | MEDIUM | kernel: SUNRPC: fix a memleak in gss_import_v2_context | 6.1.38-4 | no fix | dagster |
| CVE-2023-52654 | linux-libc-dev | MEDIUM | kernel: io_uring/af_unix: disable sending io_uring over sock | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-52655 | linux-libc-dev | MEDIUM | kernel: usb: aqc111: check packet for fixup for true limit | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-52656 | linux-libc-dev | MEDIUM | kernel: io_uring: drop any code related to SCM_RIGHTS | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52658 | linux-libc-dev | MEDIUM | kernel: Revert "net/mlx5: Block entering switchdev mode | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2023-52660 | linux-libc-dev | MEDIUM | kernel: media: rkisp1: Fix IRQ handling due to shared interr | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52661 | linux-libc-dev | MEDIUM | kernel: drm/tegra: rgb: Fix missing clk_put() in the error h | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52662 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: fix a memleak in vmw_gmrid_man_get_node | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52670 | linux-libc-dev | MEDIUM | kernel: rpmsg: virtio: Free driver_override when rpmsg_remov | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52671 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix hang/underflow when transitioni | 6.1.38-4 | no fix | dagster |
| CVE-2023-52672 | linux-libc-dev | MEDIUM | kernel: pipe: wakeup wr_wait after setting max_usage | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52674 | linux-libc-dev | MEDIUM | kernel: ALSA: scarlett2: Add clamp() in scarlett2_mixer_ctl_ | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52675 | linux-libc-dev | MEDIUM | kernel: powerpc/imc-pmu: Add a null pointer check in update_ | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52676 | linux-libc-dev | MEDIUM | kernel: bpf: Guard stack limits against 32bit overflow | 6.1.38-4 | no fix | dagster |
| CVE-2023-52677 | linux-libc-dev | MEDIUM | kernel: riscv: Check if the code to patch lies in the exit s | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52678 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: Confirm list is non-empty before utilizi | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52680 | linux-libc-dev | MEDIUM | kernel: ALSA: scarlett2: Add missing error checks to *_ctl_g | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52683 | linux-libc-dev | MEDIUM | kernel: ACPI: LPIT: Avoid u32 multiplication overflow | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52686 | linux-libc-dev | MEDIUM | kernel: powerpc/powernv: Add a null pointer check in opal_ev | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52687 | linux-libc-dev | MEDIUM | kernel: crypto: safexcel - Add error handling for dma_map_sg | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52690 | linux-libc-dev | MEDIUM | kernel: powerpc/powernv: Add a null pointer check to scom_de | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52692 | linux-libc-dev | MEDIUM | kernel: ALSA: scarlett2: Add missing error check to scarlett | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52693 | linux-libc-dev | MEDIUM | kernel: ACPI: video: check for error while searching for bac | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52694 | linux-libc-dev | MEDIUM | kernel: drm/bridge: tpd12s015: Drop buggy __exit annotation | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52696 | linux-libc-dev | MEDIUM | kernel: powerpc/powernv: Add a null pointer check in opal_po | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52698 | linux-libc-dev | MEDIUM | kernel: calipso: fix memory leak in netlbl_calipso_add_pass( | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52699 | linux-libc-dev | MEDIUM | kernel: sysv: don't call sb_bread() with pointers_lock h | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2023-52749 | linux-libc-dev | MEDIUM | kernel: spi: Fix null dereference on suspend | 6.1.38-4 | 6.1.66-1 | dagster |
| CVE-2023-52750 | linux-libc-dev | MEDIUM | kernel: arm64: Restrict CPU_BIG_ENDIAN to GNU as or LLVM IAS | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52753 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Avoid NULL dereference of timing ge | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52754 | linux-libc-dev | MEDIUM | kernel: media: imon: fix access to invalid resource for the | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52761 | linux-libc-dev | MEDIUM | kernel: riscv: VMAP_STACK overflow detection thread-safe | 6.1.38-4 | no fix | dagster |
| CVE-2023-52762 | linux-libc-dev | MEDIUM | kernel: virtio-blk: fix implicit overflow on virtio_max_dma_ | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52763 | linux-libc-dev | MEDIUM | kernel: i3c: master: mipi-i3c-hci: Fix a kernel panic for ac | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52765 | linux-libc-dev | MEDIUM | kernel: mfd: qcom-spmi-pmic: Fix revid implementation | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52767 | linux-libc-dev | MEDIUM | kernel: tls: fix NULL deref on tls_sw_splice_eof() with empt | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52768 | linux-libc-dev | MEDIUM | kernel: wifi: wilc1000: use vmm_table as array in wilc struc | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52770 | linux-libc-dev | MEDIUM | kernel: f2fs: split initial and dynamic conditions for exten | 6.1.38-4 | no fix | dagster |
| CVE-2023-52771 | linux-libc-dev | MEDIUM | kernel: cxl/port: Fix delete_endpoint() vs parent unregistra | 6.1.38-4 | no fix | dagster |
| CVE-2023-52773 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: fix a NULL pointer dereference in a | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52774 | linux-libc-dev | MEDIUM | kernel: s390/dasd: protect device queue against concurrent a | 6.1.38-4 | 6.1.66-1 | dagster |
| CVE-2023-52778 | linux-libc-dev | MEDIUM | kernel: mptcp: deal with large GSO size | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52780 | linux-libc-dev | MEDIUM | kernel: net: mvneta: fix calls to page_pool_get_stats | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52781 | linux-libc-dev | MEDIUM | kernel: usb: config: fix iteration issue in 'usb_get_bos | 6.1.38-4 | 6.1.66-1 | dagster |
| CVE-2023-52784 | linux-libc-dev | MEDIUM | kernel: bonding: stop the device in bond_setup_by_slave() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52787 | linux-libc-dev | MEDIUM | kernel: blk-mq: make sure active queue usage is held for bio | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-52788 | linux-libc-dev | MEDIUM | kernel: i915/perf: Fix NULL deref bugs with drm_dbg() calls | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52789 | linux-libc-dev | MEDIUM | kernel: tty: vcc: Add check for kstrdup() in vcc_probe() | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52791 | linux-libc-dev | MEDIUM | kernel: i2c: core: Run atomic i2c xfer when !preemptible | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52792 | linux-libc-dev | MEDIUM | kernel: cxl/region: Do not try to cleanup after cxl_region_s | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52797 | linux-libc-dev | MEDIUM | kernel: drivers: perf: Check find_first_bit() return value | 6.1.38-4 | no fix | dagster |
| CVE-2023-52798 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: fix dfs radar event locking | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52800 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: fix htt pktlog locking | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52803 | linux-libc-dev | MEDIUM | kernel: SUNRPC: Fix RPC client cleaned up the freed pipefs d | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52806 | linux-libc-dev | MEDIUM | kernel: ALSA: hda: Fix possible null-ptr-deref when assignin | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52808 | linux-libc-dev | MEDIUM | kernel: scsi: hisi_sas: Set debugfs_dir pointer to NULL afte | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52809 | linux-libc-dev | MEDIUM | kernel: scsi: libfc: Fix potential NULL pointer dereference | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52810 | linux-libc-dev | MEDIUM | kernel: fs/jfs: Add check for negative db_l2nbperpage | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52811 | linux-libc-dev | MEDIUM | kernel: scsi: ibmvfc: Remove BUG_ON in the case of an empty | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52813 | linux-libc-dev | MEDIUM | kernel: crypto: pcrypt - Fix hungtask for PADATA_RESET | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52814 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix potential null pointer derefernce | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52815 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu/vkms: fix a possible null pointer derefer | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52817 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix a null pointer access when the smc_r | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52819 | linux-libc-dev | MEDIUM | kernel: drm/amd: Fix UBSAN array-index-out-of-bounds for Pol | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52821 | linux-libc-dev | MEDIUM | kernel: drm/panel: fix a possible null pointer dereference | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52825 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: Fix a race condition of vram buffer unre | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52826 | linux-libc-dev | MEDIUM | kernel: drm/panel/panel-tpo-tpg110: fix a possible null poin | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52828 | linux-libc-dev | MEDIUM | kernel: bpf: Detect IP == ksym.end as part of BPF program | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52831 | linux-libc-dev | MEDIUM | kernel: cpu/hotplug: Don't offline the last non-isolated CPU | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52832 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: don't return unset power in ieee | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52833 | linux-libc-dev | MEDIUM | kernel: Bluetooth: btusb: Add date->evt_skb is NULL check | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52834 | linux-libc-dev | MEDIUM | kernel: atl1c: Work around the DMA RX overflow issue | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52838 | linux-libc-dev | MEDIUM | kernel: fbdev: imsttfb: fix a resource leak in probe | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52841 | linux-libc-dev | MEDIUM | kernel: media: vidtv: mux: Add check and kfree for kstrdup | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52843 | linux-libc-dev | MEDIUM | kernel: llc: verify mac len before reading mac header | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52844 | linux-libc-dev | MEDIUM | kernel: media: vidtv: psi: Add check for kstrdup | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52845 | linux-libc-dev | MEDIUM | kernel: tipc: Change nla_policy for bearer-related names to | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52849 | linux-libc-dev | MEDIUM | kernel: cxl/mem: Fix shutdown order | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52850 | linux-libc-dev | MEDIUM | kernel: media: hantro: Check whether reset op is defined bef | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52853 | linux-libc-dev | MEDIUM | kernel: hid: cp2112: Fix duplicate workqueue initialization | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52855 | linux-libc-dev | MEDIUM | kernel: usb: dwc2: fix possible NULL pointer dereference cau | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52856 | linux-libc-dev | MEDIUM | kernel: drm/bridge: lt8912b: Fix crash on bridge detach | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52857 | linux-libc-dev | MEDIUM | kernel: drm/mediatek: Fix coverity issue with unintentional | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2023-52858 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: clk-mt7629: Add check for mtk_alloc_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52860 | linux-libc-dev | MEDIUM | kernel: drivers/perf: hisi: use cpuhp_state_remove_instance_ | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52861 | linux-libc-dev | MEDIUM | kernel: drm: bridge: it66121: Fix invalid connector derefere | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52863 | linux-libc-dev | MEDIUM | kernel: hwmon: (axi-fan-control) Fix possible NULL pointer d | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52865 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: clk-mt6797: Add check for mtk_alloc_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52869 | linux-libc-dev | MEDIUM | kernel: pstore/platform: Add check for kstrdup | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52870 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: clk-mt6765: Add check for mtk_alloc_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52871 | linux-libc-dev | MEDIUM | kernel: soc: qcom: llcc: Handle a second device without data | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52872 | linux-libc-dev | MEDIUM | kernel: tty: n_gsm: fix race condition in status line change | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52873 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: clk-mt6779: Add check for mtk_alloc_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52875 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: clk-mt2701: Add check for mtk_alloc_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52876 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: clk-mt7629-eth: Add check for mtk_all | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52877 | linux-libc-dev | MEDIUM | kernel: usb: typec: tcpm: Fix NULL pointer dereference in tc | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52878 | linux-libc-dev | MEDIUM | kernel: can: dev: can_put_echo_skb(): don't crash kernel | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52879 | linux-libc-dev | MEDIUM | kernel: tracing: Have trace_event_file have ref counters | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52880 | linux-libc-dev | MEDIUM | kernel: tty: n_gsm: require CAP_NET_ADMIN to attach N_GSM071 | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-52881 | linux-libc-dev | MEDIUM | kernel: TCP-spoofed ghost ACKs and leak leak initial sequenc | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-52882 | linux-libc-dev | MEDIUM | kernel: clk: sunxi-ng: h6: Reparent CPUX during PLL CPUX rat | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2023-52884 | linux-libc-dev | MEDIUM | kernel: Input: cyapa - add missing input core locking to sus | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2023-52886 | linux-libc-dev | MEDIUM | kernel: USB: core: Fix race by not overwriting udev->desc | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-52887 | linux-libc-dev | MEDIUM | kernel: net: can: j1939: enhanced error handling for tightly | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2023-52888 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: Only free buffer VA that is | 6.1.38-4 | no fix | dagster |
| CVE-2023-52889 | linux-libc-dev | MEDIUM | kernel: apparmor: Fix null pointer deref when receiving skb | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2023-52915 | linux-libc-dev | MEDIUM | kernel: media: dvb-usb-v2: af9035: Fix null-ptr-deref in af9 | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-52918 | linux-libc-dev | MEDIUM | kernel: media: pci: cx23885: check cx23885_vdev_init() retur | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2023-52919 | linux-libc-dev | MEDIUM | kernel: nfc: nci: fix possible NULL pointer dereference in s | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52920 | linux-libc-dev | MEDIUM | kernel: bpf: support non-r10 register spill/fill to/from sta | 6.1.38-4 | no fix | dagster |
| CVE-2023-52923 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: adapt set backend to use GC tr | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52924 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: don't skip expired elements du | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-53071 | linux-libc-dev | MEDIUM | kernel: wifi: mt76: do not run mt76_unregister_device() on u | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2023-53146 | linux-libc-dev | MEDIUM | kernel: media: dw2102: Fix null-ptr-deref in dw2102_i2c_tran | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53147 | linux-libc-dev | MEDIUM | kernel: xfrm: add NULL check in xfrm_update_ae_params | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53149 | linux-libc-dev | MEDIUM | kernel: ext4: avoid deadlock in fs reclaim with page writeba | 6.1.38-4 | no fix | dagster |
| CVE-2023-53150 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Pointer may be dereferenced | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53151 | linux-libc-dev | MEDIUM | kernel: Linux kernel: md/raid10 soft lockup due to unlimited | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2023-53152 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix calltrace warning in amddrm_buddy_fi | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53165 | linux-libc-dev | MEDIUM | kernel: udf: Fix uninitialized array access for some pathnam | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53167 | linux-libc-dev | MEDIUM | kernel: tracing: Fix null pointer dereference in tracing_err | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53174 | linux-libc-dev | MEDIUM | kernel: scsi: core: Fix possible memory leak if device_add() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53175 | linux-libc-dev | MEDIUM | kernel: PCI: hv: Fix a crash in hv_pci_restore_msi_msg() dur | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53177 | linux-libc-dev | MEDIUM | kernel: media: hi846: fix usage of pm_runtime_get_if_in_use( | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53181 | linux-libc-dev | MEDIUM | kernel: dma-buf/dma-resv: Stop leaking on krealloc() failure | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53185 | linux-libc-dev | MEDIUM | kernel: wifi: ath9k: don't allow to overwrite ENDPOINT0 attr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53189 | linux-libc-dev | MEDIUM | kernel: ipv6/addrconf: fix a potential refcount underflow fo | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53195 | linux-libc-dev | MEDIUM | kernel: mlxsw: minimal: fix potential memory leak in mlxsw_m | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53196 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: qcom: Fix potential memory leak | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53201 | linux-libc-dev | MEDIUM | kernel: RDMA/bnxt_re: wraparound mbox producer index | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53204 | linux-libc-dev | MEDIUM | kernel: af_unix: Fix data-races around user->unix_inflight | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53207 | linux-libc-dev | MEDIUM | kernel: ublk: fail to recover device if queue setup is inter | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53208 | linux-libc-dev | MEDIUM | kernel: Linux kernel KVM: Denial of Service in nested SVM du | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53209 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211_hwsim: Fix possible NULL dereference | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53210 | linux-libc-dev | MEDIUM | kernel: md/raid5-cache: fix null-ptr-deref for r5l_flush_str | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53220 | linux-libc-dev | MEDIUM | kernel: media: az6007: Fix null-ptr-deref in az6007_i2c_xfer | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53221 | linux-libc-dev | MEDIUM | kernel: bpf: Fix memleak due to fentry attach failure | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53226 | linux-libc-dev | MEDIUM | kernel: wifi: mwifiex: Fix OOB and integer underflow when rx | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53228 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: drop redundant sched job cleanup when cs | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2023-53230 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service via memory leak in SMB cli | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53231 | linux-libc-dev | MEDIUM | kernel: erofs: Fix detection of atomic context | 6.1.38-4 | no fix | dagster |
| CVE-2023-53243 | linux-libc-dev | MEDIUM | kernel: btrfs: add handling for RAID1C23/DUP to btrfs_reduce | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53245 | linux-libc-dev | MEDIUM | kernel: scsi: storvsc: Fix handling of virtual Fibre Channel | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53247 | linux-libc-dev | MEDIUM | kernel: btrfs: set_page_extent_mapped after read_folio in bt | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53248 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: install stub fence into potential unused | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53249 | linux-libc-dev | MEDIUM | kernel: clk: imx: clk-imx8mn: fix memory leak in imx8mn_cloc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53251 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: pcie: fix NULL pointer dereference in | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53255 | linux-libc-dev | MEDIUM | kernel: firmware: stratix10-svc: Fix a potential resource le | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53258 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix possible underflow for displays | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53260 | linux-libc-dev | MEDIUM | kernel: ovl: fix null pointer dereference in ovl_permission( | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53261 | linux-libc-dev | MEDIUM | kernel: coresight: Fix memory leak in acpi_buffer->pointer | 6.1.38-4 | no fix | dagster |
| CVE-2023-53264 | linux-libc-dev | MEDIUM | kernel: clk: imx: clk-imxrt1050: fix memory leak in imxrt105 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53275 | linux-libc-dev | MEDIUM | kernel: ALSA: hda: fix a possible null-pointer dereference d | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53280 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Remove unused nvme_ls_waitq wait queu | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53287 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in the cdns3 USB dri | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53288 | linux-libc-dev | MEDIUM | kernel: drm/client: Fix memory leak in drm_client_modeset_pr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53291 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to improper thre | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53292 | linux-libc-dev | MEDIUM | kernel: blk-mq: fix NULL dereference on q->elevator in blk_m | 6.1.38-4 | no fix | dagster |
| CVE-2023-53304 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in netfilter due to | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53309 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via integer overflow | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53312 | linux-libc-dev | MEDIUM | kernel: net: fix net_dev_start_xmit trace event vs skb_trans | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53313 | linux-libc-dev | MEDIUM | kernel: md/raid10: fix wrong setting of max_corr_read_errors | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53314 | linux-libc-dev | MEDIUM | kernel: fbdev/ep93xx-fb: Do not assign to struct fb_info.dev | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53323 | linux-libc-dev | MEDIUM | kernel: ext2/dax: Fix ext2_setsize when len is page aligned | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53324 | linux-libc-dev | MEDIUM | kernel: drm/msm/mdp5: Don't leak some plane state | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53325 | linux-libc-dev | MEDIUM | kernel: drm/mediatek: dp: Change logging to dev for mtk_dp_a | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53328 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Enhance sanity check while generating attr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53336 | linux-libc-dev | MEDIUM | kernel: media: ipu-bridge: Fix null pointer deref on SSDB/PL | 6.1.38-4 | no fix | dagster |
| CVE-2023-53339 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in btrfs due to race | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53342 | linux-libc-dev | MEDIUM | kernel: net: marvell: prestera: fix handling IPv4 routes wit | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53343 | linux-libc-dev | MEDIUM | kernel: icmp6: Fix null-ptr-deref of ip6_null_entry->rt6i_id | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53352 | linux-libc-dev | MEDIUM | kernel: drm/ttm: check null pointer before accessing when sw | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53353 | linux-libc-dev | MEDIUM | kernel: accel/habanalabs: postpone mem_mgr IDR destruction t | 6.1.38-4 | no fix | dagster |
| CVE-2023-53354 | linux-libc-dev | MEDIUM | kernel: skbuff: skb_segment, Call zero copy functions before | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53356 | linux-libc-dev | MEDIUM | kernel: usb: gadget: u_serial: Add null pointer check in gse | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53360 | linux-libc-dev | MEDIUM | kernel: NFSv4.2: Rework scratch handling for READ_PLUS (agai | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53361 | linux-libc-dev | MEDIUM | kernel: LoongArch: mm: Add p?d_leaf() definitions | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53362 | linux-libc-dev | MEDIUM | kernel: bus: fsl-mc: don't assume child devices are all fsl- | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53365 | linux-libc-dev | MEDIUM | kernel: ip6mr: Fix skb_under_panic in ip6mr_cache_report() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53367 | linux-libc-dev | MEDIUM | kernel: accel/habanalabs: fix mem leak in capture user mappi | 6.1.38-4 | no fix | dagster |
| CVE-2023-53368 | linux-libc-dev | MEDIUM | kernel: tracing: Fix race issue between cpu buffer write and | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53369 | linux-libc-dev | MEDIUM | kernel: net: dcb: choose correct policy to parse DCB_ATTR_BC | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53370 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix memory leak in mes self test | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53371 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: fix memory leak in mlx5e_fs_tt_redirect_a | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53379 | linux-libc-dev | MEDIUM | kernel: usb: phy: phy-tahvo: fix memory leak in tahvo_usb_pr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53380 | linux-libc-dev | MEDIUM | kernel: md/raid10: fix null-ptr-deref of mreplace in raid10_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53384 | linux-libc-dev | MEDIUM | kernel: wifi: mwifiex: avoid possible NULL skb pointer deref | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53385 | linux-libc-dev | MEDIUM | kernel: media: mdp3: Fix resource leaks in of_find_device_by | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53391 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in shmem's ramfs-based tmp | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53394 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: xsk: Fix crash on regular rq reactivation | 6.1.38-4 | no fix | dagster |
| CVE-2023-53397 | linux-libc-dev | MEDIUM | kernel: modpost: fix off by one in is_executable_section() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53401 | linux-libc-dev | MEDIUM | kernel: mm: kmem: fix a NULL pointer dereference in obj_stoc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53421 | linux-libc-dev | MEDIUM | kernel: blk-cgroup: Reinit blkg_iostat_set after clearing in | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2023-53424 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: fix of_iomap memory leak | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2023-53425 | linux-libc-dev | MEDIUM | kernel: media: platform: mediatek: vpu: fix NULL ptr derefer | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53429 | linux-libc-dev | MEDIUM | kernel: btrfs: don't check PageError in __extent_writepage | 6.1.38-4 | no fix | dagster |
| CVE-2023-53436 | linux-libc-dev | MEDIUM | kernel: scsi: snic: Fix possible memory leak if device_add() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53438 | linux-libc-dev | MEDIUM | kernel: x86/MCE: Always save CS register on AMD Zen IF Poiso | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53441 | linux-libc-dev | MEDIUM | kernel: bpf: cpumap: Fix memory leak in cpu_map_update_elem | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53442 | linux-libc-dev | MEDIUM | kernel: ice: Block switchdev mode when ADQ is active and vic | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53444 | linux-libc-dev | MEDIUM | kernel: drm/ttm: fix bulk_move corruption when adding a entr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53447 | linux-libc-dev | MEDIUM | kernel: f2fs: don't reset unchangable mount option in f2fs_r | 6.1.38-4 | no fix | dagster |
| CVE-2023-53448 | linux-libc-dev | MEDIUM | kernel: fbdev: imxfb: Removed unneeded release_mem_region | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53451 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Fix potential NULL pointer dereferenc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53456 | linux-libc-dev | MEDIUM | kernel: scsi: qla4xxx: Add length check when parsing nlattrs | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53457 | linux-libc-dev | MEDIUM | kernel: FS: JFS: Fix null-ptr-deref Read in txBegin | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53460 | linux-libc-dev | MEDIUM | kernel: wifi: rtw88: fix memory leak in rtw_usb_probe() | 6.1.38-4 | no fix | dagster |
| CVE-2023-53461 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in io_uring due to h | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53462 | linux-libc-dev | MEDIUM | kernel: Linux kernel HSR driver: Denial of Service via unini | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53463 | linux-libc-dev | MEDIUM | kernel: ibmvnic: Do not reset dql stats on NON_FATAL err | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53472 | linux-libc-dev | MEDIUM | kernel: pwm: lpc32xx: Remove handling of PWM channels | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53480 | linux-libc-dev | MEDIUM | kernel: kobject: Add sanity check for kset->kobj.ktype in ks | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53488 | linux-libc-dev | MEDIUM | kernel: IB/hfi1: Fix possible panic during hotplug remove | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53490 | linux-libc-dev | MEDIUM | kernel: mptcp: fix disconnect vs accept race | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53491 | linux-libc-dev | MEDIUM | kernel: start_kernel: Add __no_stack_protector function attr | 6.1.38-4 | no fix | dagster |
| CVE-2023-53501 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to race conditio | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53505 | linux-libc-dev | MEDIUM | kernel: clk: tegra: tegra124-emc: Fix potential memory leak | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53518 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in PM / devfreq can lead t | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53519 | linux-libc-dev | MEDIUM | kernel: media: v4l2-mem2mem: add lock to protect parameter n | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53520 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Fix hci_suspend_sync crash | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53523 | linux-libc-dev | MEDIUM | kernel: can: gs_usb: fix time stamp counter initialization | 6.1.38-4 | no fix | dagster |
| CVE-2023-53526 | linux-libc-dev | MEDIUM | kernel: jbd2: check 'jh->b_transaction' before removing it f | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53529 | linux-libc-dev | MEDIUM | kernel: wifi: rtw88: Fix memory leak in rtw88_usb | 6.1.38-4 | no fix | dagster |
| CVE-2023-53531 | linux-libc-dev | MEDIUM | kernel: null_blk: fix poll request timeout handling | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53538 | linux-libc-dev | MEDIUM | kernel: btrfs: insert tree mod log move in push_node_left | 6.1.38-4 | no fix | dagster |
| CVE-2023-53539 | linux-libc-dev | MEDIUM | kernel: RDMA/rxe: Fix incomplete state save in rxe_requester | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53540 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: reject auth/assoc to AP with our add | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53545 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: unmap and remove csa_va properly | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2023-53546 | linux-libc-dev | MEDIUM | kernel: net/mlx5: DR, fix memory leak in mlx5dr_cmd_create_r | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53548 | linux-libc-dev | MEDIUM | kernel: net: usbnet: Fix WARNING in usbnet_start_xmit/usb_su | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53557 | linux-libc-dev | MEDIUM | kernel: fprobe: Release rethook after the ftrace_ops is unre | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53558 | linux-libc-dev | MEDIUM | kernel: rcu-tasks: Avoid pr_info() with spin lock in cblist_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53563 | linux-libc-dev | MEDIUM | kernel: cpufreq: amd-pstate-ut: Fix kernel panic when loadin | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53568 | linux-libc-dev | MEDIUM | kernel: s390/zcrypt: don't leak memory if dev_set_name() fai | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53574 | linux-libc-dev | MEDIUM | kernel: wifi: rtw88: delete timer and free skb queue when un | 6.1.38-4 | no fix | dagster |
| CVE-2023-53579 | linux-libc-dev | MEDIUM | kernel: gpio: mvebu: fix irq domain leak | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53580 | linux-libc-dev | MEDIUM | kernel: USB: Gadget: core: Help prevent panic during UVC unc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53581 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Check for NOT_READY flag state after lock | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53583 | linux-libc-dev | MEDIUM | kernel: perf: RISC-V: Remove PERF_HES_STOPPED flag checking | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53585 | linux-libc-dev | MEDIUM | kernel: bpf: reject unhashed sockets in bpf_sk_assign | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53588 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: check for station first in client pr | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53593 | linux-libc-dev | MEDIUM | kernel: cifs: Release folio lock on fscache read hit | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53597 | linux-libc-dev | MEDIUM | kernel: cifs: fix mid leak during reconnection after timeout | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53601 | linux-libc-dev | MEDIUM | kernel: bonding: do not assume skb mac_header is set | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53602 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: fix memory leak in WMI firmware stats | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53603 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Avoid fcport pointer dereference | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53611 | linux-libc-dev | MEDIUM | kernel: ipmi_si: fix a memleak in try_smi_init() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53615 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Fix deletion race condition | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53617 | linux-libc-dev | MEDIUM | kernel: soc: aspeed: socinfo: Add kfree for kstrdup | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53618 | linux-libc-dev | MEDIUM | kernel: btrfs: reject invalid reloc tree root keys with stac | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53627 | linux-libc-dev | MEDIUM | kernel: scsi: hisi_sas: Grab sas_dev lock when traversing th | 6.1.38-4 | no fix | dagster |
| CVE-2023-53631 | linux-libc-dev | MEDIUM | kernel: platform/x86: dell-sysman: Fix reference leak | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53647 | linux-libc-dev | MEDIUM | kernel: Drivers: hv: vmbus: Don't dereference ACPI root obje | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53648 | linux-libc-dev | MEDIUM | kernel: ALSA: ac97: Fix possible NULL dereference in snd_ac9 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53649 | linux-libc-dev | MEDIUM | kernel: perf trace: Really free the evsel->priv area | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53650 | linux-libc-dev | MEDIUM | kernel: fbdev: omapfb: lcd_mipid: Fix an error handling path | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53653 | linux-libc-dev | MEDIUM | kernel: media: amphion: fix REVERSE_INULL issues reported by | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53654 | linux-libc-dev | MEDIUM | kernel: octeontx2-af: Add validation before accessing cgx an | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53656 | linux-libc-dev | MEDIUM | kernel: drivers/perf: hisi: Don't migrate perf to the CPU go | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53657 | linux-libc-dev | MEDIUM | kernel: ice: Don't tx before switchdev is fully configured | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53658 | linux-libc-dev | MEDIUM | kernel: spi: bcm-qspi: return error if neither hif_mspi nor | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53660 | linux-libc-dev | MEDIUM | kernel: bpf, cpumap: Handle skb as well when clean up ptr_ri | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53662 | linux-libc-dev | MEDIUM | kernel: ext4: fix memory leaks in ext4_fname_{setup_filename | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53663 | linux-libc-dev | MEDIUM | kernel: KVM: nSVM: Check instead of asserting on nested TSC | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53666 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ASoC wcd938x code | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53670 | linux-libc-dev | MEDIUM | kernel: nvme-core: fix dev_pm_qos memleak | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53672 | linux-libc-dev | MEDIUM | kernel: btrfs: output extra debug info if we failed to find | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53674 | linux-libc-dev | MEDIUM | kernel: clk: Fix memory leak in devm_clk_notifier_register() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53681 | linux-libc-dev | MEDIUM | kernel: bcache: Fix __bch_btree_node_alloc to make the failu | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53687 | linux-libc-dev | MEDIUM | kernel: tty: serial: samsung_tty: Fix a memory leak in s3c24 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53693 | linux-libc-dev | MEDIUM | kernel: USB: gadget: Fix the memory leak in raw_gadget drive | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53697 | linux-libc-dev | MEDIUM | kernel: nvdimm: Fix memleak of pmu attr_groups in unregister | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53698 | linux-libc-dev | MEDIUM | kernel: xsk: fix refcount underflow in error path | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53699 | linux-libc-dev | MEDIUM | kernel: riscv: move memblock_allow_resize() after linear map | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53703 | linux-libc-dev | MEDIUM | kernel: HID: amd_sfh: Fix for shift-out-of-bounds | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53704 | linux-libc-dev | MEDIUM | kernel: clk: imx: clk-imx8mp: improve error handling in imx8 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53706 | linux-libc-dev | MEDIUM | kernel: mm/vmemmap/devdax: fix kernel crash when probing dev | 6.1.38-4 | no fix | dagster |
| CVE-2023-53707 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix integer overflow in amdgpu_cs_pass1 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53708 | linux-libc-dev | MEDIUM | kernel: ACPI: x86: s2idle: Catch multiple ACPI_TYPE_PACKAGE | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53711 | linux-libc-dev | MEDIUM | kernel: NFS: Fix a potential data corruption | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53712 | linux-libc-dev | MEDIUM | kernel: ARM: 9317/1: kexec: Make smp stop calls asynchronous | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53713 | linux-libc-dev | MEDIUM | kernel: arm64: sme: Use STR P to clear FFR context field in | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53714 | linux-libc-dev | MEDIUM | kernel: drm/stm: ltdc: fix late dereference check | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53718 | linux-libc-dev | MEDIUM | kernel: ring-buffer: Do not swap cpu_buffer during resize pr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53722 | linux-libc-dev | MEDIUM | kernel: md: raid1: fix potential OOB in raid1_remove_disk() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53725 | linux-libc-dev | MEDIUM | kernel: clocksource/drivers/cadence-ttc: Fix memory leak in | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53726 | linux-libc-dev | MEDIUM | kernel: arm64: csum: Fix OoB access in IP checksum code for | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53727 | linux-libc-dev | MEDIUM | kernel: net/sched: fq_pie: avoid stalls in fq_pie_timer() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53728 | linux-libc-dev | MEDIUM | kernel: posix-timers: Ensure timer ID search-loop limit is v | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2023-53729 | linux-libc-dev | MEDIUM | kernel: soc: qcom: qmi_encdec: Restrict string length in dec | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53730 | linux-libc-dev | MEDIUM | kernel: blk-iocost: use spin_lock_irqsave in adjust_inuse_an | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53731 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service due to a Netlink subsystem | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53732 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fix NULL dereference in ni_write_inode | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-53733 | linux-libc-dev | MEDIUM | kernel: net: sched: cls_u32: Undo tcf_bind_filter if u32_rep | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53743 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to PCI resource | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53766 | linux-libc-dev | MEDIUM | kernel: FS: JFS: Check for read-only mounted filesystem in t | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53768 | linux-libc-dev | MEDIUM | kernel: regmap-irq: Fix out-of-bounds access when allocating | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53777 | linux-libc-dev | MEDIUM | kernel: erofs: kill hooked chains to avoid loops on deduplic | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53782 | linux-libc-dev | MEDIUM | kernel: dccp: Fix out of bounds access in DCCP error handler | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53785 | linux-libc-dev | MEDIUM | kernel: mt76: mt7921: don't assume adequate headroom for SDI | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53792 | linux-libc-dev | MEDIUM | kernel: nvme-core: fix memory leak in dhchap_ctrl_secret | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53793 | linux-libc-dev | MEDIUM | kernel: perf tool x86: Fix perf_env memory leak | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53794 | linux-libc-dev | MEDIUM | kernel: cifs: fix session state check in reconnect to avoid | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53799 | linux-libc-dev | MEDIUM | kernel: crypto: api - Use work queue in crypto_destroy_insta | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53801 | linux-libc-dev | MEDIUM | kernel: iommu/sprd: Release dma buffer to avoid memory leak | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-53807 | linux-libc-dev | MEDIUM | kernel: clk: clocking-wizard: Fix Oops in clk_wzrd_register_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53808 | linux-libc-dev | MEDIUM | kernel: wifi: mwifiex: fix memory leak in mwifiex_histogram_ | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53815 | linux-libc-dev | MEDIUM | kernel: posix-timers: Prevent RT livelock in itimer_delete() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53817 | linux-libc-dev | MEDIUM | kernel: crypto: lib/mpi - avoid null pointer deref in mpi_cm | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53823 | linux-libc-dev | MEDIUM | kernel: block/rq_qos: protect rq_qos apis with a new lock | 6.1.38-4 | no fix | dagster |
| CVE-2023-53825 | linux-libc-dev | MEDIUM | kernel: kcm: Fix error handling for SOCK_DGRAM in kcm_sendms | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53828 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_sync: Avoid use-after-free in dbg for | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53829 | linux-libc-dev | MEDIUM | kernel: f2fs: flush inode if atomic file is aborted | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53831 | linux-libc-dev | MEDIUM | kernel: net: read sk->sk_family once in sk_mc_loop() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53834 | linux-libc-dev | MEDIUM | kernel: iio: adc: ina2xx: avoid NULL pointer dereference on | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53836 | linux-libc-dev | MEDIUM | kernel: bpf, sockmap: Fix skb refcnt race after locking chan | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53839 | linux-libc-dev | MEDIUM | kernel: dccp: fix data-race around dp->dccps_mss_cache | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53841 | linux-libc-dev | MEDIUM | kernel: devlink: report devlink_port_type_warn source device | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53842 | linux-libc-dev | MEDIUM | kernel: ASoC: codecs: wcd-mbhc-v2: fix resource leaks on com | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53843 | linux-libc-dev | MEDIUM | kernel: net: openvswitch: reject negative ifindex | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53844 | linux-libc-dev | MEDIUM | kernel: drm/ttm: Don't leak a resource on swapout move error | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53846 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on direct node in trunc | 6.1.38-4 | no fix | dagster |
| CVE-2023-53847 | linux-libc-dev | MEDIUM | kernel: usb-storage: alauda: Fix uninit-value in alauda_chec | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53848 | linux-libc-dev | MEDIUM | kernel: md/raid5-cache: fix a deadlock in r5l_exit_log() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53850 | linux-libc-dev | MEDIUM | kernel: iavf: use internal state to free traffic IRQs | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53852 | linux-libc-dev | MEDIUM | kernel: nvme-core: fix memory leak in dhchap_secret_store | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53855 | linux-libc-dev | MEDIUM | kernel: net: dsa: ocelot: call dsa_tag_8021q_unregister() un | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53856 | linux-libc-dev | MEDIUM | kernel: of: overlay: Call of_changeset_init() early | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53857 | linux-libc-dev | MEDIUM | kernel: bpf: bpf_sk_storage: Fix invalid wait context lockde | 6.1.38-4 | no fix | dagster |
| CVE-2023-53858 | linux-libc-dev | MEDIUM | kernel: tty: serial: samsung_tty: Fix a memory leak in s3c24 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53860 | linux-libc-dev | MEDIUM | kernel: dm: don't attempt to queue IO under RCU protection | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53861 | linux-libc-dev | MEDIUM | kernel: ext4: correct grp validation in ext4_mb_good_group | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53863 | linux-libc-dev | MEDIUM | kernel: netlink: do not hard code device address lenth in fd | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53865 | linux-libc-dev | MEDIUM | kernel: btrfs: fix warning when putting transaction with qgr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53989 | linux-libc-dev | MEDIUM | kernel: arm64: mm: fix VA-range sanity check | 6.1.38-4 | no fix | dagster |
| CVE-2023-53994 | linux-libc-dev | MEDIUM | kernel: ionic: remove WARN_ON to prevent panic_on_warn | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-53995 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53996 | linux-libc-dev | MEDIUM | kernel: x86/sev: Make enc_dec_hypercall() accept a size inst | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53999 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | no fix | dagster |
| CVE-2023-54001 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in r8712 driver | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54005 | linux-libc-dev | MEDIUM | kernel: binder: fix memory leak in binder_init() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54006 | linux-libc-dev | MEDIUM | kernel: af_unix: Fix data-race around unix_tot_inflight | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54013 | linux-libc-dev | MEDIUM | kernel: interconnect: Fix locking for runpm vs reclaim | 6.1.38-4 | no fix | dagster |
| CVE-2023-54014 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Check valid rport returned by fc_bsg_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54017 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries: fix possible memory leak in ibmebus | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54019 | linux-libc-dev | MEDIUM | kernel: sched/psi: use kernfs polling functions for PSI trig | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54023 | linux-libc-dev | MEDIUM | kernel: btrfs: fix race between balance and cancel/pause | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54025 | linux-libc-dev | MEDIUM | kernel: wifi: rsi: Do not configure WoWlan in shutdown hook | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54026 | linux-libc-dev | MEDIUM | kernel: opp: Fix use-after-free in lazy_opp_tables after pro | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54030 | linux-libc-dev | MEDIUM | kernel: io_uring/net: don't overflow multishot recv | 6.1.38-4 | no fix | dagster |
| CVE-2023-54031 | linux-libc-dev | MEDIUM | kernel: vdpa: Add queue index attr to vdpa_nl_policy for nla | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54032 | linux-libc-dev | MEDIUM | kernel: btrfs: fix race when deleting quota root from the di | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54035 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: fix underflow in chain referen | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54042 | linux-libc-dev | MEDIUM | kernel: powerpc/64s: Fix VAS mm use after free | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54045 | linux-libc-dev | MEDIUM | kernel: audit: fix possible soft lockup in __audit_inode_chi | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54048 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in RDMA/bnxt_re driv | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54049 | linux-libc-dev | MEDIUM | kernel: rpmsg: glink: Add check for kstrdup | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54051 | linux-libc-dev | MEDIUM | kernel: net: do not allow gso_size to be set to GSO_BY_FRAGS | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54052 | linux-libc-dev | MEDIUM | kernel: Linux kernel Wi-Fi driver: Denial of Service due to | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54064 | linux-libc-dev | MEDIUM | kernel: ipmi:ssif: Fix a memory leak when scanning for an ad | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54066 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in dvb-usb-v2 gl861 | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54067 | linux-libc-dev | MEDIUM | kernel: btrfs: fix race when deleting free space root from t | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54069 | linux-libc-dev | MEDIUM | kernel: ext4: fix BUG in ext4_mb_new_inode_pa() due to overf | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-54072 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of service or memory corruption | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54081 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in Xen grant table r | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54088 | linux-libc-dev | MEDIUM | kernel: blk-cgroup: hold queue_lock when removing blkg->q_no | 6.1.38-4 | no fix | dagster |
| CVE-2023-54091 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54092 | linux-libc-dev | MEDIUM | kernel: KVM: s390: pv: fix index value of replaced ASCE | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54093 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in anysee media driv | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54094 | linux-libc-dev | MEDIUM | kernel: net: prevent skb corruption on frag list segmentatio | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54095 | linux-libc-dev | MEDIUM | kernel: powerpc/iommu: Fix notifiers being shared by PCI and | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54096 | linux-libc-dev | MEDIUM | kernel: Linux kernel (soundwire): Memory corruption due to i | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54099 | linux-libc-dev | MEDIUM | kernel: fs: Protect reconfiguration of sb read-write from ra | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54104 | linux-libc-dev | MEDIUM | kernel: mtd: rawnand: fsl_upm: Fix an off-by one test in fun | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54106 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via memory leak in m | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54107 | linux-libc-dev | MEDIUM | kernel: Linux kernel blk-cgroup: Use-after-free vulnerabilit | 6.1.38-4 | no fix | dagster |
| CVE-2023-54112 | linux-libc-dev | MEDIUM | kernel: kcm: Fix memory leak in error path of kcm_sendmsg() | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54113 | linux-libc-dev | MEDIUM | kernel: rcu: dump vmalloc memory info safely | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54115 | linux-libc-dev | MEDIUM | kernel: pcmcia: rsrc_nonstatic: Fix memory leak in nonstatic | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54117 | linux-libc-dev | MEDIUM | kernel: s390/dcssblk: fix kernel crash with list_add corrupt | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54121 | linux-libc-dev | MEDIUM | kernel: btrfs: fix incorrect splitting in btrfs_drop_extent_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54125 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Return error for inconsistent extended att | 6.1.38-4 | no fix | dagster |
| CVE-2023-54134 | linux-libc-dev | MEDIUM | kernel: Linux kernel autofs: Denial of Service due to memory | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54136 | linux-libc-dev | MEDIUM | kernel: serial: sprd: Fix DMA buffer leak issue | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54137 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Information disclosure in VFIO Type1 m | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54140 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix WARNING in mark_buffer_dirty due to disc | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54142 | linux-libc-dev | MEDIUM | kernel: gtp: Fix use-after-free in __gtp_encap_destroy() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54143 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: fix resource leaks in vdec_ | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54154 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54155 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of service in network core via | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54156 | linux-libc-dev | MEDIUM | kernel: sfc: fix crash when reading stats while NIC is reset | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54164 | linux-libc-dev | MEDIUM | kernel: Bluetooth: ISO: fix iso_conn related locking and val | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54166 | linux-libc-dev | MEDIUM | kernel: igc: Fix Kernel Panic during ndo_tx_timeout callback | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54169 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: fix memory leak in mlx5e_ptp_open | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54170 | linux-libc-dev | MEDIUM | kernel: keys: Fix linking a duplicate key to a keyring's ass | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54173 | linux-libc-dev | MEDIUM | kernel: bpf: Disable preemption in bpf_event_output | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54178 | linux-libc-dev | MEDIUM | kernel: of: unittest: fix null pointer dereferencing in of_u | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54179 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Array index may go out of bound | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54181 | linux-libc-dev | MEDIUM | kernel: bpf: Fix issue in verifying allow_ptr_leaks | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54183 | linux-libc-dev | MEDIUM | kernel: media: v4l2-core: Fix a potential resource leak in v | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54185 | linux-libc-dev | MEDIUM | kernel: btrfs: remove BUG_ON()'s in add_new_free_space() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54189 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via NULL pointer der | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54196 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fix NULL pointer dereference in 'ni_write_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-54201 | linux-libc-dev | MEDIUM | kernel: RDMA/efa: Fix wrong resources deallocation order | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54209 | linux-libc-dev | MEDIUM | kernel: block: fix blktrace debugfs entries leakage | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54210 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_sync: Avoid use-after-free in dbg for | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54219 | linux-libc-dev | MEDIUM | kernel: Revert "IB/isert: Fix incorrect release of isert con | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54224 | linux-libc-dev | MEDIUM | kernel: Linux kernel btrfs: Denial of Service via circular l | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54225 | linux-libc-dev | MEDIUM | kernel: net: ipa: only reset hashed tables when supported | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54229 | linux-libc-dev | MEDIUM | kernel: wifi: fix registration of 6Ghz-only phy without the | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54240 | linux-libc-dev | MEDIUM | kernel: net: ethernet: mtk_eth_soc: fix possible NULL pointe | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54241 | linux-libc-dev | MEDIUM | kernel: MIPS: KVM: Fix NULL pointer dereference | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54247 | linux-libc-dev | MEDIUM | kernel: bpf: Silence a warning in btf_type_id_size() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2023-54251 | linux-libc-dev | MEDIUM | kernel: net/sched: taprio: Limit TCA_TAPRIO_ATTR_SCHED_CYCLE | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54253 | linux-libc-dev | MEDIUM | kernel: btrfs: set page extent mapped after read_folio in re | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54254 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service via resource leak in drm/t | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54255 | linux-libc-dev | MEDIUM | kernel: sh: dma: Fix DMA channel offset calculation | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54263 | linux-libc-dev | MEDIUM | kernel: drm/nouveau/kms/nv50-: init hpd_irq_lock for PIOR DP | 6.1.38-4 | no fix | dagster |
| CVE-2023-54264 | linux-libc-dev | MEDIUM | kernel: fs/sysv: Null check to prevent null-ptr-deref bug | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54266 | linux-libc-dev | MEDIUM | kernel: media: dvb-usb: m920x: Fix a potential memory leak i | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54271 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via NULL pointer der | 6.1.38-4 | no fix | dagster |
| CVE-2023-54272 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fix a possible null-pointer dereference in | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-54280 | linux-libc-dev | MEDIUM | kernel: cifs: fix potential race when tree connecting ipc | 6.1.38-4 | no fix | dagster |
| CVE-2023-54281 | linux-libc-dev | MEDIUM | kernel: btrfs: release path before inode lookup during the i | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54289 | linux-libc-dev | MEDIUM | kernel: scsi: qedf: Fix NULL dereference in error handling | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54292 | linux-libc-dev | MEDIUM | kernel: RDMA/irdma: Fix data race on CQP request done | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54293 | linux-libc-dev | MEDIUM | kernel: bcache: fixup btree_cache_wait list damage | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54296 | linux-libc-dev | MEDIUM | kernel: KVM: SVM: Get source vCPUs from source VM for SEV-ES | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54297 | linux-libc-dev | MEDIUM | kernel: btrfs: zoned: fix memory leak after finding block gr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54299 | linux-libc-dev | MEDIUM | kernel: usb: typec: bus: verify partner exists in typec_altm | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54300 | linux-libc-dev | MEDIUM | kernel: wifi: ath9k: avoid referencing uninit memory in ath9 | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54302 | linux-libc-dev | MEDIUM | kernel: RDMA/irdma: Fix data race on CQP completion stats | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54303 | linux-libc-dev | MEDIUM | kernel: bpf: Disable preemption in bpf_perf_event_output | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54304 | linux-libc-dev | MEDIUM | kernel: firmware: meson_sm: fix to avoid potential NULL poin | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54309 | linux-libc-dev | MEDIUM | kernel: tpm: tpm_vtpm_proxy: fix a race condition in /dev/vt | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54313 | linux-libc-dev | MEDIUM | kernel: Linux kernel OverlayFS: Kernel crash via null pointe | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54314 | linux-libc-dev | MEDIUM | kernel: media: af9005: Fix null-ptr-deref in af9005_i2c_xfer | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54318 | linux-libc-dev | MEDIUM | kernel: net/smc: use smc_lgr_list.lock to protect smc_lgr_li | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54319 | linux-libc-dev | MEDIUM | kernel: pinctrl: at91-pio4: check return value of devm_kaspr | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54324 | linux-libc-dev | MEDIUM | kernel: dm: fix a race condition in retrieve_deps | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-54326 | linux-libc-dev | MEDIUM | kernel: misc: pci_endpoint_test: Free IRQs before removing t | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-5752 | pip | MEDIUM | pip: Mercurial configuration injectable in repo revision whe | 23.0.1 | 23.3 | dagster |
| CVE-2023-5981 | libgnutls30 | MEDIUM | gnutls: timing side-channel in the RSA-PSK authentication | 3.7.9-2 | 3.7.9-2+deb12u1 | dagster |
| CVE-2023-6039 | linux-libc-dev | MEDIUM | kernel: use-after-free in drivers/net/usb/lan78xx.c in lan78 | 6.1.38-4 | no fix | dagster |
| CVE-2023-6121 | linux-libc-dev | MEDIUM | kernel: NVMe: info leak due to out-of-bounds read in nvmet_c | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-6176 | linux-libc-dev | MEDIUM | kernel: local dos vulnerability in scatterwalk_copychunks | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-6238 | linux-libc-dev | MEDIUM | kernel: nvme: memory corruption via unprivileged user passth | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2023-6240 | linux-libc-dev | MEDIUM | kernel: Marvin vulnerability side-channel leakage in the RSA | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-6622 | linux-libc-dev | MEDIUM | kernel: null pointer dereference vulnerability in nft_dynset | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2023-6780 | libc-bin | MEDIUM | glibc: integer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6780 | libc-dev-bin | MEDIUM | glibc: integer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6780 | libc6 | MEDIUM | glibc: integer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6780 | libc6-dev | MEDIUM | glibc: integer overflow in __vsyslog_internal() | 2.36-9+deb12u1 | 2.36-9+deb12u4 | dagster |
| CVE-2023-6915 | linux-libc-dev | MEDIUM | kernel: Null Pointer Dereference vulnerability in ida_free i | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2023-7008 | libsystemd0 | MEDIUM | systemd-resolved: Unsigned name response in signed zone is n | 252.12-1~deb12u1 | 252.21-1~deb12u1 | dagster |
| CVE-2023-7008 | libudev1 | MEDIUM | systemd-resolved: Unsigned name response in signed zone is n | 252.12-1~deb12u1 | 252.21-1~deb12u1 | dagster |
| CVE-2023-7042 | linux-libc-dev | MEDIUM | kernel: null pointer dereference in ath10k_wmi_tlv_op_pull_m | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-0193 | linux-libc-dev | MEDIUM | kernel: netfilter: use-after-free in nft_trans_gc_catchall_s | 6.1.38-4 | 6.1.69-1 | dagster |
| CVE-2024-0340 | linux-libc-dev | MEDIUM | kernel: Information disclosure in vhost/vhost.c:vhost_new_ms | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-0607 | linux-libc-dev | MEDIUM | kernel: nf_tables: pointer math issue in nft_byteorder_eval( | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2024-0639 | linux-libc-dev | MEDIUM | kernel: potential deadlock on &net->sctp.addr_wq_lock leadin | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2024-0641 | linux-libc-dev | MEDIUM | kernel: deadlock leading to denial of service in tipc_crypto | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2024-0727 | cryptography | MEDIUM | openssl: denial of service via null dereference | 41.0.5 | 42.0.2 | dagster |
| CVE-2024-10041 | libpam-modules | MEDIUM | pam: libpam: Libpam vulnerable to read hashed password | 1.5.2-6 | no fix | dagster, rds-iam-mvp-app |
| CVE-2024-10041 | libpam-modules-bin | MEDIUM | pam: libpam: Libpam vulnerable to read hashed password | 1.5.2-6 | no fix | dagster, rds-iam-mvp-app |
| CVE-2024-10041 | libpam-runtime | MEDIUM | pam: libpam: Libpam vulnerable to read hashed password | 1.5.2-6 | no fix | dagster, rds-iam-mvp-app |
| CVE-2024-10041 | libpam0g | MEDIUM | pam: libpam: Libpam vulnerable to read hashed password | 1.5.2-6 | no fix | dagster, rds-iam-mvp-app |
| CVE-2024-1151 | linux-libc-dev | MEDIUM | kernel: stack overflow problem in Open vSwitch kernel module | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-12133 | libtasn1-6 | MEDIUM | libtasn1: Inefficient DER Decoding in libtasn1 Leading to Po | 4.19.0-2 | 4.19.0-2+deb12u1 | dagster |
| CVE-2024-12243 | libgnutls30 | MEDIUM | gnutls: GnuTLS Impacted by Inefficient DER Decoding in libta | 3.7.9-2 | 3.7.9-2+deb12u4 | dagster |
| CVE-2024-14027 | linux-libc-dev | MEDIUM | kernel: xattr: switch to CLASS(fd) | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2024-21823 | linux-libc-dev | MEDIUM | kernel: dmaengine/idxd: hardware erratum allows potential se | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-2193 | linux-libc-dev | MEDIUM | hw: Spectre-SRC that is Speculative Race Conditions (SRCs) f | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-2201 | linux-libc-dev | MEDIUM | hw: cpu: intel: Native Branch History Injection (BHI) | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-22099 | linux-libc-dev | MEDIUM | kernel: NULL Pointer dereference bluetooth allows Overflow | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-22365 | libpam-modules | MEDIUM | pam: allowing unprivileged user to block another user namesp | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2024-22365 | libpam-modules-bin | MEDIUM | pam: allowing unprivileged user to block another user namesp | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2024-22365 | libpam-runtime | MEDIUM | pam: allowing unprivileged user to block another user namesp | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2024-22365 | libpam0g | MEDIUM | pam: allowing unprivileged user to block another user namesp | 1.5.2-6 | 1.5.2-6+deb12u2 | dagster |
| CVE-2024-22386 | linux-libc-dev | MEDIUM | A race condition was found in the Linux kernel's drm/exynos | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2024-23196 | linux-libc-dev | MEDIUM | kernel: Race condition in snd_hdac_regmap_sync() in sound/hd | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2024-23829 | aiohttp | MEDIUM | python-aiohttp: http request smuggling | 3.8.5 | 3.9.2 | dagster |
| CVE-2024-23848 | linux-libc-dev | MEDIUM | kernel: use-after-free in cec_queue_msg_fh | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-23849 | linux-libc-dev | MEDIUM | kernel: off-by-one error for an RDS_MSG_RX_DGRAM_TRACE_MAX c | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-23850 | linux-libc-dev | MEDIUM | kernel: btrfs_get_root_ref has an assertion failure and cras | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-23851 | linux-libc-dev | MEDIUM | kernel: copy_params can attempt to allocate more than INT_MA | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-24791 | stdlib | MEDIUM | net/http: Denial of service due to improper 100-continue han | v1.22.4 | 1.21.12, 1.22.5 | dagster |
| CVE-2024-24855 | linux-libc-dev | MEDIUM | kernel: Race condition in lpfc_unregister_fcf_rescan() in sc | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-24857 | linux-libc-dev | MEDIUM | kernel: net/bluetooth: race condition in conn_info_{min,max} | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-24858 | linux-libc-dev | MEDIUM | kernel: net/bluetooth: race condition in {conn,adv}_{min,max | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-24859 | linux-libc-dev | MEDIUM | kernel: bluetooth: race condition in sniff_{min,max}_interva | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-24860 | linux-libc-dev | MEDIUM | A race condition was found in the Linux kernel's bluetooth d | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-24861 | linux-libc-dev | MEDIUM | A race condition was found in the Linux kernel's media/xc400 | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-24864 | linux-libc-dev | MEDIUM | A race condition was found in the Linux kernel's media/dvb-c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-25739 | linux-libc-dev | MEDIUM | kernel: crash due to a missing check for leb_size | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-25740 | linux-libc-dev | MEDIUM | kernel: memory leak in ubi driver | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-25741 | linux-libc-dev | MEDIUM | kernel: f_printer: crash leading to denial of service | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-26462 | libgssapi-krb5-2 | MEDIUM | krb5: Memory leak at /krb5/src/kdc/ndr.c | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2024-26462 | libk5crypto3 | MEDIUM | krb5: Memory leak at /krb5/src/kdc/ndr.c | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2024-26462 | libkrb5-3 | MEDIUM | krb5: Memory leak at /krb5/src/kdc/ndr.c | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2024-26462 | libkrb5support0 | MEDIUM | krb5: Memory leak at /krb5/src/kdc/ndr.c | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2024-26583 | linux-libc-dev | MEDIUM | kernel: tls: race between async notify and socket close | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26584 | linux-libc-dev | MEDIUM | kernel: tls: handle backlogging of crypto requests | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26585 | linux-libc-dev | MEDIUM | kernel: tls: race between tx work scheduling and socket clos | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26586 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix stack corruption | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26590 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26591 | linux-libc-dev | MEDIUM | kernel: bpf: Fix re-attachment branch in bpf_tracing_prog_at | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26595 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix NULL pointer dereferen | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-26596 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-26600 | linux-libc-dev | MEDIUM | kernel: phy: ti: phy-omap-usb2: Fix NULL pointer dereference | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26601 | linux-libc-dev | MEDIUM | kernel: ext4: regenerate buddy after block freeing failed if | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26602 | linux-libc-dev | MEDIUM | kernel: sched/membarrier: reduce the ability to hammer on sy | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26603 | linux-libc-dev | MEDIUM | kernel: x86/fpu: Stop relying on userspace for info to fault | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26605 | linux-libc-dev | MEDIUM | kernel: PCI/ASPM: Fix deadlock when enabling ASPM | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26606 | linux-libc-dev | MEDIUM | kernel: signal epoll threads of self-work | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26607 | linux-libc-dev | MEDIUM | kernel: drm/bridge: sii902x: Fix probing race issue | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26608 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix global oob in ksmbd_nl_policy | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26615 | linux-libc-dev | MEDIUM | kernel: net/smc: fix illegal rmb_desc access in SMC-D connec | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26618 | linux-libc-dev | MEDIUM | hw: arm64/sme: Always exit sme_alloc() early with existing s | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-26621 | linux-libc-dev | MEDIUM | kernel: mm: huge_memory: don't force huge page alignment on | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26626 | linux-libc-dev | MEDIUM | kernel: ipmr: fix kernel panic when forwarding mcast packets | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26627 | linux-libc-dev | MEDIUM | kernel: scsi: core: Move scsi_host_busy() out of host lock f | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26629 | linux-libc-dev | MEDIUM | kernel: nfsd: fix RELEASE_LOCKOWNER | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26631 | linux-libc-dev | MEDIUM | kernel: ipv6: mcast: fix data-race in ipv6_mc_down / mld_ifc | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26632 | linux-libc-dev | MEDIUM | kernel: block: Fix iterating over an empty bio with bio_for_ | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26633 | linux-libc-dev | MEDIUM | kernel: ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26634 | linux-libc-dev | MEDIUM | kernel: net: fix removing a namespace with conflicting altna | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26635 | linux-libc-dev | MEDIUM | kernel: llc: Drop support for ETH_P_TR_802_2. | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26636 | linux-libc-dev | MEDIUM | kernel: llc: make llc_ui_sendmsg() more robust against bondi | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26638 | linux-libc-dev | MEDIUM | kernel: nbd: always initialize struct msghdr completely | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26640 | linux-libc-dev | MEDIUM | kernel: tcp: add sanity checks to rx zerocopy | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26641 | linux-libc-dev | MEDIUM | kernel: ip6_tunnel: make sure to pull inner header in __ip6_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26642 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: disallow anonymous set with ti | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26643 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: mark set as dead when unbindin | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26644 | linux-libc-dev | MEDIUM | kernel: btrfs: don't abort filesystem when attempting to sna | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26645 | linux-libc-dev | MEDIUM | kernel: tracing: Ensure visibility when inserting an element | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26646 | linux-libc-dev | MEDIUM | kernel: thermal: intel: hfi: Add syscore callbacks for syste | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26651 | linux-libc-dev | MEDIUM | kernel: sr9800: Add check for usbnet_get_endpoints | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26656 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: use-after-free vulnerability | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-26659 | linux-libc-dev | MEDIUM | kernel: xhci: handle isoc Babble and Buffer Overrun events p | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26660 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Implement bounds check for stream e | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26661 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL test for 'timing generator | 6.1.38-4 | no fix | dagster |
| CVE-2024-26662 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: 'panel_cntl' could be null in 'dcn2 | 6.1.38-4 | no fix | dagster |
| CVE-2024-26663 | linux-libc-dev | MEDIUM | kernel: tipc: Check the bearer type before calling tipc_udp_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26667 | linux-libc-dev | MEDIUM | kernel: drm/msm/dpu: check for valid hw_pp in dpu_encoder_he | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26668 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_limit: reject configurations that cau | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26670 | linux-libc-dev | MEDIUM | kernel: arm64: entry: fix ARM64_WORKAROUND_SPECULATIVE_UNPRI | 6.1.38-4 | no fix | dagster |
| CVE-2024-26671 | linux-libc-dev | MEDIUM | kernel: blk-mq: fix IO hang from sbitmap wakeup race | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26672 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: variable 'mca_funcs' dereferenced before | 6.1.38-4 | no fix | dagster |
| CVE-2024-26675 | linux-libc-dev | MEDIUM | kernel: ppp_async: limit MRU to 64K | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26676 | linux-libc-dev | MEDIUM | kernel: af_unix: Call kfree_skb() for dead unix_(sk)->oob_sk | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26677 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix delayed ACKs to not set the reference ser | 6.1.38-4 | no fix | dagster |
| CVE-2024-26679 | linux-libc-dev | MEDIUM | kernel: inet: read sk->sk_family once in inet_recv_error( | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26680 | linux-libc-dev | MEDIUM | kernel: net: atlantic: Fix DMA mapping for PTP hwts ring | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26681 | linux-libc-dev | MEDIUM | kernel: netdevsim: avoid potential loop in nsim_dev_trap_rep | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26684 | linux-libc-dev | MEDIUM | kernel: net: stmmac: xgmac: fix handling of DPP safety error | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26685 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix potential bug in end_buffer_async_write | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26686 | linux-libc-dev | MEDIUM | kernel: fs/proc: do_task_stat: use sig->stats_lock to gather | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26687 | linux-libc-dev | MEDIUM | kernel: xen/events: close evtchn after mapping cleanup | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26688 | linux-libc-dev | MEDIUM | kernel: fs,hugetlb: fix NULL pointer dereference in hugetlbs | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26691 | linux-libc-dev | MEDIUM | kernel: KVM: arm64: Fix circular locking dependency | 6.1.38-4 | no fix | dagster |
| CVE-2024-26695 | linux-libc-dev | MEDIUM | kernel: crypto: ccp - Fix null pointer dereference in __sev_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26696 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix hang in nilfs_lookup_dirty_data_buffers( | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26697 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix data corruption in dsync block recovery | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26698 | linux-libc-dev | MEDIUM | kernel: hv_netvsc: Fix race condition between netvsc_probe a | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26700 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix MST Null Ptr for RV | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26702 | linux-libc-dev | MEDIUM | kernel: iio: magnetometer: rm3100: add boundary check for th | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26706 | linux-libc-dev | MEDIUM | kernel: parisc: Fix random data corruption from exception ha | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26707 | linux-libc-dev | MEDIUM | kernel: net: hsr: remove WARN_ONCE() in send_hsr_supervision | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26712 | linux-libc-dev | MEDIUM | kernel: powerpc/kasan: Fix addr error caused by page alignme | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26714 | linux-libc-dev | MEDIUM | kernel: interconnect: qcom: sc8180x: Mark CO0 BCM keepalive | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26715 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: gadget: Fix NULL pointer dereference in d | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26717 | linux-libc-dev | MEDIUM | kernel: HID: i2c-hid-of: fix NULL-deref on failed power up | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26718 | linux-libc-dev | MEDIUM | kernel: dm-crypt, dm-verity: disable tasklets | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26722 | linux-libc-dev | MEDIUM | kernel: ASoC: rt5645: Fix deadlock in rt5645_jack_detect_wor | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26723 | linux-libc-dev | MEDIUM | kernel: lan966x: Fix crash when adding interface under a lag | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26726 | linux-libc-dev | MEDIUM | kernel: btrfs: don't drop extent_map for free space inode on | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26727 | linux-libc-dev | MEDIUM | kernel: btrfs: do not ASSERT() if the newly created subvolum | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26731 | linux-libc-dev | MEDIUM | kernel: bpf, sockmap: Fix NULL pointer dereference in sk_pso | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26733 | linux-libc-dev | MEDIUM | kernel: arp: Prevent overflow in arp_req_get(). | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26735 | linux-libc-dev | MEDIUM | kernel: ipv6: sr: fix possible use-after-free and null-ptr-d | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26737 | linux-libc-dev | MEDIUM | kernel: bpf: Fix racing between bpf_timer_cancel_and_free an | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26740 | linux-libc-dev | MEDIUM | kernel: net/sched: act_mirred: use the backlog for mirred in | 6.1.38-4 | no fix | dagster |
| CVE-2024-26741 | linux-libc-dev | MEDIUM | kernel: dccp/tcp: Unhash sk from ehash for tb2 alloc failure | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26743 | linux-libc-dev | MEDIUM | kernel: RDMA/qedr: Fix qedr_create_user_qp error flow | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26744 | linux-libc-dev | MEDIUM | kernel: RDMA/srpt: Support specifying the srpt_service_guid | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26745 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries/iommu: IOMMU table is not initialize | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26747 | linux-libc-dev | MEDIUM | kernel: usb: roles: fix NULL pointer issue when put module's | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26750 | linux-libc-dev | MEDIUM | kernel: af_unix: Drop oob_skb ref before purging queue in GC | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26751 | linux-libc-dev | MEDIUM | kernel: ARM: ep93xx: Add terminator to gpiod_lookup_table | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26752 | linux-libc-dev | MEDIUM | kernel: l2tp: pass correct message length to ip6_append_data | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26756 | linux-libc-dev | MEDIUM | kernel: md: Don't register sync_thread for reshape directly | 6.1.38-4 | no fix | dagster |
| CVE-2024-26757 | linux-libc-dev | MEDIUM | kernel: md: Don't ignore read-only array in md_check_recover | 6.1.38-4 | no fix | dagster |
| CVE-2024-26758 | linux-libc-dev | MEDIUM | kernel: md: Don't ignore suspended array in md_check_recover | 6.1.38-4 | no fix | dagster |
| CVE-2024-26759 | linux-libc-dev | MEDIUM | kernel: mm/swap: fix race when skipping swapcache | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26760 | linux-libc-dev | MEDIUM | kernel: scsi: target: pscsi: Fix bio_put() for error case | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26761 | linux-libc-dev | MEDIUM | kernel: cxl/pci: Fix disabling memory if DVSEC CXL Range doe | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26765 | linux-libc-dev | MEDIUM | kernel: LoongArch: Disable IRQ before init_fn() for nonboot | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26766 | linux-libc-dev | MEDIUM | kernel: IB/hfi1: Fix sdma.h tx->num_descs off-by-one error | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26767 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: fixed integer types and null check | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-26768 | linux-libc-dev | MEDIUM | kernel: LoongArch: Change acpi_core_pic[NR_CPUS] to acpi_cor | 6.1.38-4 | no fix | dagster |
| CVE-2024-26769 | linux-libc-dev | MEDIUM | kernel: nvmet-fc: avoid deadlock on delete association path | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26771 | linux-libc-dev | MEDIUM | kernel: dmaengine: ti: edma: Add some null pointer checks to | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26772 | linux-libc-dev | MEDIUM | kernel: ext4: avoid allocating blocks from corrupted group i | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26773 | linux-libc-dev | MEDIUM | kernel: ext4: avoid allocating blocks from corrupted group i | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26774 | linux-libc-dev | MEDIUM | kernel: ext4: avoid dividing by 0 in mb_update_avg_fragment_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26775 | linux-libc-dev | MEDIUM | kernel: aoe: avoid potential deadlock at set_capacity | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26776 | linux-libc-dev | MEDIUM | kernel: spi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26777 | linux-libc-dev | MEDIUM | kernel: fbdev: sis: Error out if pixclock equals zero | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26778 | linux-libc-dev | MEDIUM | kernel: fbdev: savage: Error out if pixclock equals zero | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26779 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: fix race condition on enabling fast- | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26780 | linux-libc-dev | MEDIUM | kernel: af_unix: Fix task hung while purging oob_skb in GC. | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26781 | linux-libc-dev | MEDIUM | kernel: mptcp: fix possible deadlock in subflow diag | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26783 | linux-libc-dev | MEDIUM | kernel: mm/vmscan: fix a bug calling wakeup_kswapd() with a | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-26787 | linux-libc-dev | MEDIUM | kernel: mmc: mmci: stm32: fix DMA API overlapping mappings w | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26788 | linux-libc-dev | MEDIUM | kernel: dmaengine: fsl-qdma: init irq after reg initializati | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26789 | linux-libc-dev | MEDIUM | kernel: crypto: arm64/neonbs - fix out-of-bounds access on s | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26790 | linux-libc-dev | MEDIUM | kernel: dmaengine: fsl-qdma: fix SoC may hang on 16 byte una | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26795 | linux-libc-dev | MEDIUM | kernel: riscv: Sparse-Memory/vmemmap out-of-bounds fix | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26798 | linux-libc-dev | MEDIUM | kernel: fbcon: always restore the old font data in fbcon_do_ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26799 | linux-libc-dev | MEDIUM | kernel: ASoC: qcom: Fix uninitialized pointer dmactl | 6.1.38-4 | no fix | dagster |
| CVE-2024-26801 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Avoid potential use-after-free in hci_err | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26802 | linux-libc-dev | MEDIUM | kernel: stmmac: Clear variable when destroying workqueue | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26803 | linux-libc-dev | MEDIUM | kernel: net: veth: clear GRO when clearing XDP even when dow | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26804 | linux-libc-dev | MEDIUM | kernel: net: ip_tunnel: prevent perpetual headroom growth | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26805 | linux-libc-dev | MEDIUM | kernel: netlink: Fix kernel-infoleak-after-free in __skb_dat | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26807 | linux-libc-dev | MEDIUM | kernel: spi: cadence-qspi: fix pointer reference in runtime | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-26808 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_chain_filter: handle NETDEV_UNREGISTE | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26809 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_set_pipapo: release elements in clone | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26810 | linux-libc-dev | MEDIUM | kernel: vfio/pci: Lock external INTx masking ops | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26811 | linux-libc-dev | MEDIUM | kernel: ksmbd: validate payload size in ipc response | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26812 | linux-libc-dev | MEDIUM | kernel: vfio/pci: Create persistent INTx handler | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26813 | linux-libc-dev | MEDIUM | kernel: vfio/platform: Create persistent IRQ handlers | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26814 | linux-libc-dev | MEDIUM | kernel: vfio/fsl-mc: Block calling interrupt handler without | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26815 | linux-libc-dev | MEDIUM | kernel: net/sched: taprio: proper TCA_TAPRIO_TC_ENTRY_INDEX | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26816 | linux-libc-dev | MEDIUM | kernel: x86, relocs: Ignore relocations in .notes section | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26817 | linux-libc-dev | MEDIUM | kernel: amdkfd: use calloc instead of kzalloc to avoid integ | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26820 | linux-libc-dev | MEDIUM | kernel: hv_netvsc: Register VF in netvsc_probe if NET_DEVICE | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26822 | linux-libc-dev | MEDIUM | kernel: smb: client: set correct id, uid and cruid for multi | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2024-26825 | linux-libc-dev | MEDIUM | kernel: nfc: nci: free rx_data_reassembly skb on NCI device | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26826 | linux-libc-dev | MEDIUM | kernel: mptcp: fix data re-injection from stale subflow | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26828 | linux-libc-dev | MEDIUM | kernel: cifs: fix underflow in parse_server_interfaces() | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26829 | linux-libc-dev | MEDIUM | kernel: media: ir_toy: fix a memleak in irtoy_tx | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26830 | linux-libc-dev | MEDIUM | kernel: i40e: Do not allow untrusted VF to remove administra | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26832 | linux-libc-dev | MEDIUM | kernel: mm: zswap: fix missing folio cleanup in writeback ra | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26833 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix memory leak in dm_sw_fini() | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26834 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_flow_offload: release dst in case dir | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26835 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: set dormant flag on hook regis | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26837 | linux-libc-dev | MEDIUM | kernel: net: bridge: switchdev: Skip MDB replays of deferred | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26838 | linux-libc-dev | MEDIUM | kernel: RDMA/irdma: Fix KASAN issue with tasklet | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26839 | linux-libc-dev | MEDIUM | kernel: IB/hfi1: Fix a memleak in init_credit_return | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26840 | linux-libc-dev | MEDIUM | kernel: cachefiles: fix memory leak in cachefiles_add_cache( | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26841 | linux-libc-dev | MEDIUM | kernel: LoongArch: Update cpu_sibling_map when disabling non | 6.1.38-4 | no fix | dagster |
| CVE-2024-26843 | linux-libc-dev | MEDIUM | kernel: efi: runtime: Fix potential overflow of soft-reserve | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26844 | linux-libc-dev | MEDIUM | kernel: block: Fix WARNING in _copy_from_iter | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26845 | linux-libc-dev | MEDIUM | kernel: scsi: target: core: Add TMF to tmr_list handling | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26846 | linux-libc-dev | MEDIUM | kernel: nvme-fc: do not wait in vain when unloading module | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26849 | linux-libc-dev | MEDIUM | kernel: netlink: add nla be16/32 types to minlen array | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26851 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conntrack_h323: Add protection for bmp | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26853 | linux-libc-dev | MEDIUM | kernel: igc: avoid returning frame twice in XDP_REDIRECT | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26855 | linux-libc-dev | MEDIUM | kernel: net: ice: Fix potential NULL pointer dereference in | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26857 | linux-libc-dev | MEDIUM | kernel: geneve: make sure to pull inner header in geneve_rx( | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26859 | linux-libc-dev | MEDIUM | kernel: net/bnx2x: Prevent access to a freed page in page_po | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26860 | linux-libc-dev | MEDIUM | kernel: dm-integrity: fix a memory leak when rechecking the | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26861 | linux-libc-dev | MEDIUM | kernel: wireguard: receive: annotate data-race around receiv | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26862 | linux-libc-dev | MEDIUM | kernel: packet: annotate data-races around ignore_outgoing | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26863 | linux-libc-dev | MEDIUM | kernel: hsr: Fix uninit-value access in hsr_get_node() | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26864 | linux-libc-dev | MEDIUM | kernel: tcp: Fix refcnt handling in __inet_hash_connect(). | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26866 | linux-libc-dev | MEDIUM | kernel: spi: lpspi: Avoid potential use-after-free in probe( | 6.1.38-4 | no fix | dagster |
| CVE-2024-26868 | linux-libc-dev | MEDIUM | kernel: nfs: fix panic when nfs4_ff_layout_prepare_ds() fail | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26869 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to truncate meta inode pages forcely | 6.1.38-4 | no fix | dagster |
| CVE-2024-26870 | linux-libc-dev | MEDIUM | kernel: NFSv4.2: fix nfs4_listxattr kernel BUG at mm/usercop | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26874 | linux-libc-dev | MEDIUM | kernel: drm/mediatek: Fix a null pointer crash in mtk_drm_cr | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26875 | linux-libc-dev | MEDIUM | kernel: media: pvrusb2: fix uaf in pvr2_context_set_notify | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26876 | linux-libc-dev | MEDIUM | kernel: drm/bridge: adv7511: fix crash on irq during probe | 6.1.38-4 | no fix | dagster |
| CVE-2024-26877 | linux-libc-dev | MEDIUM | kernel: crypto: xilinx - call finalize with bh disabled | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26878 | linux-libc-dev | MEDIUM | kernel: quota: Fix potential NULL pointer dereference | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26879 | linux-libc-dev | MEDIUM | kernel: clk: meson: Add missing clocks to axg_clk_regmaps | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26880 | linux-libc-dev | MEDIUM | kernel: dm: call the resume method on internal suspend | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26881 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix kernel crash when 1588 is received on | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26886 | linux-libc-dev | MEDIUM | kernel: Bluetooth: af_bluetooth: Fix deadlock | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26889 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_core: Fix possible buffer overflow | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26891 | linux-libc-dev | MEDIUM | kernel: iommu/vt-d: Don't issue ATS Invalidation request | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26893 | linux-libc-dev | MEDIUM | kernel: firmware: arm_scmi: Fix double free in SMC transport | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26894 | linux-libc-dev | MEDIUM | kernel: ACPI: processor_idle: Fix memory leak in acpi_proces | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26896 | linux-libc-dev | MEDIUM | kernel: wifi: wfx: fix memory leak when starting AP | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26897 | linux-libc-dev | MEDIUM | kernel: wifi: ath9k: delay all of ath9k_wmi_event_tasklet() | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26900 | linux-libc-dev | MEDIUM | kernel: md: fix kmemleak of rdev->serial | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-26901 | linux-libc-dev | MEDIUM | kernel: do_sys_name_to_handle(): use kzalloc() to fix kernel | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26902 | linux-libc-dev | MEDIUM | kernel: perf: RISCV: Fix panic on pmu overflow handler | 6.1.38-4 | no fix | dagster |
| CVE-2024-26903 | linux-libc-dev | MEDIUM | kernel: Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_chec | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26906 | linux-libc-dev | MEDIUM | kernel: x86/mm: Disallow vsyscall page read for copy_from_ke | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26910 | linux-libc-dev | MEDIUM | kernel: netfilter: ipset: fix performance regression in swap | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26915 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Reset IH OVERFLOW_CLEAR bit | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26916 | linux-libc-dev | MEDIUM | kernel: Revert "drm/amd: flush any delayed gfxoff on sus | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26917 | linux-libc-dev | MEDIUM | kernel: scsi: Revert "scsi: fcoe: Fix potential deadlock on | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26919 | linux-libc-dev | MEDIUM | kernel: usb: ulpi: Fix debugfs directory leak | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26920 | linux-libc-dev | MEDIUM | kernel: tracing/trigger: Fix to return error if failed to al | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26921 | linux-libc-dev | MEDIUM | kernel: inet: inet_defrag: prevent sk release while still in | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26922 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: validate the parameters of bo mapping op | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26923 | linux-libc-dev | MEDIUM | kernel: af_unix: Fix garbage collector racing against connec | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26924 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_set_pipapo: do not free live element | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26925 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: release mutex after nft_gc_seq | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26926 | linux-libc-dev | MEDIUM | kernel: binder: check offset alignment in binder_get_object( | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26927 | linux-libc-dev | MEDIUM | kernel: ASoC: SOF: Add some bounds checking to firmware data | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26931 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Fix command flush on cable pull | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26935 | linux-libc-dev | MEDIUM | kernel: scsi: core: Fix unremoved procfs host directory regr | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26937 | linux-libc-dev | MEDIUM | kernel: drm/i915/gt: Reset queue_priority_hint on parking | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26940 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Create debugfs ttm_resource_manager entr | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26943 | linux-libc-dev | MEDIUM | kernel: nouveau/dmem: handle kcalloc() allocation failure | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26946 | linux-libc-dev | MEDIUM | kernel: kprobes/x86: Use copy_from_kernel_nofault() to read | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26947 | linux-libc-dev | MEDIUM | kernel: ARM: 9359/1: flush: check if the folio is reserved f | 6.1.38-4 | no fix | dagster |
| CVE-2024-26948 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add a dc_state NULL check in dc_sta | 6.1.38-4 | no fix | dagster |
| CVE-2024-26950 | linux-libc-dev | MEDIUM | kernel: wireguard: netlink: access device through ctx instea | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26953 | linux-libc-dev | MEDIUM | kernel: net: esp: fix bad handling of pages from page_pool | 6.1.38-4 | no fix | dagster |
| CVE-2024-26960 | linux-libc-dev | MEDIUM | kernel: mm: swap: fix race between free_swap_and_cache() and | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26962 | linux-libc-dev | MEDIUM | kernel: dm-raid456, md/raid456: fix a deadlock for dm-raid45 | 6.1.38-4 | no fix | dagster |
| CVE-2024-26963 | linux-libc-dev | MEDIUM | kernel: usb: dwc3-am62: fix module unload/reload behavior | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26964 | linux-libc-dev | MEDIUM | kernel: usb: xhci: Add error handling in xhci_map_urb_for_dm | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26966 | linux-libc-dev | MEDIUM | kernel: clk: qcom: mmcc-apq8084: fix terminating of frequenc | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26969 | linux-libc-dev | MEDIUM | kernel: clk: qcom: gcc-ipq8074: fix terminating of frequency | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26970 | linux-libc-dev | MEDIUM | kernel: clk: qcom: gcc-ipq6018: fix terminating of frequency | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26973 | linux-libc-dev | MEDIUM | kernel: fat: fix uninitialized field in nostale filehandles | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26976 | linux-libc-dev | MEDIUM | kernel: KVM: Always flush async #PF workqueue when vCPU is b | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26977 | linux-libc-dev | MEDIUM | kernel: pci_iounmap(): Fix MMIO mapping leak | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26978 | linux-libc-dev | MEDIUM | kernel: serial: max310x: fix NULL pointer dereference in I2C | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-26980 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix slab-out-of-bounds in smb2_allocate_rsp_b | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26984 | linux-libc-dev | MEDIUM | kernel: nouveau: fix instmem race condition around ptr store | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26987 | linux-libc-dev | MEDIUM | kernel: mm/memory-failure: fix deadlock when hugetlb_optimiz | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26993 | linux-libc-dev | MEDIUM | kernel: fs: sysfs: Fix reference leak in sysfs_break_active_ | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26994 | linux-libc-dev | MEDIUM | kernel: speakup: Avoid crash on very long word | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26997 | linux-libc-dev | MEDIUM | kernel: usb: dwc2: host: Fix dereference issue in DDMA compl | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-26999 | linux-libc-dev | MEDIUM | kernel: serial/pmac_zilog: Remove flawed mitigation for rx i | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27001 | linux-libc-dev | MEDIUM | kernel: comedi: vmk80xx: fix incomplete endpoint checking | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27002 | linux-libc-dev | MEDIUM | kernel: clk: mediatek: Do a runtime PM get on controllers du | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27003 | linux-libc-dev | MEDIUM | kernel: clk: Get runtime PM before walking tree for clk_summ | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27004 | linux-libc-dev | MEDIUM | kernel: clk: Get runtime PM before walking tree during disab | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27009 | linux-libc-dev | MEDIUM | kernel: s390/cio: fix race condition during online processin | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27010 | linux-libc-dev | MEDIUM | kernel: net/sched: Fix mirred deadlock on device recursion | 6.1.38-4 | no fix | dagster |
| CVE-2024-27011 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: fix memleak in map from abort | 6.1.38-4 | no fix | dagster |
| CVE-2024-27012 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: restore set elements when dele | 6.1.38-4 | no fix | dagster |
| CVE-2024-27013 | linux-libc-dev | MEDIUM | kernel: tun: limit printing rate when illegal packet receive | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27014 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Prevent deadlock while disabling aRFS | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27015 | linux-libc-dev | MEDIUM | kernel: netfilter: flowtable: incorrect pppoe tuple | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27016 | linux-libc-dev | MEDIUM | kernel: netfilter: flowtable: validate pppoe header | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27017 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_set_pipapo: walk over current view on | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-27019 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: Fix potential data-race in __n | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-27023 | linux-libc-dev | MEDIUM | kernel: md: Fix missing release of 'active_io' for f | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27025 | linux-libc-dev | MEDIUM | kernel: nbd: null check for nla_nest_start | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27028 | linux-libc-dev | MEDIUM | kernel: spi: spi-mt65xx: Fix NULL pointer access in interrup | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27030 | linux-libc-dev | MEDIUM | kernel: octeontx2-af: race condition on interupts | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27032 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid potential panic during recovery | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27034 | linux-libc-dev | MEDIUM | kernel: f2fs: compress: fix to cover normal cluster write wi | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27035 | linux-libc-dev | MEDIUM | kernel: f2fs: compress: fix to guarantee persisting compress | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27037 | linux-libc-dev | MEDIUM | kernel: clk: zynq: Prevent null pointer dereference caused b | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27038 | linux-libc-dev | MEDIUM | kernel: clk: Fix clk_core_get NULL dereference | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27039 | linux-libc-dev | MEDIUM | kernel: clk: hisilicon: hi3559a: Fix an erroneous devm_kfree | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27041 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: fix NULL checks for adev->dm.dc | 6.1.38-4 | no fix | dagster |
| CVE-2024-27044 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix potential NULL pointer derefere | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27046 | linux-libc-dev | MEDIUM | kernel: nfp: flower: handle acti_netdevs allocation failure | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27047 | linux-libc-dev | MEDIUM | kernel: net: phy: fix phy_get_internal_delay accessing an em | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27051 | linux-libc-dev | MEDIUM | kernel: cpufreq: brcmstb-avs-cpufreq: add check for cpufreq_ | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27052 | linux-libc-dev | MEDIUM | kernel: wifi: rtl8xxxu: add cancel_work_sync() for c2hcmd_wo | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27053 | linux-libc-dev | MEDIUM | kernel: wifi: wilc1000: fix RCU usage in connect path | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27054 | linux-libc-dev | MEDIUM | kernel: s390/dasd: fix double module refcount decrement | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27056 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: ensure offloading TID queue exis | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-27057 | linux-libc-dev | MEDIUM | kernel: ASoC: SOF: ipc4-pcm: Workaround for crashed firmware | 6.1.38-4 | no fix | dagster |
| CVE-2024-27059 | linux-libc-dev | MEDIUM | kernel: USB: usb-storage: Prevent divide-by-0 error in isd20 | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27062 | linux-libc-dev | MEDIUM | kernel: nouveau: lock the client object tree. | 6.1.38-4 | no fix | dagster |
| CVE-2024-27072 | linux-libc-dev | MEDIUM | kernel: media: usbtv: Remove useless locks in usbtv_video_fr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-27073 | linux-libc-dev | MEDIUM | kernel: media: ttpci: fix two memleaks in budget_av_attach | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27074 | linux-libc-dev | MEDIUM | kernel: media: go7007: fix a memleak in go7007_load_encoder | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27076 | linux-libc-dev | MEDIUM | kernel: media: imx: csc/scaler: fix v4l2_ctrl_handler memory | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27077 | linux-libc-dev | MEDIUM | kernel: media: v4l2-mem2mem: fix a memleak in v4l2_m2m_regis | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27078 | linux-libc-dev | MEDIUM | kernel: media: v4l2-tpg: fix some memleaks in tpg_alloc | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27079 | linux-libc-dev | MEDIUM | kernel: iommu/vt-d: Fix NULL domain on device release | 6.1.38-4 | no fix | dagster |
| CVE-2024-27306 | aiohttp | MEDIUM | aiohttp: XSS on index pages for static file handling | 3.8.5 | 3.9.4 | dagster |
| CVE-2024-27388 | linux-libc-dev | MEDIUM | kernel: SUNRPC: fix some memleaks in gssx_dec_option_array | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27389 | linux-libc-dev | MEDIUM | kernel: pstore: inode: Only d_invalidate() is needed | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27390 | linux-libc-dev | MEDIUM | kernel: ipv6: mcast: remove one synchronize_net() barrier in | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27391 | linux-libc-dev | MEDIUM | kernel: wifi: wilc1000: do not realloc workqueue everytime a | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27393 | linux-libc-dev | MEDIUM | kernel: xen-netfront: Add missing skb_mark_for_recycle | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27399 | linux-libc-dev | MEDIUM | kernel: Bluetooth: l2cap: fix null-ptr-deref in l2cap_chan_t | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-27400 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: once more fix the call oder in amdgpu_tt | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-27402 | linux-libc-dev | MEDIUM | kernel: phonet/pep: fix racy skb_queue_empty() use | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27403 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_flow_offload: reset dst in route obje | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27404 | linux-libc-dev | MEDIUM | kernel: mptcp: fix data races on remote_id | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27405 | linux-libc-dev | MEDIUM | kernel: usb: gadget: ncm: Avoid dropping datagrams of proper | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27407 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fixed overflow check in mi_enum_attr() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-27408 | linux-libc-dev | MEDIUM | kernel: dmaengine: dw-edma: eDMA: Add sync read before start | 6.1.38-4 | no fix | dagster |
| CVE-2024-27410 | linux-libc-dev | MEDIUM | kernel: wifi: nl80211: reject iftype change with mesh ID cha | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27412 | linux-libc-dev | MEDIUM | kernel: power: supply: bq27xxx-i2c: Do not free non existing | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27413 | linux-libc-dev | MEDIUM | kernel: efi/capsule-loader: fix incorrect allocation size | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27414 | linux-libc-dev | MEDIUM | kernel: rtnetlink: fix error logic of IFLA_BRIDGE_FLAGS writ | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27415 | linux-libc-dev | MEDIUM | kernel: netfilter: bridge: confirm multicast packets before | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27416 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_event: Fix handling of HCI_EV_IO_CAPA | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27417 | linux-libc-dev | MEDIUM | kernel: ipv6: fix potential "struct net" leak in ine | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27418 | linux-libc-dev | MEDIUM | kernel: net: mctp: take ownership of skb in mctp_local_outpu | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27419 | linux-libc-dev | MEDIUM | kernel: netrom: Fix data-races around sysctl_net_busy_read | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27431 | linux-libc-dev | MEDIUM | kernel: cpumap: Zero-initialise xdp_rxq_info struct before r | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-27432 | linux-libc-dev | MEDIUM | kernel: net: ethernet: mtk_eth_soc: fix PPE hanging issue | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27435 | linux-libc-dev | MEDIUM | kernel: nvme: fix reconnection fail due to reserved tag allo | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27436 | linux-libc-dev | MEDIUM | kernel: ALSA: usb-audio: Stop parsing channels bits when all | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-27437 | linux-libc-dev | MEDIUM | kernel: vfio/pci: Disable auto-enable of exclusive INTx IRQ | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-28085 | bsdutils | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 1:2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | libblkid1 | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | libmount1 | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | libsmartcols1 | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | libuuid1 | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | mount | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | util-linux | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28085 | util-linux-extra | MEDIUM | util-linux: CVE-2024-28085: wall: escape sequence injection | 2.38.1-5+b1 | 2.38.1-5+deb12u1 | dagster |
| CVE-2024-28834 | libgnutls30 | MEDIUM | gnutls: vulnerable to Minerva side-channel information leak | 3.7.9-2 | 3.7.9-2+deb12u3 | dagster |
| CVE-2024-28835 | libgnutls30 | MEDIUM | gnutls: potential crash during chain building/verification | 3.7.9-2 | 3.7.9-2+deb12u3 | dagster |
| CVE-2024-28956 | linux-libc-dev | MEDIUM | microcode_ctl: From CVEorg collector | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-31076 | linux-libc-dev | MEDIUM | kernel: genirq/cpuhotplug, x86/vector: Prevent vector leak d | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-33600 | libc-bin | MEDIUM | glibc: null pointer dereferences after failed netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33600 | libc-dev-bin | MEDIUM | glibc: null pointer dereferences after failed netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33600 | libc6 | MEDIUM | glibc: null pointer dereferences after failed netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33600 | libc6-dev | MEDIUM | glibc: null pointer dereferences after failed netgroup cache | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33601 | libc-bin | MEDIUM | glibc: netgroup cache may terminate daemon on memory allocat | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33601 | libc-dev-bin | MEDIUM | glibc: netgroup cache may terminate daemon on memory allocat | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33601 | libc6 | MEDIUM | glibc: netgroup cache may terminate daemon on memory allocat | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33601 | libc6-dev | MEDIUM | glibc: netgroup cache may terminate daemon on memory allocat | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33602 | libc-bin | MEDIUM | glibc: netgroup cache assumes NSS callback uses in-buffer st | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33602 | libc-dev-bin | MEDIUM | glibc: netgroup cache assumes NSS callback uses in-buffer st | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33602 | libc6 | MEDIUM | glibc: netgroup cache assumes NSS callback uses in-buffer st | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33602 | libc6-dev | MEDIUM | glibc: netgroup cache assumes NSS callback uses in-buffer st | 2.36-9+deb12u1 | 2.36-9+deb12u7 | dagster |
| CVE-2024-33619 | linux-libc-dev | MEDIUM | kernel: efi: libstub: only free priv.runtime_map when alloca | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-33621 | linux-libc-dev | MEDIUM | kernel: ipvlan: Dont Use skb->sk in ipvlan_process_v{4,6} | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-33847 | linux-libc-dev | MEDIUM | kernel: f2fs: compress: don't allow unaligned truncation | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-34027 | linux-libc-dev | MEDIUM | kernel: f2fs: compress: fix to cover {reserve,release}_compr | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-34064 | Jinja2 | MEDIUM | jinja2: accepts keys containing non-attribute characters | 3.1.3 | 3.1.4 | dagster |
| CVE-2024-34155 | stdlib | MEDIUM | go/parser: golang: Calling any of the Parse functions contai | v1.22.4 | 1.22.7, 1.23.1 | dagster |
| CVE-2024-34158 | stdlib | MEDIUM | go/build/constraint: golang: Calling Parse on a "// +build" | v1.22.4 | 1.22.7, 1.23.1 | dagster |
| CVE-2024-35195 | requests | MEDIUM | requests: subsequent requests to the same host ignore cert v | 2.31.0 | 2.32.0 | dagster, slack-rqd-api |
| CVE-2024-35247 | linux-libc-dev | MEDIUM | kernel: fpga: region: add owner module and take its refcount | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-35784 | linux-libc-dev | MEDIUM | kernel: btrfs: fix deadlock with fiemap and extent locking | 6.1.38-4 | no fix | dagster |
| CVE-2024-35790 | linux-libc-dev | MEDIUM | kernel: usb: typec: altmodes/displayport: create sysfs nodes | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-35794 | linux-libc-dev | MEDIUM | kernel: dm-raid: really frozen sync_thread during suspend | 6.1.38-4 | no fix | dagster |
| CVE-2024-35796 | linux-libc-dev | MEDIUM | kernel: net: ll_temac: platform_get_resource replaced by wro | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35799 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Prevent crash when disable stream | 6.1.38-4 | no fix | dagster |
| CVE-2024-35800 | linux-libc-dev | MEDIUM | kernel: efi: fix panic in kdump kernel | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35801 | linux-libc-dev | MEDIUM | kernel: x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35803 | linux-libc-dev | MEDIUM | kernel: x86/efistub: Call mixed mode boot services on the fi | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35804 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Mark target gfn of emulated atomic instruc | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35805 | linux-libc-dev | MEDIUM | kernel: dm snapshot: fix lockup in dm_exception_table_exit | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35806 | linux-libc-dev | MEDIUM | kernel: soc: fsl: qbman: Always disable interrupts when taki | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35807 | linux-libc-dev | MEDIUM | kernel: ext4: fix corruption during on-line resize | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35808 | linux-libc-dev | MEDIUM | kernel: md/dm-raid: don't call md_reap_sync_thread() dir | 6.1.38-4 | no fix | dagster |
| CVE-2024-35809 | linux-libc-dev | MEDIUM | kernel: PCI/PM: Drain runtime-idle callbacks before driver r | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35811 | linux-libc-dev | MEDIUM | kernel: wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg8 | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35813 | linux-libc-dev | MEDIUM | kernel: mmc: core: Avoid negative index with array access | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35815 | linux-libc-dev | MEDIUM | kernel: fs/aio: Check IOCB_AIO_RW before the struct aio_kioc | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35817 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: amdgpu_ttm_gart_bind set gtt bound flag | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35818 | linux-libc-dev | MEDIUM | kernel: LoongArch: Define the __io_aw() hook as mmiowb() | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35819 | linux-libc-dev | MEDIUM | kernel: soc: fsl: qbman: Use raw spinlock for cgr_lock | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35821 | linux-libc-dev | MEDIUM | kernel: ubifs: Set page uptodate in the correct place | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35822 | linux-libc-dev | MEDIUM | kernel: usb: udc: remove warning when queue disabled ep | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35823 | linux-libc-dev | MEDIUM | kernel: vt: fix unicode buffer corruption when deleting char | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35824 | linux-libc-dev | MEDIUM | kernel: misc: lis3lv02d_i2c: Fix regulators getting en-/dis- | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35825 | linux-libc-dev | MEDIUM | kernel: usb: gadget: ncm: Fix handling of zero block length | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35826 | linux-libc-dev | MEDIUM | kernel: block: Fix page refcounts for unaligned buffers in _ | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35827 | linux-libc-dev | MEDIUM | kernel: io_uring/net: fix overflow check in io_recvmsg_mshot | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35828 | linux-libc-dev | MEDIUM | kernel: wifi: libertas: fix some memleaks in lbs_allocate_cm | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35829 | linux-libc-dev | MEDIUM | kernel: drm/lima: fix a memleak in lima_heap_alloc | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35830 | linux-libc-dev | MEDIUM | kernel: media: tc358743: register v4l2 async device only aft | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35833 | linux-libc-dev | MEDIUM | kernel: dmaengine: fsl-qdma: Fix a memory leak related to th | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-35835 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: fix a double-free in arfs_create_groups | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-35837 | linux-libc-dev | MEDIUM | kernel: net: mvpp2: clear BM pool before initialization | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-35838 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: fix potential sta-link leak | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-35839 | linux-libc-dev | MEDIUM | kernel: netfilter: bridge: replace physindev with physinif i | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-35840 | linux-libc-dev | MEDIUM | kernel: mptcp: use OPTION_MPTCP_MPJ_SYNACK in subflow_finish | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-35842 | linux-libc-dev | MEDIUM | kernel: ASoC: mediatek: sof-common: Add NULL check for norma | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-35843 | linux-libc-dev | MEDIUM | kernel: iommu/vt-d: Use device rbtree in iopf reporting path | 6.1.38-4 | no fix | dagster |
| CVE-2024-35844 | linux-libc-dev | MEDIUM | kernel: f2fs: compress: fix reserve_cblocks counting error w | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35845 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: dbg-tlv: ensure NUL termination | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35848 | linux-libc-dev | MEDIUM | kernel: eeprom: at24: fix memory corruption race condition | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-35851 | linux-libc-dev | MEDIUM | kernel: Bluetooth: qca: fix NULL-deref on non-serdev suspend | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35852 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix memory leak when cance | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35853 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix memory leak during reh | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35854 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix possible use-after-fre | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35857 | linux-libc-dev | MEDIUM | kernel: icmp: prevent possible NULL dereferences from icmp_b | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35860 | linux-libc-dev | MEDIUM | kernel: bpf: support deferring bpf_link dealloc to after RCU | 6.1.38-4 | no fix | dagster |
| CVE-2024-35865 | linux-libc-dev | MEDIUM | kernel: smb: client: fix potential UAF in smb2_is_valid_oplo | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35870 | linux-libc-dev | MEDIUM | kernel: smb: client: fix UAF in smb2_reconnect_server() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-35872 | linux-libc-dev | MEDIUM | kernel: mm/secretmem: fix GUP-fast succeeding on secretmem f | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35875 | linux-libc-dev | MEDIUM | kernel: x86/coco: Require seeding RNG with RDRAND on CoCo sy | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35877 | linux-libc-dev | MEDIUM | kernel: x86/mm/pat: fix VM_PAT handling in COW mappings | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35879 | linux-libc-dev | MEDIUM | kernel: of: dynamic: Synchronize of_changeset_destroy() with | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35884 | linux-libc-dev | MEDIUM | kernel: udp: do not accept non-tunnel GSO skbs landing in a | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35885 | linux-libc-dev | MEDIUM | kernel: mlxbf_gige: stop interface during shutdown | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35888 | linux-libc-dev | MEDIUM | kernel: erspan: make sure erspan_base_hdr is present in skb- | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35890 | linux-libc-dev | MEDIUM | kernel: gro: fix ownership transfer | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35891 | linux-libc-dev | MEDIUM | kernel: net: phy: micrel: Fix potential null pointer derefer | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35892 | linux-libc-dev | MEDIUM | kernel: net/sched: fix lockdep splat in qdisc_tree_reduce_ba | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35893 | linux-libc-dev | MEDIUM | kernel: net/sched: act_skbmod: prevent kernel-infoleak | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35895 | linux-libc-dev | MEDIUM | kernel: bpf, sockmap: Prevent lock inversion deadlock in map | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35897 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: discard table flag update with | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35898 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: Fix potential data-race in __n | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35899 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: flush pending destroy work bef | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35900 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: reject new basechain after tab | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35902 | linux-libc-dev | MEDIUM | kernel: net/rds: fix possible cp null dereference | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35904 | linux-libc-dev | MEDIUM | kernel: selinux: avoid dereference of garbage after mount fa | 6.1.38-4 | no fix | dagster |
| CVE-2024-35907 | linux-libc-dev | MEDIUM | kernel: mlxbf_gige: call request_irq() after NAPI initialize | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35908 | linux-libc-dev | MEDIUM | kernel: tls: get psock ref after taking rxlock to avoid leak | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35909 | linux-libc-dev | MEDIUM | kernel: net: wwan: t7xx: Split 64bit accesses to fix alignme | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35910 | linux-libc-dev | MEDIUM | kernel: tcp: properly terminate timers for kernel sockets | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35912 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: rfi: fix potential response leak | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35915 | linux-libc-dev | MEDIUM | kernel: nfc: nci: Fix uninit-value in nci_dev_up and nci_ntf | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35916 | linux-libc-dev | MEDIUM | kernel: dma-buf: Fix NULL pointer dereference in sanitycheck | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-35922 | linux-libc-dev | MEDIUM | kernel: fbmon: prevent division by zero in fb_videomode_from | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35924 | linux-libc-dev | MEDIUM | kernel: usb: typec: ucsi: Limit read size on v1.2 | 6.1.38-4 | no fix | dagster |
| CVE-2024-35925 | linux-libc-dev | MEDIUM | kernel: block: prevent division by zero in blk_rq_stat_sum() | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35930 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Fix possible memory leak in lpfc_rcv_pad | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35931 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Skip do PCI error slot reset during RAS | 6.1.38-4 | no fix | dagster |
| CVE-2024-35933 | linux-libc-dev | MEDIUM | kernel: Bluetooth: btintel: Fix null ptr deref in btintel_re | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35934 | linux-libc-dev | MEDIUM | kernel: net/smc: reduce rtnl pressure in smc_pnet_create_pne | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35936 | linux-libc-dev | MEDIUM | kernel: btrfs: handle chunk tree lookup error in btrfs_reloc | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35938 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: decrease MHI channel buffer length to | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35940 | linux-libc-dev | MEDIUM | kernel: pstore/zone: Add a null pointer check to the psz_kms | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35942 | linux-libc-dev | MEDIUM | kernel: pmdomain: imx8mp-blk-ctrl: imx8mp_blk: Add fdcc cloc | 6.1.38-4 | no fix | dagster |
| CVE-2024-35943 | linux-libc-dev | MEDIUM | kernel: pmdomain: ti: Add a null pointer check to the omap_p | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-35944 | linux-libc-dev | MEDIUM | kernel: VMCI: Fix memcpy() run-time warning in dg_dispatch_a | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35945 | linux-libc-dev | MEDIUM | kernel: net: phy: phy_device: Prevent nullptr exceptions on | 6.1.38-4 | no fix | dagster |
| CVE-2024-35946 | linux-libc-dev | MEDIUM | kernel: wifi: rtw89: fix null pointer access when abort scan | 6.1.38-4 | no fix | dagster |
| CVE-2024-35947 | linux-libc-dev | MEDIUM | kernel: dyndbg: fix old BUG_ON in >control parser | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-35950 | linux-libc-dev | MEDIUM | kernel: drm/client: Fully protect modes[] with dev->mode_ | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35951 | linux-libc-dev | MEDIUM | kernel: drm/panfrost: Fix the error path in panfrost_mmu_map | 6.1.38-4 | no fix | dagster |
| CVE-2024-35952 | linux-libc-dev | MEDIUM | kernel: drm/ast: Fix soft lockup | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35955 | linux-libc-dev | MEDIUM | kernel: kprobes: Fix possible use-after-free issue on kprobe | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35956 | linux-libc-dev | MEDIUM | kernel: btrfs: qgroup: fix qgroup prealloc rsv leak in subvo | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-35958 | linux-libc-dev | MEDIUM | kernel: net: ena: Fix incorrect descriptor free behavior | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35959 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Fix mlx5e_priv_init() cleanup flow | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35960 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Properly link new fs rules into the tree | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35961 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Register devlink first under devlink lock | 6.1.38-4 | no fix | dagster |
| CVE-2024-35962 | linux-libc-dev | MEDIUM | kernel: netfilter: complete validation of user input | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35969 | linux-libc-dev | MEDIUM | kernel: ipv6: fix race condition between ipv6_get_ifaddr and | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35970 | linux-libc-dev | MEDIUM | kernel: af_unix: Clear stale u->oob_skb. | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35971 | linux-libc-dev | MEDIUM | kernel: net: ks8851: Handle softirqs at the end of IRQ threa | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35973 | linux-libc-dev | MEDIUM | kernel: geneve: fix header validation in geneve[6]_xmit_skb | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35976 | linux-libc-dev | MEDIUM | kernel: xsk: validate user input for XDP_{UMEM|COMPLETION}_F | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35978 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Fix memory leak in hci_req_sync_complete( | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35981 | linux-libc-dev | MEDIUM | kernel: virtio_net: Do not send RSS key if it is not support | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35982 | linux-libc-dev | MEDIUM | kernel: batman-adv: Avoid infinite loop trying to resize loc | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35983 | linux-libc-dev | MEDIUM | kernel: bounds: Use the right number of bits for power-of-tw | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35984 | linux-libc-dev | MEDIUM | kernel: i2c: smbus: fix NULL function pointer dereference | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35986 | linux-libc-dev | MEDIUM | kernel: phy: ti: tusb1210: Resolve charger-det crash if char | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35988 | linux-libc-dev | MEDIUM | kernel: riscv: Fix TASK_SIZE on 64-bit NOMMU | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35989 | linux-libc-dev | MEDIUM | kernel: dmaengine: idxd: Fix oops during rmmod on single-CPU | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35990 | linux-libc-dev | MEDIUM | kernel: dma: xilinx_dpdma: Fix locking | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35992 | linux-libc-dev | MEDIUM | kernel: phy: marvell: a3700-comphy: Fix out of bounds read | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35995 | linux-libc-dev | MEDIUM | kernel: ACPI: CPPC: Use access_width over bit_width for syst | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35996 | linux-libc-dev | MEDIUM | kernel: cpu: Re-enable CPU mitigations by default for !X86 a | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35997 | linux-libc-dev | MEDIUM | kernel: HID: i2c-hid: remove I2C_HID_READ_PENDING flag to pr | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35998 | linux-libc-dev | MEDIUM | kernel: smb3: fix lock ordering potential deadlock in cifs_s | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-35999 | linux-libc-dev | MEDIUM | kernel: smb3: missing lock when picking channel | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36000 | linux-libc-dev | MEDIUM | kernel: mm/hugetlb: fix missing hugetlb_lock for resv unchar | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36004 | linux-libc-dev | MEDIUM | kernel: i40e: Do not use WQ_MEM_RECLAIM flag for workqueue | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36005 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: honor table dormant flag from | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36006 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix incorrect list API usa | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36007 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_tcam: Fix warning during rehash | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36008 | linux-libc-dev | MEDIUM | kernel: ipv4: check for NULL idev in ip_route_use_hint() | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36009 | linux-libc-dev | MEDIUM | kernel: ax25: Fix netdev refcount issue | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36014 | linux-libc-dev | MEDIUM | kernel: drm/arm/malidp: fix a possible null pointer derefere | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36016 | linux-libc-dev | MEDIUM | kernel: tty: n_gsm: fix possible out-of-bounds in gsm0_recei | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36017 | linux-libc-dev | MEDIUM | kernel: rtnetlink: Correct nested IFLA_VF_VLAN_LIST attribut | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36020 | linux-libc-dev | MEDIUM | kernel: i40e: fix vf may be used uninitialized in this funct | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-36021 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix kernel crash when devlink reload duri | 6.1.38-4 | 6.1.85-1 | dagster |
| CVE-2024-36023 | linux-libc-dev | MEDIUM | kernel: Julia Lawall reported this null pointer dereference, | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36024 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Disable idle reallow as part of com | 6.1.38-4 | no fix | dagster |
| CVE-2024-36025 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Fix off by one in qla_edif_app_getsta | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36026 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: fixes a random hang in S4 for SMU v13.0. | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36028 | linux-libc-dev | MEDIUM | kernel: mm/hugetlb: fix DEBUG_LOCKS_WARN_ON(1) when dissolve | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36029 | linux-libc-dev | MEDIUM | kernel: mmc: sdhci-msm: pervent access to suspended controll | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-36031 | linux-libc-dev | MEDIUM | kernel: keys: Fix overwrite of key expiration on instantiati | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36244 | linux-libc-dev | MEDIUM | kernel: net/sched: taprio: extend minimum interval restricti | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-36270 | linux-libc-dev | MEDIUM | kernel: netfilter: tproxy: bail out if IP has been disabled | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36286 | linux-libc-dev | MEDIUM | kernel: netfilter: nfnetlink_queue: acquire rcu_read_lock() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36288 | linux-libc-dev | MEDIUM | kernel: SUNRPC: Fix loop termination condition in gss_free_i | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36331 | linux-libc-dev | MEDIUM | Improper initialization of CPU cache memory could allow a pr | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2024-36350 | linux-libc-dev | MEDIUM | kernel: information leak via transient execution vulnerabili | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2024-36357 | linux-libc-dev | MEDIUM | kernel: transient execution vulnerability in some AMD proces | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2024-36476 | linux-libc-dev | MEDIUM | kernel: RDMA/rtrs: Ensure 'ib_sge list' is accessible | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-36478 | linux-libc-dev | MEDIUM | kernel: null_blk: fix null-ptr-dereference while configuring | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-36479 | linux-libc-dev | MEDIUM | kernel: fpga: bridge: add owner module and take its refcount | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-36484 | linux-libc-dev | MEDIUM | kernel: net: relax socket state check at accept time. | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36489 | linux-libc-dev | MEDIUM | kernel: tls: fix missing memory barrier in tls_init | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36881 | linux-libc-dev | MEDIUM | kernel: mm/userfaultfd: reset ptes when close() for wr-prote | 6.1.38-4 | no fix | dagster |
| CVE-2024-36882 | linux-libc-dev | MEDIUM | kernel: mm: use memalloc_nofs_save() in page_cache_ra_order( | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36889 | linux-libc-dev | MEDIUM | kernel: mptcp: ensure snd_nxt is properly initialized on con | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36890 | linux-libc-dev | MEDIUM | kernel: mm/slab: make __free(kfree) accept error pointers | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36891 | linux-libc-dev | MEDIUM | kernel: maple_tree: fix mas_empty_area_rev() null pointer de | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36893 | linux-libc-dev | MEDIUM | kernel: usb: typec: tcpm: Check for port partner validity be | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36894 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_fs: Fix race between aio_cancel() and | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-36896 | linux-libc-dev | MEDIUM | kernel: USB: core: Fix access violation during port device r | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36897 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Atom Integrated System Info v2_2 fo | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36900 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix kernel crash when devlink reload duri | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36901 | linux-libc-dev | MEDIUM | kernel: ipv6: prevent NULL dereference in ip6_output() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36902 | linux-libc-dev | MEDIUM | kernel: ipv6: fib6_rules: avoid possible NULL dereference in | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36903 | linux-libc-dev | MEDIUM | kernel: ipv6: Fix potential uninit-value access in __ip6_mak | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-36905 | linux-libc-dev | MEDIUM | kernel: tcp: defer shutdown(SEND_SHUTDOWN) for TCP_SYN_RECV | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36908 | linux-libc-dev | MEDIUM | kernel: blk-iocost: do not WARN if iocg was already offlined | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-36909 | linux-libc-dev | MEDIUM | kernel: Drivers: hv: vmbus: Don't free ring buffers that | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36910 | linux-libc-dev | MEDIUM | kernel: uio_hv_generic: Don't free decrypted memory | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36911 | linux-libc-dev | MEDIUM | kernel: hv_netvsc: Don't free decrypted memory | 6.1.38-4 | no fix | dagster |
| CVE-2024-36912 | linux-libc-dev | MEDIUM | kernel: Drivers: hv: vmbus: Track decrypted status in vmbus_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36913 | linux-libc-dev | MEDIUM | kernel: Drivers: hv: vmbus: Leak pages if set_memory_encrypt | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2024-36917 | linux-libc-dev | MEDIUM | kernel: block: fix overflow in blk_ioctl_discard() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36918 | linux-libc-dev | MEDIUM | kernel: bpf: Check bloom filter map value size | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36919 | linux-libc-dev | MEDIUM | kernel: scsi: bnx2fc: Remove spin_lock_bh while releasing re | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36920 | linux-libc-dev | MEDIUM | kernel: scsi: mpi3mr: Avoid memcpy field-spanning write WARN | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36922 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: read txq->read_ptr under lock | 6.1.38-4 | no fix | dagster |
| CVE-2024-36924 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Release hbalock before calling lpfc_work | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36926 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries/iommu: LPAR panics during boot up wi | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36927 | linux-libc-dev | MEDIUM | kernel: ipv4: Fix uninit-value access in __ip_make_skb() | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-36928 | linux-libc-dev | MEDIUM | kernel: s390/qeth: Fix kernel panic after setting hsuid | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36929 | linux-libc-dev | MEDIUM | kernel: net: core: reject skb_copy(_expand) for fraglist GSO | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36930 | linux-libc-dev | MEDIUM | kernel: spi: fix null pointer dereference within spi_sync | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36933 | linux-libc-dev | MEDIUM | kernel: nsh: Restore skb->{protocol,data,mac_header} for | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36937 | linux-libc-dev | MEDIUM | kernel: xdp: use flags field to disambiguate broadcast redir | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36938 | linux-libc-dev | MEDIUM | kernel: bpf, skmsg: Fix NULL pointer dereference in sk_psock | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36939 | linux-libc-dev | MEDIUM | kernel: nfs: Handle error of rpc_proc_register() in nfs_net_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36941 | linux-libc-dev | MEDIUM | kernel: wifi: nl80211: don't free NULL coalescing rule | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36944 | linux-libc-dev | MEDIUM | kernel: Reapply "drm/qxl: simplify qxl_fence_wait" | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36945 | linux-libc-dev | MEDIUM | kernel: net/smc: fix neighbour and rtable leak in smc_ib_fin | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36946 | linux-libc-dev | MEDIUM | kernel: phonet: fix rtm_phonet_notify() skb allocation | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36947 | linux-libc-dev | MEDIUM | kernel: qibfs: fix dentry leak | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36949 | linux-libc-dev | MEDIUM | kernel: amd/amdkfd: sync all devices to wait all processes b | 6.1.38-4 | no fix | dagster |
| CVE-2024-36950 | linux-libc-dev | MEDIUM | kernel: firewire: ohci: mask bus reset interrupts between IS | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36951 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: range check cp bad op exception interrup | 6.1.38-4 | no fix | dagster |
| CVE-2024-36952 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Move NPIV's transport unregistration to | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36953 | linux-libc-dev | MEDIUM | kernel: KVM: arm64: vgic-v2: Check for non-NULL vCPU in vgic | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36954 | linux-libc-dev | MEDIUM | kernel: tipc: fix a possible memleak in tipc_buf_append | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36955 | linux-libc-dev | MEDIUM | kernel: ALSA: hda: intel-sdw-acpi: fix usage of device_get_n | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36957 | linux-libc-dev | MEDIUM | kernel: octeontx2-af: avoid off-by-one read from userspace | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36959 | linux-libc-dev | MEDIUM | kernel: pinctrl: devicetree: fix refcount leak in pinctrl_dt | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36962 | linux-libc-dev | MEDIUM | kernel: net: ks8851: Queue RX packets in IRQ handler instead | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36964 | linux-libc-dev | MEDIUM | kernel: fs/9p: only translate RWX permissions for plain 9P20 | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36965 | linux-libc-dev | MEDIUM | kernel: remoteproc: mediatek: Make sure IPI buffer fits in L | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36967 | linux-libc-dev | MEDIUM | kernel: KEYS: trusted: Fix memory leak in tpm2_key_encode() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36968 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Fix div-by-zero in l2cap_le_flowct | 6.1.38-4 | no fix | dagster |
| CVE-2024-36969 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix division by zero in setup_dsc_c | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36972 | linux-libc-dev | MEDIUM | kernel: af_unix: Update unix_sk(sk)->oob_skb under sk_receiv | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36975 | linux-libc-dev | MEDIUM | kernel: KEYS: trusted: Do not use WARN when encode fails | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-36977 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: Wait unconditionally after issuing EndXfe | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-37021 | linux-libc-dev | MEDIUM | kernel: fpga: manager: add owner module and take its refcoun | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-37354 | linux-libc-dev | MEDIUM | kernel: btrfs: fix crash on racing fsync and size-extending | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-37356 | linux-libc-dev | MEDIUM | kernel: tcp: Fix shift-out-of-bounds in dctcp_update_alpha() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38388 | linux-libc-dev | MEDIUM | kernel: ALSA: hda/cs_dsp_ctl: Use private_free for control c | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38390 | linux-libc-dev | MEDIUM | kernel: drm/msm/a6xx: Avoid a nullptr dereference when speed | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38540 | linux-libc-dev | MEDIUM | kernel: bnxt_re: avoid shift undefined behavior in bnxt_qpli | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-38541 | linux-libc-dev | MEDIUM | kernel: of: module: add buffer overflow check in of_modalias | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2024-38543 | linux-libc-dev | MEDIUM | kernel: lib/test_hmm.c: handle src_pfns and dst_pfns allocat | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38544 | linux-libc-dev | MEDIUM | kernel: RDMA/rxe: Fix seg fault in rxe_comp_queue_pkt | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38546 | linux-libc-dev | MEDIUM | kernel: drm: vc4: Fix possible null pointer dereference | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38547 | linux-libc-dev | MEDIUM | kernel: media: atomisp: ssh_css: Fix a null-pointer derefere | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38548 | linux-libc-dev | MEDIUM | kernel: drm: bridge: cdns-mhdp8546: Fix possible null pointe | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38549 | linux-libc-dev | MEDIUM | kernel: drm/mediatek: Add 0 size check to mtk_drm_gem_obj | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38550 | linux-libc-dev | MEDIUM | kernel: ASoC: kirkwood: Fix potential NULL dereference | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38553 | linux-libc-dev | MEDIUM | kernel: net: fec: remove .ndo_poll_controller to avoid deadl | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-38554 | linux-libc-dev | MEDIUM | kernel: ax25: Fix reference count leak issue of net_device | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38557 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Reload only IB representors upon lag disab | 6.1.38-4 | no fix | dagster |
| CVE-2024-38558 | linux-libc-dev | MEDIUM | kernel: net: openvswitch: fix overwriting ct original tuple | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38559 | linux-libc-dev | MEDIUM | kernel: scsi: qedf: Ensure the copied buf is NUL terminated | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38564 | linux-libc-dev | MEDIUM | kernel: bpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforc | 6.1.38-4 | no fix | dagster |
| CVE-2024-38565 | linux-libc-dev | MEDIUM | kernel: wifi: ar5523: enable proper endpoint verification | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38567 | linux-libc-dev | MEDIUM | kernel: wifi: carl9170: add a proper sanity check for endpoi | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38571 | linux-libc-dev | MEDIUM | kernel: thermal/drivers/tsens: Fix null pointer dereference | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38573 | linux-libc-dev | MEDIUM | kernel: cppc_cpufreq: Fix possible null pointer dereference | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38575 | linux-libc-dev | MEDIUM | kernel: wifi: brcmfmac: pcie: handle randbuf allocation fail | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38576 | linux-libc-dev | MEDIUM | kernel: rcu: Fix buffer overflow in print_cpu_stall_info() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38579 | linux-libc-dev | MEDIUM | kernel: crypto: bcm - Fix pointer arithmetic | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38580 | linux-libc-dev | MEDIUM | kernel: epoll: be better about file lifetimes | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38582 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix potential hang in nilfs_detach_log_write | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38587 | linux-libc-dev | MEDIUM | kernel: speakup: Fix sizeof() vs ARRAY_SIZE() bug | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38589 | linux-libc-dev | MEDIUM | kernel: netrom: fix possible dead-lock in nr_rt_ioctl() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38590 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Modify the print level of CQE error | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38591 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Fix deadlock on SRQ async events. | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38594 | linux-libc-dev | MEDIUM | kernel: net: stmmac: move the EST lock to struct stmmac_priv | 6.1.38-4 | no fix | dagster |
| CVE-2024-38596 | linux-libc-dev | MEDIUM | kernel: af_unix: Fix data races in unix_release_sock/unix_st | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38597 | linux-libc-dev | MEDIUM | kernel: eth: sungem: remove .ndo_poll_controller to avoid de | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38598 | linux-libc-dev | MEDIUM | kernel: md: fix resync softlockup when bitmap size is less t | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38600 | linux-libc-dev | MEDIUM | kernel: ALSA: Fix deadlocks with kctl removals at disconnect | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38601 | linux-libc-dev | MEDIUM | kernel: ring-buffer: Fix a race between readers and resize c | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38602 | linux-libc-dev | MEDIUM | kernel: ax25: Fix reference count leak issues of ax25_dev | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38603 | linux-libc-dev | MEDIUM | kernel: drivers/perf: hisi: hns3: Actually use devm_add_acti | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38605 | linux-libc-dev | MEDIUM | kernel: ALSA: core: Fix NULL module pointer assignment at ca | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38607 | linux-libc-dev | MEDIUM | kernel: macintosh/via-macii: Fix "BUG: sleeping function | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38608 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Fix netif state handling | 6.1.38-4 | no fix | dagster |
| CVE-2024-38611 | linux-libc-dev | MEDIUM | kernel: media: i2c: et8ek8: Don't strip remove function | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-38612 | linux-libc-dev | MEDIUM | kernel: ipv6: sr: fix invalid unregister error path | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38613 | linux-libc-dev | MEDIUM | kernel: m68k: Fix spinlock race in kernel thread creation | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38615 | linux-libc-dev | MEDIUM | kernel: cpufreq: exit() callback is optional | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38616 | linux-libc-dev | MEDIUM | kernel: wifi: carl9170: re-fix fortified-memset warning | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38618 | linux-libc-dev | MEDIUM | kernel: ALSA: timer: Set lower bound of start tick time | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38619 | linux-libc-dev | MEDIUM | kernel: usb-storage: alauda: Check whether the media is init | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-38620 | linux-libc-dev | MEDIUM | kernel: Bluetooth: HCI: Remove HCI_AMP support | 6.1.38-4 | no fix | dagster |
| CVE-2024-38622 | linux-libc-dev | MEDIUM | kernel: drm/msm/dpu: Add callback function pointer check bef | 6.1.38-4 | no fix | dagster |
| CVE-2024-38623 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Use variable length array instead of fixed | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38624 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Use 64 bit variable to avoid 32 bit overfl | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38625 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Check 'folio' pointer for NULL | 6.1.38-4 | no fix | dagster |
| CVE-2024-38628 | linux-libc-dev | MEDIUM | kernel: usb: gadget: u_audio: Fix race condition use of cont | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38632 | linux-libc-dev | MEDIUM | kernel: vfio/pci: fix potential memory leak in vfio_intx_ena | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-38633 | linux-libc-dev | MEDIUM | kernel: serial: max3100: Update uart_driver_registered on dr | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38634 | linux-libc-dev | MEDIUM | kernel: serial: max3100: Lock port->lock when calling uar | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38636 | linux-libc-dev | MEDIUM | kernel: f2fs: multidev: fix to recognize valid zero block ad | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38637 | linux-libc-dev | MEDIUM | kernel: greybus: lights: check return of get_channel_from_mo | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38661 | linux-libc-dev | MEDIUM | kernel: s390/ap: Fix crash in AP internal function modify_bi | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38662 | linux-libc-dev | MEDIUM | kernel: bpf: Allow delete from sockmap/sockhash only if upda | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-38780 | linux-libc-dev | MEDIUM | kernel: dma-buf/sw-sync: don't enable IRQ from sync_prin | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39276 | linux-libc-dev | MEDIUM | kernel: ext4: fix mb_cache_entry's e_refcnt leak in ext4_xat | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39282 | linux-libc-dev | MEDIUM | kernel: net: wwan: t7xx: Fix FSM command timeout issue | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-39292 | linux-libc-dev | MEDIUM | kernel: um: Add winch to winch_handlers before registering w | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39298 | linux-libc-dev | MEDIUM | kernel: mm/memory-failure: fix handling of dissolved but not | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39301 | linux-libc-dev | MEDIUM | kernel: net/9p: fix uninit-value in p9_client_rpc() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39371 | linux-libc-dev | MEDIUM | kernel: io_uring: check for non-NULL file pointer in io_file | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39466 | linux-libc-dev | MEDIUM | kernel: thermal/drivers/qcom/lmh: Check for SCM availability | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39468 | linux-libc-dev | MEDIUM | kernel: smb: client: fix deadlock in smb2_find_smb_tcon() | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39472 | linux-libc-dev | MEDIUM | kernel: xfs: fix log recovery buffer allocation for the lega | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-39474 | linux-libc-dev | MEDIUM | kernel: mm/vmalloc: fix vmalloc which may return null if cal | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39475 | linux-libc-dev | MEDIUM | kernel: fbdev: savage: Handle err return when savagefb_check | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39476 | linux-libc-dev | MEDIUM | kernel: md/raid5: fix deadlock that raid5d() wait for itself | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39481 | linux-libc-dev | MEDIUM | kernel: media: mc: Fix graph walk in media_pipeline_start | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39482 | linux-libc-dev | MEDIUM | kernel: bcache: fix variable length array abuse in btree_ite | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39484 | linux-libc-dev | MEDIUM | kernel: mmc: davinci: Don't strip remove function when drive | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39488 | linux-libc-dev | MEDIUM | kernel: arm64: asm-bug: Add .align 2 to the end of __BUG_ENT | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39489 | linux-libc-dev | MEDIUM | kernel: ipv6: sr: fix memleak in seg6_hmac_init_algo | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39490 | linux-libc-dev | MEDIUM | kernel: ipv6: sr: fix missing sk_buff release in seg6_input_ | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39493 | linux-libc-dev | MEDIUM | kernel: crypto: qat - Fix ADF_DEV_RESET_SYNC memory leak | 6.1.38-4 | 6.1.94-1 | dagster |
| CVE-2024-39497 | linux-libc-dev | MEDIUM | kernel: drm/shmem-helper: Fix BUG_ON() on mmap(PROT_WRITE, M | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-39500 | linux-libc-dev | MEDIUM | kernel: sock_map: avoid race between sock_map_close and sk_p | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39505 | linux-libc-dev | MEDIUM | kernel: drm/komeda: check for error-valued pointer | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39506 | linux-libc-dev | MEDIUM | kernel: liquidio: Adjust a NULL pointer handling path in lio | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39507 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix kernel crash problem in concurrent sc | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-39508 | linux-libc-dev | MEDIUM | kernel: io_uring/io-wq: Use set_bit() and test_bit() at work | 6.1.38-4 | no fix | dagster |
| CVE-2024-39509 | linux-libc-dev | MEDIUM | kernel: HID: core: remove unnecessary WARN_ON() in implement | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40904 | linux-libc-dev | MEDIUM | kernel: USB: class: cdc-wdm: Fix CPU lockup caused by excess | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40905 | linux-libc-dev | MEDIUM | kernel: ipv6: fix possible race in __fib6_drop_pcpu_from() | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40908 | linux-libc-dev | MEDIUM | kernel: bpf: Set run context for rawtp test_run callback | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40910 | linux-libc-dev | MEDIUM | kernel: ax25: Fix refcount imbalance on inbound connections | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40911 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: Lock wiphy in cfg80211_get_station | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40912 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: Fix deadlock in ieee80211_sta_ps_del | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40914 | linux-libc-dev | MEDIUM | kernel: mm/huge_memory: don't unpoison huge_zero_folio | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40915 | linux-libc-dev | MEDIUM | kernel: riscv: rewrite __kernel_map_pages() to fix sleeping | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40916 | linux-libc-dev | MEDIUM | kernel: drm/exynos: hdmi: report safe 640x480 mode as a fall | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40919 | linux-libc-dev | MEDIUM | kernel: bnxt_en: Adjust logging of firmware messages in case | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40921 | linux-libc-dev | MEDIUM | kernel: net: bridge: mst: pass vlan group directly to br_mst | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40924 | linux-libc-dev | MEDIUM | kernel: drm/i915/dpt: Make DPT object unshrinkable | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40931 | linux-libc-dev | MEDIUM | kernel: mptcp: ensure snd_una is properly initialized on con | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40932 | linux-libc-dev | MEDIUM | kernel: drm/exynos/vidi: fix memory leak in .get_modes() | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40934 | linux-libc-dev | MEDIUM | kernel: HID: logitech-dj: Fix memory leak in logi_dj_recv_sw | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40937 | linux-libc-dev | MEDIUM | kernel: gve: Clear napi->skb before dev_kfree_skb_any() | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40938 | linux-libc-dev | MEDIUM | kernel: landlock: Fix d_parent walk | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40941 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: don't read past the mfuart n | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40942 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: mesh: Fix leak of mesh_preq_queue ob | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40943 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix races between hole punching and AIO+DIO | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40945 | linux-libc-dev | MEDIUM | kernel: iommu: Return right value in iommu_sva_bind_device() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-40947 | linux-libc-dev | MEDIUM | kernel: ima: Avoid blocking in RCU read-side critical sectio | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40948 | linux-libc-dev | MEDIUM | kernel: mm/page_table_check: fix crash on ZONE_DEVICE | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40953 | linux-libc-dev | MEDIUM | kernel: KVM: Fix a data race on last_boosted_vcpu in kvm_vcp | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40957 | linux-libc-dev | MEDIUM | kernel: seg6: fix parameter passing when calling NF_HOOK() i | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40959 | linux-libc-dev | MEDIUM | kernel: xfrm6: check ip6_dst_idev() return value in xfrm6_ge | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40960 | linux-libc-dev | MEDIUM | kernel: ipv6: prevent possible NULL dereference in rt6_probe | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40961 | linux-libc-dev | MEDIUM | kernel: ipv6: prevent possible NULL deref in fib6_nh_init() | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40963 | linux-libc-dev | MEDIUM | kernel: mips: bmips: BCM6358: make sure CBR is correctly set | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40965 | linux-libc-dev | MEDIUM | kernel: i2c: lpi2c: Avoid calling clk_get_rate during transf | 6.1.38-4 | no fix | dagster |
| CVE-2024-40966 | linux-libc-dev | MEDIUM | kernel: tty: add the option to have a tty reject a new ldisc | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40967 | linux-libc-dev | MEDIUM | kernel: serial: imx: Introduce timeout when waiting on trans | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40968 | linux-libc-dev | MEDIUM | kernel: MIPS: Octeon: Add PCIe link status check | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40969 | linux-libc-dev | MEDIUM | kernel: f2fs: don't set RO when shutting down f2fs | 6.1.38-4 | no fix | dagster |
| CVE-2024-40970 | linux-libc-dev | MEDIUM | kernel: Avoid hw_desc array overrun in dw-axi-dmac | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40971 | linux-libc-dev | MEDIUM | kernel: f2fs: remove clear SB_INLINECRYPT flag in default_op | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40972 | linux-libc-dev | MEDIUM | kernel: ext4: do not create EA inode under buffer lock | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-40973 | linux-libc-dev | MEDIUM | kernel: media: mtk-vcodec: potential null pointer deference | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-40975 | linux-libc-dev | MEDIUM | kernel: platform/x86: x86-android-tablets: Unregister device | 6.1.38-4 | no fix | dagster |
| CVE-2024-40976 | linux-libc-dev | MEDIUM | kernel: drm/lima: mask irqs in timeout path before hard rese | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40977 | linux-libc-dev | MEDIUM | kernel: wifi: mt76: mt7921s: fix potential hung tasks during | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40980 | linux-libc-dev | MEDIUM | kernel: drop_monitor: replace spin_lock by raw_spin_lock | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40981 | linux-libc-dev | MEDIUM | kernel: batman-adv: bypass empty buckets in batadv_purge_ori | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40983 | linux-libc-dev | MEDIUM | kernel: tipc: force a dst refcount before doing decryption | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40984 | linux-libc-dev | MEDIUM | kernel: ACPICA: Revert "ACPICA: avoid Info: mapping mult | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40987 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix UBSAN warning in kv_dpm.c | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40988 | linux-libc-dev | MEDIUM | kernel: drm/radeon: fix UBSAN warning in kv_dpm.c | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40990 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Add check for srq max_sge attribute | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40993 | linux-libc-dev | MEDIUM | kernel: netfilter: ipset: Fix suspicious rcu_dereference_pro | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40995 | linux-libc-dev | MEDIUM | kernel: net/sched: act_api: fix possible infinite loop in tc | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-40998 | linux-libc-dev | MEDIUM | kernel: ext4: fix uninitialized ratelimit_state->lock acc | 6.1.38-4 | no fix | dagster |
| CVE-2024-40999 | linux-libc-dev | MEDIUM | kernel: net: ena: Add validation for completion descriptors | 6.1.38-4 | no fix | dagster |
| CVE-2024-41001 | linux-libc-dev | MEDIUM | kernel: io_uring/sqpoll: work around a potential audit memor | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41002 | linux-libc-dev | MEDIUM | kernel: crypto: hisilicon/sec - Fix memory leak for sec reso | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41004 | linux-libc-dev | MEDIUM | kernel: tracing: Build event generation tests only as module | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41005 | linux-libc-dev | MEDIUM | kernel: netpoll: Fix race condition in netpoll_owner_active | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41006 | linux-libc-dev | MEDIUM | kernel: netrom: Fix a memory leak in nr_heartbeat_expiry() | 6.1.38-4 | 6.1.99-1 | dagster |
| CVE-2024-41008 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: change vm->task_info handling | 6.1.38-4 | no fix | dagster |
| CVE-2024-41009 | linux-libc-dev | MEDIUM | kernel: bpf: Fix overrunning reservations in ringbuf | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41012 | linux-libc-dev | MEDIUM | kernel: filelock: Remove locks reliably when fcntl/close rac | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41015 | linux-libc-dev | MEDIUM | kernel: ocfs2: add bounds checking to ocfs2_check_dir_entry( | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41016 | linux-libc-dev | MEDIUM | kernel: ocfs2: strict bound check before memcmp in ocfs2_xat | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-41017 | linux-libc-dev | MEDIUM | kernel: jfs: don't walk off the end of ealist | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41019 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Validate ff offset | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41020 | linux-libc-dev | MEDIUM | kernel: filelock: Fix fcntl/close race recovery compat path | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41022 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix signedness bug in sdma_v4_0_process_ | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41023 | linux-libc-dev | MEDIUM | kernel: sched/deadline: Fix task_struct reference leak | 6.1.38-4 | no fix | dagster |
| CVE-2024-41030 | linux-libc-dev | MEDIUM | kernel: ksmbd: discard write access to the directory open | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41031 | linux-libc-dev | MEDIUM | kernel: mm/filemap: skip to create PMD-sized page cache if n | 6.1.38-4 | no fix | dagster |
| CVE-2024-41034 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix kernel bug on rename operation of broken | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41035 | linux-libc-dev | MEDIUM | kernel: USB: core: Fix duplicate endpoint bug by clearing re | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41036 | linux-libc-dev | MEDIUM | kernel: net: ks8851: Fix deadlock with the SPI chip variant | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41038 | linux-libc-dev | MEDIUM | kernel: firmware: cs_dsp: Prevent buffer overrun when proces | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41041 | linux-libc-dev | MEDIUM | kernel: udp: Set SOCK_RCU_FREE earlier in udp_lib_get_port() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41044 | linux-libc-dev | MEDIUM | kernel: ppp: reject claimed-as-LCP but actually malformed pa | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41047 | linux-libc-dev | MEDIUM | kernel: i40e: Fix XDP program unloading while removing the d | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41048 | linux-libc-dev | MEDIUM | kernel: skmsg: Skip zero length skb in sk_msg_recvmsg | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41055 | linux-libc-dev | MEDIUM | kernel: mm: prevent derefencing NULL ptr in pfn_section_vali | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41056 | linux-libc-dev | MEDIUM | kernel: firmware: cs_dsp: Use strnlen() on name fields in V1 | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41060 | linux-libc-dev | MEDIUM | kernel: drm/radeon: check bo_va->bo is non-NULL before us | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41062 | linux-libc-dev | MEDIUM | kernel: bluetooth/l2cap: sync sock recv cb and release | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41063 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_core: cancel all works upon hci_unreg | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41064 | linux-libc-dev | MEDIUM | kernel: powerpc/eeh: avoid possible crash when edev->pdev | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41065 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries: Whitelist dtl slub object for copyi | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41066 | linux-libc-dev | MEDIUM | kernel: ibmvnic: Add tx check to prevent skb leak | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41068 | linux-libc-dev | MEDIUM | kernel: s390/sclp: Fix sclp_init() cleanup on failure | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41072 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: wext: add extra SIOCSIWSCAN data che | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41075 | linux-libc-dev | MEDIUM | kernel: cachefiles: add consistency check for copen/cread | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41076 | linux-libc-dev | MEDIUM | kernel: NFSv4: Fix memory leak in nfs4_set_security_label | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41077 | linux-libc-dev | MEDIUM | kernel: null_blk: fix validation of block size | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41078 | linux-libc-dev | MEDIUM | kernel: btrfs: qgroup: fix quota root leak after quota disab | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41079 | linux-libc-dev | MEDIUM | kernel: nvmet: always initialize cqe.result | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41080 | linux-libc-dev | MEDIUM | kernel: io_uring: fix possible deadlock in io_register_iowq_ | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-41081 | linux-libc-dev | MEDIUM | kernel: ila: block BH in ila_output() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41082 | linux-libc-dev | MEDIUM | kernel: nvme-fabrics: use reserved tag for reg read/write co | 6.1.38-4 | no fix | dagster |
| CVE-2024-41088 | linux-libc-dev | MEDIUM | kernel: can: mcp251xfd: fix infinite loop when xmit fails | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41089 | linux-libc-dev | MEDIUM | kernel: drm/nouveau/dispnv04: fix null pointer dereference i | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41093 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: avoid using null object of framebuffer | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41095 | linux-libc-dev | MEDIUM | kernel: drm/nouveau/dispnv04: fix null pointer dereference i | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41097 | linux-libc-dev | MEDIUM | kernel: usb: atm: cxacru: fix endpoint checking in cxacru_bi | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-41098 | linux-libc-dev | MEDIUM | kernel: ata: libata-core: Fix null pointer dereference on er | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-42063 | linux-libc-dev | MEDIUM | kernel: bpf: Mark bpf prog stack with kmsan_unposion_memory | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42068 | linux-libc-dev | MEDIUM | kernel: bpf: Take return from set_memory_ro() into account w | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42069 | linux-libc-dev | MEDIUM | kernel: net: mana: Fix possible double free in error handlin | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-42070 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: fully validate NFT_DATA_VALUE | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42073 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_buffers: Fix memory corruptions on S | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42076 | linux-libc-dev | MEDIUM | kernel: net: can: j1939: Initialize unused data in j1939_sen | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42077 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix DIO failure due to insufficient transacti | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42079 | linux-libc-dev | MEDIUM | kernel: gfs2: Fix NULL pointer dereference in gfs2_log_flush | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2024-42080 | linux-libc-dev | MEDIUM | kernel: RDMA/restrack: Fix potential invalid address access | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42082 | linux-libc-dev | MEDIUM | kernel: xdp: Remove WARN() from __xdp_reg_mem_model() | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42084 | linux-libc-dev | MEDIUM | kernel: ftruncate: pass a signed offset | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42085 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: core: remove lock of otg mode during gadg | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42087 | linux-libc-dev | MEDIUM | kernel: drm/panel: ilitek-ili9881c: Fix warning with GPIO co | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42089 | linux-libc-dev | MEDIUM | kernel: ASoC: fsl-asoc-card: set priv-->pdev before using it | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42090 | linux-libc-dev | MEDIUM | kernel: pinctrl: fix deadlock in create_pinctrl() when handl | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42095 | linux-libc-dev | MEDIUM | kernel: serial: 8250_omap: Implementation of Errata i2310 | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42096 | linux-libc-dev | MEDIUM | kernel: x86: stop playing stack games in profile_pc() | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42097 | linux-libc-dev | MEDIUM | kernel: ALSA: emux: improve patch ioctl data validation | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42098 | linux-libc-dev | MEDIUM | kernel: crypto: ecdh - explicitly zeroize private_key | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42101 | linux-libc-dev | MEDIUM | kernel: drm/nouveau: fix null pointer dereference in nouveau | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42102 | linux-libc-dev | MEDIUM | kernel: Revert "mm/writeback: fix possible divide-by-zer | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42103 | linux-libc-dev | MEDIUM | kernel: btrfs: fix adding block group to a reclaim list and | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42106 | linux-libc-dev | MEDIUM | kernel: inet_diag: Initialize pad field in struct inet_diag_ | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42107 | linux-libc-dev | MEDIUM | kernel: ice: Don't process extts if PTP is disabled | 6.1.38-4 | no fix | dagster |
| CVE-2024-42109 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: unconditionally flush pending | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42110 | linux-libc-dev | MEDIUM | kernel: net: ntb_netdev: Move ntb_netdev_rx_handler() to cal | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42114 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: restrict NL80211_ATTR_TXQ_QUANTUM va | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42115 | linux-libc-dev | MEDIUM | kernel: jffs2: Fix potential illegal address access in jffs2 | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42122 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL pointer check for kzalloc | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-42123 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix double free err_addr pointer warning | 6.1.38-4 | no fix | dagster |
| CVE-2024-42124 | linux-libc-dev | MEDIUM | kernel: scsi: qedf: Make qedf_execute_tmf() non-preemptible | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42126 | linux-libc-dev | MEDIUM | kernel: powerpc: Avoid nmi_enter/nmi_exit in real mode inter | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42127 | linux-libc-dev | MEDIUM | kernel: drm/lima: fix shared irq handling on driver remove | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42128 | linux-libc-dev | MEDIUM | kernel: leds: an30259a: Use devm_mutex_init() for mutex init | 6.1.38-4 | no fix | dagster |
| CVE-2024-42129 | linux-libc-dev | MEDIUM | kernel: leds: mlxreg: Use devm_mutex_init() for mutex initia | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-42131 | linux-libc-dev | MEDIUM | kernel: mm: avoid overflows in dirty throttling logic | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42137 | linux-libc-dev | MEDIUM | kernel: Bluetooth: qca: Fix BT enable failure again for QCA6 | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42139 | linux-libc-dev | MEDIUM | kernel: ice: Fix improper extts handling | 6.1.38-4 | no fix | dagster |
| CVE-2024-42140 | linux-libc-dev | MEDIUM | kernel: riscv: kexec: Avoid deadlock in kexec crash path | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42142 | linux-libc-dev | MEDIUM | kernel: net/mlx5: E-switch, Create ingress ACL when needed | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42145 | linux-libc-dev | MEDIUM | kernel: IB/core: Implement a limit on UMAD receive List | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42152 | linux-libc-dev | MEDIUM | kernel: nvmet: fix a possible leak when destroy a ctrl durin | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42153 | linux-libc-dev | MEDIUM | kernel: i2c: pnx: Fix potential deadlock warning from del_ti | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42154 | linux-libc-dev | MEDIUM | kernel: tcp_metrics: validate source addr length | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42156 | linux-libc-dev | MEDIUM | kernel: s390/pkey: Wipe copies of clear-key structures on fa | 6.1.38-4 | no fix | dagster |
| CVE-2024-42157 | linux-libc-dev | MEDIUM | kernel: s390/pkey: Wipe sensitive data on failure | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42158 | linux-libc-dev | MEDIUM | kernel: s390/pkey: Use kfree_sensitive() to fix Coccinelle w | 6.1.38-4 | no fix | dagster |
| CVE-2024-42161 | linux-libc-dev | MEDIUM | kernel: bpf: Avoid uninitialized value in BPF_CORE_READ_BITF | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42223 | linux-libc-dev | MEDIUM | kernel: media: dvb-frontends: tda10048: Fix integer overflow | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42224 | linux-libc-dev | MEDIUM | kernel: net: dsa: mv88e6xxx: Correct check for empty list | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42229 | linux-libc-dev | MEDIUM | kernel: crypto: aead,cipher - zeroize key buffer after use | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42230 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries: Fix scv instruction crash with kexe | 6.1.38-4 | 6.1.98-1 | dagster |
| CVE-2024-42232 | linux-libc-dev | MEDIUM | kernel: libceph: fix race between delayed_work() and ceph_mo | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42236 | linux-libc-dev | MEDIUM | kernel: usb: gadget: configfs: Prevent OOB read/write in usb | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42237 | linux-libc-dev | MEDIUM | kernel: firmware: cs_dsp: Validate payload length before pro | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42238 | linux-libc-dev | MEDIUM | kernel: firmware: cs_dsp: Return error if block header overf | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42239 | linux-libc-dev | MEDIUM | kernel: bpf: Fail bpf_timer_cancel when callback is being ca | 6.1.38-4 | no fix | dagster |
| CVE-2024-42240 | linux-libc-dev | MEDIUM | kernel: x86/bhi: Avoid warning in #DB handler due to BHI mit | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42241 | linux-libc-dev | MEDIUM | kernel: mm/shmem: disable PMD-sized page cache if needed | 6.1.38-4 | no fix | dagster |
| CVE-2024-42243 | linux-libc-dev | MEDIUM | kernel: mm/filemap: make MAX_PAGECACHE_ORDER acceptable to x | 6.1.38-4 | no fix | dagster |
| CVE-2024-42244 | linux-libc-dev | MEDIUM | kernel: USB: serial: mos7840: fix crash on resume | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42245 | linux-libc-dev | MEDIUM | kernel: Revert "sched/fair: Make sure to try to detach at le | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42246 | linux-libc-dev | MEDIUM | kernel: net, sunrpc: Remap EPERM in case of connection failu | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42247 | linux-libc-dev | MEDIUM | kernel: wireguard: allowedips: avoid unaligned 64-bit memory | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42250 | linux-libc-dev | MEDIUM | kernel: cachefiles: add missing lock protection when polling | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42252 | linux-libc-dev | MEDIUM | kernel: closures: Change BUG_ON() to WARN_ON() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-42253 | linux-libc-dev | MEDIUM | kernel: gpio: pca953x: fix pca953x_irq_bus_sync_unlock race | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42258 | linux-libc-dev | MEDIUM | kernel: mm: huge_memory: use !CONFIG_64BIT to relax huge pag | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42259 | linux-libc-dev | MEDIUM | kernel: drm/i915/gem: Fix Virtual Memory mapping boundaries | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42265 | linux-libc-dev | MEDIUM | kernel: protect the fetch of ->fd[fd] in do_dup2() from m | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42267 | linux-libc-dev | MEDIUM | kernel: riscv/mm: Add handling for VM_FAULT_SIGSEGV in mm_fa | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42268 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Fix missing lock on sync reset reload | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42269 | linux-libc-dev | MEDIUM | kernel: netfilter: iptables: Fix potential null-ptr-deref in | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42270 | linux-libc-dev | MEDIUM | kernel: netfilter: iptables: Fix null-ptr-deref in iptable_n | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42272 | linux-libc-dev | MEDIUM | kernel: sched: act_ct: take care of padding in struct zones_ | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42273 | linux-libc-dev | MEDIUM | kernel: f2fs: assign CURSEG_ALL_DATA_ATGC if blkaddr is vali | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42274 | linux-libc-dev | MEDIUM | kernel: Revert "ALSA: firewire-lib: operate for period elaps | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42276 | linux-libc-dev | MEDIUM | kernel: nvme-pci: add missing condition check for existence | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42277 | linux-libc-dev | MEDIUM | kernel: iommu: sprd: Avoid NULL deref in sprd_iommu_hw_en | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42279 | linux-libc-dev | MEDIUM | kernel: spi: microchip-core: ensure TX and RX FIFOs are empt | 6.1.38-4 | no fix | dagster |
| CVE-2024-42281 | linux-libc-dev | MEDIUM | kernel: bpf: Fix a segment issue when downgrading gso_size | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42283 | linux-libc-dev | MEDIUM | kernel: net: nexthop: Initialize all fields in dumped nextho | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42286 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: validate nvme_local_port correctly | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42287 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Complete command early within lock | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42288 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Fix for possible memory corruption | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42289 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: During vport delete send async logout | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42290 | linux-libc-dev | MEDIUM | kernel: irqchip/imx-irqsteer: Handle runtime power managemen | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42291 | linux-libc-dev | MEDIUM | kernel: ice: Add a per-VF limit on number of FDIR filters | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42295 | linux-libc-dev | MEDIUM | kernel: nilfs2: handle inconsistent state in nilfs_btnode_cr | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42296 | linux-libc-dev | MEDIUM | kernel: f2fs: fix return value of f2fs_convert_inline_inode( | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42297 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to don't dirty inode for readonly filesyst | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42299 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Update log->page_{mask,bits} if log->page_ | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42304 | linux-libc-dev | MEDIUM | kernel: ext4: make sure the first directory block is not a h | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42305 | linux-libc-dev | MEDIUM | kernel: ext4: check dot and dotdot of dx_root before making | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42306 | linux-libc-dev | MEDIUM | kernel: udf: Avoid using corrupted block bitmap buffer | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42307 | linux-libc-dev | MEDIUM | kernel: cifs: fix potential null pointer use in destroy_work | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42309 | linux-libc-dev | MEDIUM | kernel: drm/gma500: fix null pointer dereference in psb_inte | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42310 | linux-libc-dev | MEDIUM | kernel: drm/gma500: fix null pointer dereference in cdv_inte | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42311 | linux-libc-dev | MEDIUM | kernel: hfs: fix to initialize fields of hfs_inode_info afte | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42312 | linux-libc-dev | MEDIUM | kernel: sysctl: always initialize i_uid/i_gid | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42315 | linux-libc-dev | MEDIUM | kernel: exfat: fix potential deadlock on __exfat_get_dentry_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-42316 | linux-libc-dev | MEDIUM | kernel: mm/mglru: fix div-by-zero in vmpressure_calc_level() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42317 | linux-libc-dev | MEDIUM | kernel: mm/huge_memory: avoid PMD-size page cache if needed | 6.1.38-4 | no fix | dagster |
| CVE-2024-42318 | linux-libc-dev | MEDIUM | kernel: landlock: Don't lose track of restrictions on cr | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42319 | linux-libc-dev | MEDIUM | kernel: mailbox: mtk-cmdq: Move devm_mbox_controller_registe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-42320 | linux-libc-dev | MEDIUM | kernel: s390/dasd: fix error checks in dasd_copy_pair_store( | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42321 | linux-libc-dev | MEDIUM | kernel: net: flow_dissector: use DEBUG_NET_WARN_ON_ONCE | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42322 | linux-libc-dev | MEDIUM | kernel: ipvs: properly dereference pe in ip_vs_add_service | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-43098 | linux-libc-dev | MEDIUM | kernel: i3c: Use i3cdev->desc->info instead of calling i3c_d | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-43817 | linux-libc-dev | MEDIUM | kernel: net: missing check virtio | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43818 | linux-libc-dev | MEDIUM | kernel: ASoC: amd: Adjust error handling in case of absent c | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43819 | linux-libc-dev | MEDIUM | kernel: kvm: s390: Reject memory region operations for ucont | 6.1.38-4 | no fix | dagster |
| CVE-2024-43823 | linux-libc-dev | MEDIUM | kernel: PCI: keystone: Fix NULL pointer dereference in case | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43824 | linux-libc-dev | MEDIUM | kernel: PCI: endpoint: pci-epf-test: Make use of cached ' | 6.1.38-4 | no fix | dagster |
| CVE-2024-43828 | linux-libc-dev | MEDIUM | kernel: ext4: fix infinite loop when replaying fast_commit | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43829 | linux-libc-dev | MEDIUM | kernel: drm/qxl: Add check for drm_cvt_mode | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43831 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: Handle invalid decoder vsi | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-43832 | linux-libc-dev | MEDIUM | kernel: s390/uv: Don't call folio_wait_writeback() without a | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43833 | linux-libc-dev | MEDIUM | kernel: media: v4l: async: Fix NULL pointer dereference in a | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43834 | linux-libc-dev | MEDIUM | kernel: xdp: fix invalid wait context of page_pool_destroy() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43835 | linux-libc-dev | MEDIUM | kernel: virtio_net: Fix napi_skb_cache_put warning | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-43837 | linux-libc-dev | MEDIUM | kernel: bpf: Fix null pointer dereference in resolve_prog_ty | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43840 | linux-libc-dev | MEDIUM | kernel: bpf, arm64: Fix trampoline for BPF_TRAMP_F_CALL_ORIG | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-43846 | linux-libc-dev | MEDIUM | kernel: lib: objagg: Fix general protection fault | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43849 | linux-libc-dev | MEDIUM | kernel: soc: qcom: pdr: protect locator_addr with the main m | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43850 | linux-libc-dev | MEDIUM | kernel: soc: qcom: icc-bwmon: Fix refcount imbalance seen du | 6.1.38-4 | no fix | dagster |
| CVE-2024-43851 | linux-libc-dev | MEDIUM | kernel: soc: xilinx: rename cpu_number1 to dummy_cpu_number | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43853 | linux-libc-dev | MEDIUM | kernel: cgroup/cpuset: Prevent UAF in proc_cpuset_show() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43854 | linux-libc-dev | MEDIUM | kernel: block: initialize integrity buffer to zero before wr | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43855 | linux-libc-dev | MEDIUM | kernel: md: fix deadlock between mddev_suspend and flush bio | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43856 | linux-libc-dev | MEDIUM | kernel: dma: fix call order in dmam_free_coherent | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43859 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to truncate preallocated blocks in f2fs_fi | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-43860 | linux-libc-dev | MEDIUM | kernel: remoteproc: imx_rproc: Skip over memory region when | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43861 | linux-libc-dev | MEDIUM | kernel: net: usb: qmi_wwan: fix memory leak for not ip packe | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43863 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Fix a deadlock in dma buf fence polling | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43866 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Always drain health in shutdown callback | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-43867 | linux-libc-dev | MEDIUM | kernel: drm/nouveau: prime: fix refcount underflow | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43868 | linux-libc-dev | MEDIUM | kernel: riscv/purgatory: align riscv_kernel_entry | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-43869 | linux-libc-dev | MEDIUM | kernel: perf: Fix event leak upon exec and file release | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43870 | linux-libc-dev | MEDIUM | kernel: perf: Fix event leak upon exit | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43871 | linux-libc-dev | MEDIUM | kernel: devres: Fix memory leakage caused by driver API devm | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43872 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Fix soft lockup under heavy CEQE load | 6.1.38-4 | no fix | dagster |
| CVE-2024-43875 | linux-libc-dev | MEDIUM | kernel: PCI: endpoint: Clean up error handling in vpci_scan_ | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43876 | linux-libc-dev | MEDIUM | kernel: PCI: rcar: Demote WARN() to dev_warn_ratelimited() i | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43879 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: handle 2x996 RU allocation in cfg802 | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43880 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_acl_erp: Fix object nesting warning | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43884 | linux-libc-dev | MEDIUM | kernel: Bluetooth: MGMT: Add error handling to pair_device() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-43889 | linux-libc-dev | MEDIUM | kernel: padata: Fix possible divide-by-0 panic in padata_mt_ | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43890 | linux-libc-dev | MEDIUM | kernel: tracing: Fix overflow in get_free_elt() | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43892 | linux-libc-dev | MEDIUM | kernel: memcg: protect concurrent access to mem_cgroup_idr | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-43893 | linux-libc-dev | MEDIUM | kernel: serial: core: check uartclk for zero to avoid divide | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43894 | linux-libc-dev | MEDIUM | kernel: drm/client: fix null pointer dereference in drm_clie | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43897 | linux-libc-dev | MEDIUM | kernel: net: drop bad gso csum_start and offset in virtio_ne | 6.1.38-4 | 6.1.106-3 | dagster |
| CVE-2024-43899 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix null pointer deref in dcn20_res | 6.1.38-4 | no fix | dagster |
| CVE-2024-43901 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix NULL pointer dereference for DT | 6.1.38-4 | no fix | dagster |
| CVE-2024-43902 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null checker before passing var | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43904 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null checks for 'stream' and 'p | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-43905 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Fix the null pointer dereference for veg | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43907 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu/pm: Fix the null pointer dereference in a | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43908 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix the null pointer dereference to ras_ | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43909 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu/pm: Fix the null pointer dereference for | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43912 | linux-libc-dev | MEDIUM | kernel: wifi: nl80211: disallow setting special AP channel w | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-43913 | linux-libc-dev | MEDIUM | kernel: nvme: apple: fix device reference counting | 6.1.38-4 | no fix | dagster |
| CVE-2024-43914 | linux-libc-dev | MEDIUM | kernel: md/raid5: avoid BUG_ON() while continue reshape afte | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44931 | linux-libc-dev | MEDIUM | kernel: gpio: prevent potential speculation leaks in gpio_de | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44935 | linux-libc-dev | MEDIUM | kernel: sctp: Fix null-ptr-deref in reuseport_add_sock(). | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44938 | linux-libc-dev | MEDIUM | kernel: jfs: Fix shift-out-of-bounds in dbDiscardAG | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44939 | linux-libc-dev | MEDIUM | kernel: jfs: fix null ptr deref in dtInsertEntry | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44944 | linux-libc-dev | MEDIUM | kernel: netfilter: ctnetlink: use helper function to calcula | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44946 | linux-libc-dev | MEDIUM | kernel: kcm: Serialise kcm_sendmsg() for the same socket. | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44947 | linux-libc-dev | MEDIUM | kernel: fuse: Initialize beyond-EOF page contents before set | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44948 | linux-libc-dev | MEDIUM | kernel: x86/mtrr: Check if fixed MTRRs exist before saving t | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44950 | linux-libc-dev | MEDIUM | kernel: serial: sc16is7xx: fix invalid FIFO access with spec | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-44954 | linux-libc-dev | MEDIUM | kernel: ALSA: line6: Fix racy access to midibuf | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44958 | linux-libc-dev | MEDIUM | kernel: sched/smt: Fix unbalance sched_smt_present dec/inc | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44960 | linux-libc-dev | MEDIUM | kernel: usb: gadget: core: Check for unset descriptor | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44963 | linux-libc-dev | MEDIUM | kernel: btrfs: do not BUG_ON() when freeing tree block after | 6.1.38-4 | no fix | dagster |
| CVE-2024-44965 | linux-libc-dev | MEDIUM | kernel: x86/mm: Fix pti_clone_pgtable() alignment assumption | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44966 | linux-libc-dev | MEDIUM | kernel: binfmt_flat: Fix corruption when not offsetting data | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44968 | linux-libc-dev | MEDIUM | kernel: tick/broadcast: Move per CPU pointer access into the | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44969 | linux-libc-dev | MEDIUM | kernel: s390/sclp: Prevent release of buffer in I/O | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44970 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44971 | linux-libc-dev | MEDIUM | kernel: net: dsa: bcm_sf2: Fix a possible memory leak in bcm | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-44982 | linux-libc-dev | MEDIUM | kernel: drm/msm/dpu: cleanup FB if dpu_format_populate_layou | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44988 | linux-libc-dev | MEDIUM | kernel: net: dsa: mv88e6xxx: Fix out-of-bound access | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44989 | linux-libc-dev | MEDIUM | kernel: bonding: fix xfrm real_dev null pointer dereference | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44990 | linux-libc-dev | MEDIUM | kernel: bonding: fix null pointer deref in bond_ipsec_offloa | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44991 | linux-libc-dev | MEDIUM | kernel: tcp: prevent concurrent execution of tcp_sk_exit_bat | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-44995 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix a deadlock problem when config TC dur | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45000 | linux-libc-dev | MEDIUM | kernel: fs/netfs/fscache_cookie: add missing "n_accesses" ch | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45001 | linux-libc-dev | MEDIUM | kernel: net: mana: Fix RX buf alloc_size alignment and atomi | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-45002 | linux-libc-dev | MEDIUM | kernel: rtla/osnoise: Prevent NULL dereference in error hand | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45003 | linux-libc-dev | MEDIUM | kernel: vfs: Don't evict inode under the inode lru traversin | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45006 | linux-libc-dev | MEDIUM | kernel: xhci: Fix Panther point NULL pointer deref at full-s | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45007 | linux-libc-dev | MEDIUM | kernel: char: xillybus: Don't destroy workqueue from work it | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45008 | linux-libc-dev | MEDIUM | kernel: Input: MT - limit max slots | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45009 | linux-libc-dev | MEDIUM | kernel: mptcp: pm: only decrement add_addr_accepted for MPJ | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45010 | linux-libc-dev | MEDIUM | kernel: mptcp: pm: only mark 'subflow' endp as available | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45011 | linux-libc-dev | MEDIUM | kernel: char: xillybus: Check USB endpoints when probing dev | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45015 | linux-libc-dev | MEDIUM | kernel: drm/msm/dpu: move dpu_encoder's connector assign | 6.1.38-4 | no fix | dagster |
| CVE-2024-45016 | linux-libc-dev | MEDIUM | kernel: netem: fix return value if duplicate enqueue fails | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45018 | linux-libc-dev | MEDIUM | kernel: netfilter: flowtable: initialise extack before use | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45019 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Take state lock during tx timeout reporte | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45021 | linux-libc-dev | MEDIUM | kernel: memcg_write_event_control(): fix a user-triggerable | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45022 | linux-libc-dev | MEDIUM | kernel: mm/vmalloc: fix page mapping if vm_area_alloc_pages( | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45025 | linux-libc-dev | MEDIUM | kernel: fix bitmap corruption on close_range() with CLOSE_RA | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45028 | linux-libc-dev | MEDIUM | kernel: mmc: mmc_test: Fix NULL dereference on allocation fa | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45029 | linux-libc-dev | MEDIUM | kernel: i2c: tegra: Do not mark ACPI devices as irq safe | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-45336 | stdlib | MEDIUM | golang: net/http: net/http: sensitive headers incorrectly se | v1.22.4 | 1.22.11, 1.23.5, 1.24.0-rc.2 | dagster |
| CVE-2024-45341 | stdlib | MEDIUM | golang: crypto/x509: crypto/x509: usage of IPv6 zone IDs can | v1.22.4 | 1.22.11, 1.23.5, 1.24.0-rc.2 | dagster |
| CVE-2024-45828 | linux-libc-dev | MEDIUM | kernel: i3c: mipi-i3c-hci: Mask ring interrupts before ring | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-46675 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: core: Prevent USB core invalid event buff | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46676 | linux-libc-dev | MEDIUM | kernel: nfc: pn533: Add poll mod list filling check | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46677 | linux-libc-dev | MEDIUM | kernel: gtp: fix a potential NULL pointer dereference | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46678 | linux-libc-dev | MEDIUM | kernel: bonding: change ipsec_lock from spin lock to mutex | 6.1.38-4 | no fix | dagster |
| CVE-2024-46679 | linux-libc-dev | MEDIUM | kernel: ethtool: check device is present when getting link s | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46681 | linux-libc-dev | MEDIUM | kernel: pktgen: use cpus_read_lock() in pg_net_init() | 6.1.38-4 | no fix | dagster |
| CVE-2024-46685 | linux-libc-dev | MEDIUM | kernel: pinctrl: single: fix potential NULL dereference in p | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46686 | linux-libc-dev | MEDIUM | kernel: smb/client: avoid dereferencing rdata=NULL in smb2_n | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46689 | linux-libc-dev | MEDIUM | kernel: soc: qcom: cmd-db: Map shared memory as WC, not WB | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46694 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: avoid using null object of framebuf | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46695 | linux-libc-dev | MEDIUM | kernel: selinux,smack: don't bypass permissions check in ino | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-46698 | linux-libc-dev | MEDIUM | kernel: video/aperture: optionally match the device in sysfb | 6.1.38-4 | no fix | dagster |
| CVE-2024-46702 | linux-libc-dev | MEDIUM | kernel: thunderbolt: Mark XDomain as unplugged when router i | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46707 | linux-libc-dev | MEDIUM | kernel: KVM: arm64: Make ICC_*SGI*_EL1 undef in the absence | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46710 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Prevent unmapping active read buffers | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-46711 | linux-libc-dev | MEDIUM | kernel: mptcp: pm: fix ID 0 endp usage after multiple re-cre | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46714 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Skip wbscl_set_scaler_filter if fil | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46715 | linux-libc-dev | MEDIUM | kernel: driver: iio: add missing checks on iio_info's ca | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46716 | linux-libc-dev | MEDIUM | kernel: dmaengine: altera-msgdma: properly free descriptor i | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46717 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: SHAMPO, Fix incorrect page release | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46719 | linux-libc-dev | MEDIUM | kernel: usb: typec: ucsi: Fix null pointer dereference in tr | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46720 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix dereference after null check | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46721 | linux-libc-dev | MEDIUM | kernel: apparmor: fix possible NULL pointer dereference | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46726 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Ensure index calculation will not o | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46727 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add otg_master NULL check within re | 6.1.38-4 | no fix | dagster |
| CVE-2024-46728 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check index for aux_rd_interval bef | 6.1.38-4 | no fix | dagster |
| CVE-2024-46730 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Ensure array index tg_inst won' | 6.1.38-4 | no fix | dagster |
| CVE-2024-46732 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Assign linear_pitch_alignment even | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46733 | linux-libc-dev | MEDIUM | kernel: btrfs: fix qgroup reserve leaks in cow_file_range | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-46734 | linux-libc-dev | MEDIUM | kernel: btrfs: fix race between direct IO write and fsync wh | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46735 | linux-libc-dev | MEDIUM | kernel: ublk_drv: fix NULL pointer dereference in ublk_ctrl_ | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46737 | linux-libc-dev | MEDIUM | kernel: nvmet-tcp: fix kernel crash if commands allocation f | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46739 | linux-libc-dev | MEDIUM | kernel: uio_hv_generic: Fix kernel NULL pointer dereference | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46742 | linux-libc-dev | MEDIUM | kernel: smb/server: fix potential null-ptr-deref of lease_ct | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-46745 | linux-libc-dev | MEDIUM | kernel: Input: uinput - reject requests with unreasonable nu | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46750 | linux-libc-dev | MEDIUM | kernel: PCI: Add missing bridge lock to pci_bus_lock() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46751 | linux-libc-dev | MEDIUM | kernel: btrfs: don't BUG_ON() when 0 reference count at | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-46752 | linux-libc-dev | MEDIUM | kernel: btrfs: replace BUG_ON() with error handling at updat | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46753 | linux-libc-dev | MEDIUM | kernel: btrfs: handle errors from btrfs_dec_ref() properly | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-46754 | linux-libc-dev | MEDIUM | kernel: bpf: Remove tst_run from lwt_seg6local_prog_ops. | 6.1.38-4 | no fix | dagster |
| CVE-2024-46755 | linux-libc-dev | MEDIUM | kernel: wifi: mwifiex: Do not return unused priv in mwifiex_ | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46760 | linux-libc-dev | MEDIUM | kernel: wifi: rtw88: usb: schedule rx work after everything | 6.1.38-4 | no fix | dagster |
| CVE-2024-46761 | linux-libc-dev | MEDIUM | kernel: pci/hotplug/pnv_php: Fix hotplug driver crash on Pow | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46763 | linux-libc-dev | MEDIUM | kernel: fou: Fix null-ptr-deref in GRO. | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46765 | linux-libc-dev | MEDIUM | kernel: ice: protect XDP configuration with a mutex | 6.1.38-4 | no fix | dagster |
| CVE-2024-46770 | linux-libc-dev | MEDIUM | kernel: ice: Add netif_device_attach/detach into PF reset fl | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46771 | linux-libc-dev | MEDIUM | kernel: can: bcm: Remove proc entry when dev is unregistered | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46772 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check denominator crb_pipes before | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-46773 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check denominator pbn_div before us | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46775 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Validate function returns | 6.1.38-4 | no fix | dagster |
| CVE-2024-46776 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Run DC_LOG_DC after checking link-& | 6.1.38-4 | no fix | dagster |
| CVE-2024-46777 | linux-libc-dev | MEDIUM | kernel: udf: Avoid excessive partition lengths | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46780 | linux-libc-dev | MEDIUM | kernel: nilfs2: protect references to superblock parameters | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46781 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix missing cleanup on rollforward recovery | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46783 | linux-libc-dev | MEDIUM | kernel: tcp_bpf: fix return value of tcp_bpf_sendmsg() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46784 | linux-libc-dev | MEDIUM | kernel: net: mana: Fix error handling in mana_create_txq/rxq | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46787 | linux-libc-dev | MEDIUM | kernel: userfaultfd: fix checks for huge PMDs | 6.1.38-4 | no fix | dagster |
| CVE-2024-46791 | linux-libc-dev | MEDIUM | kernel: can: mcp251x: fix deadlock if an interrupt occurs du | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46795 | linux-libc-dev | MEDIUM | kernel: ksmbd: unset the binding mark of a reused connection | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46802 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: added NULL check at start of dc_val | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46805 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix the waring dereferencing hive | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46806 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix the warning division or modulo by ze | 6.1.38-4 | no fix | dagster |
| CVE-2024-46807 | linux-libc-dev | MEDIUM | kernel: drm/amd/amdgpu: Check tbo resource pointer | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46808 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add missing NULL pointer check with | 6.1.38-4 | no fix | dagster |
| CVE-2024-46809 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check BIOS images before it is used | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-46810 | linux-libc-dev | MEDIUM | kernel: drm/bridge: tc358767: Check if fully initialized bef | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46816 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Stop amdgpu_dm initialize when link | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2024-46817 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Stop amdgpu_dm initialize when stre | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46819 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: the warning dereferencing obj for nbio_v | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46822 | linux-libc-dev | MEDIUM | kernel: arm64: acpi: Harden get_cpu_for_acpi_id() against mi | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46826 | linux-libc-dev | MEDIUM | kernel: ELF: fix kernel.randomize_va_space double read | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46829 | linux-libc-dev | MEDIUM | kernel: rtmutex: Drop rt_mutex::wait_lock before scheduling | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46832 | linux-libc-dev | MEDIUM | kernel: MIPS: cevt-r4k: Don't call get_c0_compare_int if | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46834 | linux-libc-dev | MEDIUM | kernel: ethtool: fail closed if we can't get max channel | 6.1.38-4 | no fix | dagster |
| CVE-2024-46835 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix smatch static checker warning | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46840 | linux-libc-dev | MEDIUM | kernel: btrfs: clean up our handling of refs == 0 in snapsho | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46841 | linux-libc-dev | MEDIUM | kernel: btrfs: don't BUG_ON on ENOMEM from btrfs_lookup_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-46846 | linux-libc-dev | MEDIUM | kernel: spi: rockchip: Resolve unbalanced runtime PM / syste | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46848 | linux-libc-dev | MEDIUM | kernel: perf/x86/intel: Limit the period on Haswell | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46855 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_socket: fix sk refcount leaks | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46857 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Fix bridge mode operations when there are | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-46860 | linux-libc-dev | MEDIUM | kernel: wifi: mt76: mt7921: fix NULL pointer access in mt792 | 6.1.38-4 | no fix | dagster |
| CVE-2024-46870 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Disable DMCUB timeout for DCN35 | 6.1.38-4 | no fix | dagster |
| CVE-2024-46896 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: don't access invalid sched | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-47081 | requests | MEDIUM | requests: Requests vulnerable to .netrc credentials leak via | 2.31.0 | 2.32.4 | dagster, slack-rqd-api |
| CVE-2024-47141 | linux-libc-dev | MEDIUM | kernel: pinmux: Use sequential access to access desc->pinmux | 6.1.38-4 | no fix | dagster |
| CVE-2024-47143 | linux-libc-dev | MEDIUM | kernel: dma-debug: fix a possible deadlock on radix_lock | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-47408 | linux-libc-dev | MEDIUM | kernel: net/smc: check smcd_v2_ext_offset when receiving pro | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-47658 | linux-libc-dev | MEDIUM | kernel: crypto: stm32/cryp - call finalize with bh disabled | 6.1.38-4 | no fix | dagster |
| CVE-2024-47660 | linux-libc-dev | MEDIUM | kernel: fsnotify: clear PARENT_WATCHED flags lazily | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47661 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Avoid overflow from uint32_t to uin | 6.1.38-4 | no fix | dagster |
| CVE-2024-47662 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Remove register from DCN35 DMCUB di | 6.1.38-4 | no fix | dagster |
| CVE-2024-47663 | linux-libc-dev | MEDIUM | kernel: staging: iio: frequency: ad9834: Validate frequency | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47664 | linux-libc-dev | MEDIUM | kernel: spi: hisi-kunpeng: Add verification for the max_freq | 6.1.38-4 | no fix | dagster |
| CVE-2024-47665 | linux-libc-dev | MEDIUM | kernel: i3c: mipi-i3c-hci: Error out instead on BUG_ON() in | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47666 | linux-libc-dev | MEDIUM | kernel: scsi: pm80xx: Set phy->enable_completion only whe | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2024-47667 | linux-libc-dev | MEDIUM | kernel: PCI: keystone: Add workaround for Errata #i2037 (AM6 | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47668 | linux-libc-dev | MEDIUM | kernel: lib/generic-radix-tree.c: Fix rare race in __genradi | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47669 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix state management in error path of log wr | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47671 | linux-libc-dev | MEDIUM | kernel: USB: usbtmc: prevent kernel-usb-infoleak | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47673 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: pause TCM when the firmware is s | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47674 | linux-libc-dev | MEDIUM | kernel: mm: avoid leaving partial pfn mappings around in err | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47678 | linux-libc-dev | MEDIUM | kernel: icmp: change the order of rate limits | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47679 | linux-libc-dev | MEDIUM | kernel: vfs: fix race between evice_inodes() and find_inode( | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47683 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Skip Recompute DSC Params if no Str | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-47684 | linux-libc-dev | MEDIUM | kernel: tcp: check skb is non-NULL in tcp_rto_delta_us() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47690 | linux-libc-dev | MEDIUM | kernel: f2fs: get rid of online repaire on corrupted directo | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47692 | linux-libc-dev | MEDIUM | kernel: nfsd: return -EINVAL when namelen is 0 | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47693 | linux-libc-dev | MEDIUM | kernel: IB/core: Fix ib_cache_setup_one error flow cleanup | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47699 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix potential null-ptr-deref in nilfs_btree_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47703 | linux-libc-dev | MEDIUM | kernel: bpf, lsm: Add check for BPF LSM return value | 6.1.38-4 | no fix | dagster |
| CVE-2024-47704 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check link_res->hpo_dp_link_enc | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2024-47705 | linux-libc-dev | MEDIUM | kernel: block: fix potential invalid pointer dereference in | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47706 | linux-libc-dev | MEDIUM | kernel: block, bfq: fix possible UAF for bfqq->bic with merg | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47707 | linux-libc-dev | MEDIUM | kernel: ipv6: avoid possible NULL deref in rt6_uncached_list | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47709 | linux-libc-dev | MEDIUM | kernel: can: bcm: Clear bo->bcm_proc_read after remove_pr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47710 | linux-libc-dev | MEDIUM | kernel: sock_map: Add a cond_resched() in sock_hash_free() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47712 | linux-libc-dev | MEDIUM | kernel: wifi: wilc1000: fix potential RCU dereference issue | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47713 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: use two-phase skb reclamation in iee | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47720 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for set_output_gamma | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47726 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to wait dio completion | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-47728 | linux-libc-dev | MEDIUM | kernel: bpf: Zero former ARG_PTR_TO_{LONG,INT} args in case | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47731 | linux-libc-dev | MEDIUM | kernel: drivers/perf: Fix ali_drw_pmu driver interrupt statu | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47734 | linux-libc-dev | MEDIUM | kernel: bonding: Fix unnecessary warnings and logs from bond | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47735 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Fix spin_unlock_irqrestore() called with I | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47736 | linux-libc-dev | MEDIUM | kernel: erofs: handle overlapped pclusters out of crafted im | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2024-47737 | linux-libc-dev | MEDIUM | kernel: nfsd: call cache_put if xdr_reserve_space returns NU | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47739 | linux-libc-dev | MEDIUM | kernel: padata: use integer wrap around to prevent deadlock | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47740 | linux-libc-dev | MEDIUM | kernel: f2fs: Require FMODE_WRITE for atomic write ioctls | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47743 | linux-libc-dev | MEDIUM | kernel: KEYS: prevent NULL pointer dereference in find_asymm | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47749 | linux-libc-dev | MEDIUM | kernel: RDMA/cxgb4: Added NULL check for lookup_atid | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47752 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: Fix H264 stateless decoder | 6.1.38-4 | no fix | dagster |
| CVE-2024-47753 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: Fix VP8 stateless decoder s | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-47754 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: Fix H264 multi stateless de | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-47756 | linux-libc-dev | MEDIUM | kernel: PCI: keystone: Fix if-statement expression in ks_pci | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-47794 | linux-libc-dev | MEDIUM | kernel: bpf: Prevent tailcall infinite loop caused by frepla | 6.1.38-4 | no fix | dagster |
| CVE-2024-47809 | linux-libc-dev | MEDIUM | kernel: dlm: fix possible lkb_resource null dereference | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2024-48881 | linux-libc-dev | MEDIUM | kernel: bcache: revert replacing IS_ERR_OR_NULL with IS_ERR | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49568 | linux-libc-dev | MEDIUM | kernel: net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt whe | 6.1.38-4 | no fix | dagster |
| CVE-2024-49569 | linux-libc-dev | MEDIUM | kernel: nvme-rdma: unquiesce admin_q before destroy it | 6.1.38-4 | no fix | dagster |
| CVE-2024-49571 | linux-libc-dev | MEDIUM | kernel: net/smc: check iparea_offset and ipv6_prefixes_cnt w | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49750 | snowflake-connector-python | MEDIUM | The Snowflake Connector for Python stores sensitive data in | 3.6.0 | 3.12.3 | dagster |
| CVE-2024-49850 | linux-libc-dev | MEDIUM | kernel: bpf: correctly handle malformed BPF_CORE_TYPE_ID_LOC | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49851 | linux-libc-dev | MEDIUM | kernel: tpm: Clean up TPM space after command failure | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49856 | linux-libc-dev | MEDIUM | kernel: x86/sgx: Fix deadlock in SGX NUMA node search | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49858 | linux-libc-dev | MEDIUM | kernel: efistub/tpm: Use ACPI reclaim memory for event log t | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49859 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to check atomic_file in f2fs ioctl interfa | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49863 | linux-libc-dev | MEDIUM | kernel: vhost/scsi: null-ptr-dereference in vhost_scsi_get_r | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49866 | linux-libc-dev | MEDIUM | kernel: tracing/timerlat: Fix a race during cpuhp processing | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49867 | linux-libc-dev | MEDIUM | kernel: btrfs: wait for fixup workers before stopping cleane | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49868 | linux-libc-dev | MEDIUM | kernel: btrfs: fix a NULL pointer dereference when failed to | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49870 | linux-libc-dev | MEDIUM | kernel: cachefiles: fix dentry leak in cachefiles_open_file( | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49871 | linux-libc-dev | MEDIUM | kernel: Input: adp5589-keys - fix NULL pointer dereference | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49875 | linux-libc-dev | MEDIUM | kernel: nfsd: map the EBADMSG to nfserr_io to avoid warning | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49877 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix possible null-ptr-deref in ocfs2_set_buff | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49878 | linux-libc-dev | MEDIUM | kernel: resource: fix region_intersects() vs add_memory_driv | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49879 | linux-libc-dev | MEDIUM | kernel: drm: omapdrm: Add missing check for alloc_ordered_wo | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49881 | linux-libc-dev | MEDIUM | kernel: ext4: update orig_path in ext4_find_extent() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49886 | linux-libc-dev | MEDIUM | kernel: platform/x86: ISST: Fix the KASAN report slab-out-of | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49890 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: ensure the fw_info is not null before us | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49891 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Validate hdwq pointers before dereferenc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49892 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Initialize get_bytes_per_element | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49893 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check stream_status before it is us | 6.1.38-4 | no fix | dagster |
| CVE-2024-49896 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check stream before comparing them | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49897 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check phantom_stream before it is u | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49898 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null-initialized variables | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49899 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Initialize denominators' default to | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49901 | linux-libc-dev | MEDIUM | kernel: drm/msm/adreno: Assign msm_gpu->pdev earlier to a | 6.1.38-4 | no fix | dagster |
| CVE-2024-49902 | linux-libc-dev | MEDIUM | kernel: jfs: check if leafidx greater than num leaves per dm | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49905 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for 'afb' in | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49906 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null pointer before try to ac | 6.1.38-4 | no fix | dagster |
| CVE-2024-49907 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null pointers before using dc | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49908 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for 'afb' in | 6.1.38-4 | no fix | dagster |
| CVE-2024-49909 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL check for function pointer | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49910 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL check for function pointer | 6.1.38-4 | no fix | dagster |
| CVE-2024-49911 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL check for function pointer | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49912 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Handle null 'stream_status' in 'pla | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49913 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for top_pipe_to_prog | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49914 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for pipe_ctx->pla | 6.1.38-4 | no fix | dagster |
| CVE-2024-49915 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL check for clk_mgr in dcn32 | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49916 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL check for clk_mgr and clk_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-49917 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add NULL check for clk_mgr and clk_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49918 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for head_pipe in dcn | 6.1.38-4 | no fix | dagster |
| CVE-2024-49919 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null check for head_pipe in dcn | 6.1.38-4 | no fix | dagster |
| CVE-2024-49920 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null pointers before multiple | 6.1.38-4 | no fix | dagster |
| CVE-2024-49921 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null pointers before used | 6.1.38-4 | no fix | dagster |
| CVE-2024-49922 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null pointers before using th | 6.1.38-4 | no fix | dagster |
| CVE-2024-49923 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Pass non-null to dcn20_validate_app | 6.1.38-4 | no fix | dagster |
| CVE-2024-49925 | linux-libc-dev | MEDIUM | kernel: fbdev: efifb: Register sysfs groups through driver c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49926 | linux-libc-dev | MEDIUM | kernel: rcu-tasks: Fix access non-existent percpu rtpcp vari | 6.1.38-4 | no fix | dagster |
| CVE-2024-49927 | linux-libc-dev | MEDIUM | kernel: x86/ioapic: Handle allocation failures gracefully | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49929 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: avoid NULL pointer dereference | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49933 | linux-libc-dev | MEDIUM | kernel: blk_iocost: fix more out of bound shifts | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49934 | linux-libc-dev | MEDIUM | kernel: fs/inode: Prevent dump_mapping() accessing invalid d | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49935 | linux-libc-dev | MEDIUM | kernel: ACPI: PAD: fix crash in exit_round_robin() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49937 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: Set correct chandef when starting CA | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49938 | linux-libc-dev | MEDIUM | kernel: wifi: ath9k_htc: Use __skb_set_length() for resettin | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49939 | linux-libc-dev | MEDIUM | kernel: wifi: rtw89: avoid to add interface to list twice wh | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49940 | linux-libc-dev | MEDIUM | kernel: l2tp: prevent possible tunnel refcount underflow | 6.1.38-4 | no fix | dagster |
| CVE-2024-49944 | linux-libc-dev | MEDIUM | kernel: sctp: set sk_state back to CLOSED if autobind fails | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49945 | linux-libc-dev | MEDIUM | kernel: net/ncsi: Disable the ncsi work before freeing the a | 6.1.38-4 | no fix | dagster |
| CVE-2024-49946 | linux-libc-dev | MEDIUM | kernel: ppp: do not assume bh is held in ppp_channel_bridge_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49948 | linux-libc-dev | MEDIUM | kernel: net: add more sanity checks to qdisc_pkt_len_init() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49949 | linux-libc-dev | MEDIUM | kernel: net: avoid potential underflow in qdisc_pkt_len_init | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49951 | linux-libc-dev | MEDIUM | kernel: Bluetooth: MGMT: Fix possible crash on mgmt_index_re | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-49952 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: prevent nf_skb_duplicated corr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49954 | linux-libc-dev | MEDIUM | kernel: static_call: Replace pointless WARN_ON() in static_c | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49955 | linux-libc-dev | MEDIUM | kernel: ACPI: battery: Fix possible crash when unregistering | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49957 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix null-ptr-deref when journal load failed. | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49958 | linux-libc-dev | MEDIUM | kernel: ocfs2: reserve space for inline xattr before attachi | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49959 | linux-libc-dev | MEDIUM | kernel: jbd2: stop waiting for space when jbd2_cleanup_journ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49961 | linux-libc-dev | MEDIUM | kernel: media: i2c: ar0521: Use cansleep version of gpiod_se | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49962 | linux-libc-dev | MEDIUM | kernel: ACPICA: check null return of ACPI_ALLOCATE_ZEROED() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49963 | linux-libc-dev | MEDIUM | kernel: mailbox: bcm2835: Fix timeout during suspend mode | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49965 | linux-libc-dev | MEDIUM | kernel: ocfs2: remove unreasonable unlock in ocfs2_read_bloc | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49968 | linux-libc-dev | MEDIUM | kernel: ext4: filesystems without casefold feature cannot be | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2024-49970 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Implement bounds check for stream e | 6.1.38-4 | no fix | dagster |
| CVE-2024-49973 | linux-libc-dev | MEDIUM | kernel: r8169: add tally counter fields added with RTL8125 | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49974 | linux-libc-dev | MEDIUM | kernel: NFSD: Limit the number of concurrent async COPY oper | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-49975 | linux-libc-dev | MEDIUM | kernel: uprobes: fix kernel info leak via "[uprobes]" vma | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49977 | linux-libc-dev | MEDIUM | kernel: net: stmmac: Fix zero-division error when disabling | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49978 | linux-libc-dev | MEDIUM | kernel: gso: fix udp gso fraglist segmentation after pull fr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49985 | linux-libc-dev | MEDIUM | kernel: i2c: stm32f7: Do not prepare/unprepare clock during | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-49988 | linux-libc-dev | MEDIUM | kernel: ksmbd: add refcnt to ksmbd_conn struct | 6.1.38-4 | no fix | dagster |
| CVE-2024-49994 | linux-libc-dev | MEDIUM | kernel: block: fix integer overflow in BLKSECDISCARD | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-49998 | linux-libc-dev | MEDIUM | kernel: net: dsa: improve shutdown sequence | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2024-50000 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Fix NULL deref in mlx5e_tir_builder_alloc | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50001 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Fix error path in multi-packet WQE transmi | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50002 | linux-libc-dev | MEDIUM | kernel: static_call: Handle module init failure correctly in | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50003 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix system hang while resume with T | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50006 | linux-libc-dev | MEDIUM | kernel: ext4: fix i_data_sem unlock order in ext4_ind_migrat | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50008 | linux-libc-dev | MEDIUM | kernel: wifi: mwifiex: Fix memcpy() field-spanning write war | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50009 | linux-libc-dev | MEDIUM | kernel: cpufreq: amd-pstate: add check for cpufreq_cpu_get&# | 6.1.38-4 | no fix | dagster |
| CVE-2024-50010 | linux-libc-dev | MEDIUM | kernel: exec: don't WARN for racy path_noexec check | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50012 | linux-libc-dev | MEDIUM | kernel: cpufreq: Avoid a bad reference count on CPU node | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50013 | linux-libc-dev | MEDIUM | kernel: exfat: fix memory leak in exfat_load_bitmap() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50015 | linux-libc-dev | MEDIUM | kernel: ext4: dax: fix overflowing extents beyond inode size | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50017 | linux-libc-dev | MEDIUM | kernel: x86/mm/ident_map: Use gbpages only where full GB pag | 6.1.38-4 | no fix | dagster |
| CVE-2024-50019 | linux-libc-dev | MEDIUM | kernel: kthread: unpark only parked kthread | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50022 | linux-libc-dev | MEDIUM | kernel: device-dax: correct pgoff align in dax_set_mapping() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50024 | linux-libc-dev | MEDIUM | kernel: net: Fix an unsafe loop on the list | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50026 | linux-libc-dev | MEDIUM | kernel: scsi: wd33c93: Don't use stale scsi_pointer valu | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50028 | linux-libc-dev | MEDIUM | kernel: thermal: core: Reference count the zone in thermal_z | 6.1.38-4 | no fix | dagster |
| CVE-2024-50031 | linux-libc-dev | MEDIUM | kernel: drm/v3d: Stop the active perfmon before being destro | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50038 | linux-libc-dev | MEDIUM | kernel: netfilter: xtables: avoid NFPROTO_UNSPEC where neede | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50039 | linux-libc-dev | MEDIUM | kernel: net/sched: accept TCA_STAB only for root qdisc | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50040 | linux-libc-dev | MEDIUM | kernel: igb: Do not bring the device up after non-fatal erro | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50041 | linux-libc-dev | MEDIUM | kernel: i40e: Fix macvlan leak by synchronizing access to ma | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50045 | linux-libc-dev | MEDIUM | kernel: netfilter: br_netfilter: fix panic with metadata_dst | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50046 | linux-libc-dev | MEDIUM | kernel: NFSv4: Prevent NULL-pointer dereference in nfs42_com | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50048 | linux-libc-dev | MEDIUM | kernel: fbcon: Fix a NULL pointer dereference issue in fbcon | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50049 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check null pointer before dereferen | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50056 | linux-libc-dev | MEDIUM | kernel: usb: gadget: uvc: Fix ERR_PTR dereference in uvc_v4l | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-50058 | linux-libc-dev | MEDIUM | kernel: serial: protect uart_port_dtr_rts() in uart_shutdown | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50060 | linux-libc-dev | MEDIUM | kernel: io_uring: check if we need to reschedule during over | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50062 | linux-libc-dev | MEDIUM | kernel: RDMA/rtrs-srv: Avoid null pointer deref during path | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50069 | linux-libc-dev | MEDIUM | kernel: pinctrl: apple: check devm_kasprintf() returned valu | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50072 | linux-libc-dev | MEDIUM | kernel: x86/bugs: Use code segment selector for VERW operand | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50076 | linux-libc-dev | MEDIUM | kernel: vt: prevent kernel-infoleak in con_font_get() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50077 | linux-libc-dev | MEDIUM | kernel: Bluetooth: ISO: Fix multiple init when debugfs is di | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50078 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Call iso_exit() on module unload | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50082 | linux-libc-dev | MEDIUM | kernel: blk-rq-qos: fix crash on rq_qos_wait vs. rq_qos_wake | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50085 | linux-libc-dev | MEDIUM | kernel: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_su | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50087 | linux-libc-dev | MEDIUM | kernel: btrfs: fix uninitialized pointer free on read_alloc_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50093 | linux-libc-dev | MEDIUM | kernel: thermal: intel: int340x: processor: Fix warning duri | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50095 | linux-libc-dev | MEDIUM | kernel: RDMA/mad: Improve handling of timed out WRs of mad a | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50096 | linux-libc-dev | MEDIUM | kernel: nouveau/dmem: Fix vulnerability in migrate_to_ram up | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50098 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: core: Set SDEV_OFFLINE when UFS is shut d | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50099 | linux-libc-dev | MEDIUM | kernel: arm64: probes: Remove broken LDR (literal) uprobe su | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50101 | linux-libc-dev | MEDIUM | kernel: iommu/vt-d: Fix incorrect pci_for_each_dma_alias() f | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50103 | linux-libc-dev | MEDIUM | kernel: ASoC: qcom: Fix NULL Dereference in asoc_qcom_lpass_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50108 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Disable PSR-SU on Parade 08-01 TCON | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50110 | linux-libc-dev | MEDIUM | kernel: xfrm: fix one more kernel-infoleak in algo dumping | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50111 | linux-libc-dev | MEDIUM | kernel: LoongArch: Enable IRQ if do_ale() triggered in irq-e | 6.1.38-4 | no fix | dagster |
| CVE-2024-50116 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix kernel bug due to missing clearing of bu | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50117 | linux-libc-dev | MEDIUM | kernel: drm/amd: Guard against bad data for ATIF ACPI method | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50133 | linux-libc-dev | MEDIUM | kernel: LoongArch: Don't crash in stack_top() for tasks | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50134 | linux-libc-dev | MEDIUM | kernel: drm/vboxvideo: Replace fake VLA at end of vbva_mouse | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50135 | linux-libc-dev | MEDIUM | kernel: nvme-pci: fix race condition between reset and nvme_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-50136 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Unregister notifier on eswitch init failur | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50138 | linux-libc-dev | MEDIUM | kernel: bpf: Use raw_spinlock_t in ringbuf | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50141 | linux-libc-dev | MEDIUM | kernel: ACPI: PRM: Find EFI_MEMORY_RUNTIME block for PRM han | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50142 | linux-libc-dev | MEDIUM | kernel: xfrm: validate new SA's prefixlen using SA famil | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50145 | linux-libc-dev | MEDIUM | kernel: octeon_ep: Add SKB allocation failures handling in _ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50146 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Don't call cleanup on profile rollback fa | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50147 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Fix command bitmask initialization | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50148 | linux-libc-dev | MEDIUM | kernel: Bluetooth: bnep: fix wild-memory-access in proto_unr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50153 | linux-libc-dev | MEDIUM | kernel: scsi: target: core: Fix null-ptr-deref in target_all | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50156 | linux-libc-dev | MEDIUM | kernel: drm/msm: Avoid NULL dereference in msm_disp_state_pr | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50160 | linux-libc-dev | MEDIUM | kernel: ALSA: hda/cs8409: Fix possible NULL dereference | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50162 | linux-libc-dev | MEDIUM | kernel: bpf: devmap: provide rxq after redirect | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50163 | linux-libc-dev | MEDIUM | kernel: bpf: Make sure internal and UAPI bpf_redirect flags | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50166 | linux-libc-dev | MEDIUM | kernel: fsl/fman: Fix refcount handling of fman-related devi | 6.1.38-4 | no fix | dagster |
| CVE-2024-50167 | linux-libc-dev | MEDIUM | kernel: be2net: fix potential memory leak in be_xmit() | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50168 | linux-libc-dev | MEDIUM | kernel: net/sun3_82586: fix potential memory leak in sun3_82 | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50171 | linux-libc-dev | MEDIUM | kernel: net: systemport: fix potential memory leak in bcm_sy | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50176 | linux-libc-dev | MEDIUM | kernel: remoteproc: k3-r5: Fix error handling when power-up | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50179 | linux-libc-dev | MEDIUM | kernel: ceph: remove the incorrect Fw reference check when d | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50182 | linux-libc-dev | MEDIUM | kernel: secretmem: disable memfd_secret() if arch cannot set | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50183 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Ensure DA_ID handling completion before | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50184 | linux-libc-dev | MEDIUM | kernel: virtio_pmem: Check device status before requesting f | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50185 | linux-libc-dev | MEDIUM | kernel: mptcp: handle consistently DSS corruption | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50187 | linux-libc-dev | MEDIUM | kernel: drm/vc4: Stop the active perfmon before being destro | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50188 | linux-libc-dev | MEDIUM | kernel: net: phy: dp83869: fix memory corruption when enabli | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50189 | linux-libc-dev | MEDIUM | kernel: HID: amd_sfh: Switch to device-managed dmam_alloc_co | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50192 | linux-libc-dev | MEDIUM | kernel: irqchip/gic-v4: Don't allow a VMOVP on a dying VPE | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50194 | linux-libc-dev | MEDIUM | kernel: arm64: probes: Fix uprobes for big-endian kernels | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50195 | linux-libc-dev | MEDIUM | kernel: posix-clock: Fix missing timespec64 check in pc_cloc | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50196 | linux-libc-dev | MEDIUM | kernel: pinctrl: ocelot: fix system hang on level based inte | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50198 | linux-libc-dev | MEDIUM | kernel: iio: light: veml6030: fix IIO device retrieval from | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50199 | linux-libc-dev | MEDIUM | kernel: mm/swapfile: skip HugeTLB pages for unuse_vma | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50200 | linux-libc-dev | MEDIUM | kernel: maple_tree: correct tree corruption on spanning stor | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50201 | linux-libc-dev | MEDIUM | kernel: drm/radeon: Fix encoder->possible_clones | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50202 | linux-libc-dev | MEDIUM | kernel: nilfs2: propagate directory read errors from nilfs_f | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50205 | linux-libc-dev | MEDIUM | kernel: ALSA: firewire-lib: Avoid division by zero in apply_ | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50208 | linux-libc-dev | MEDIUM | kernel: RDMA/bnxt_re: Fix a bug while setting up Level-2 PBL | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50210 | linux-libc-dev | MEDIUM | kernel: posix-clock: posix-clock: Fix unbalanced locking in | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50218 | linux-libc-dev | MEDIUM | kernel: ocfs2: pass u64 to ocfs2_truncate_inline maybe overf | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50229 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix potential deadlock with newly created sy | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50232 | linux-libc-dev | MEDIUM | kernel: iio: adc: ad7124: fix division by zero in ad7124_set | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50233 | linux-libc-dev | MEDIUM | kernel: staging: iio: frequency: ad9832: fix division by zer | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50236 | linux-libc-dev | MEDIUM | kernel: wifi: ath10k: Fix memory leak in management tx | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50237 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: do not pass a stopped vif to the dri | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50243 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fix general protection fault in run_is_map | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50244 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Additional check in ni_clear() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50245 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fix possible deadlock in mi_read | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50248 | linux-libc-dev | MEDIUM | kernel: ntfs3: Add bounds checking to mi_enum_attr() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50249 | linux-libc-dev | MEDIUM | kernel: ACPI: CPPC: Make rmw_lock a raw_spin_lock | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50251 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_payload: sanitize offset and length b | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50252 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_ipip: Fix memory leak when changing | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50255 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci: fix null-ptr-deref in hci_read_suppo | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50256 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_reject_ipv6: fix potential crash in nf | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50258 | linux-libc-dev | MEDIUM | kernel: net: fix crash when config small gso_max_size/gso_ip | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-50259 | linux-libc-dev | MEDIUM | kernel: netdevsim: Add trailing zero to terminate the string | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50265 | linux-libc-dev | MEDIUM | kernel: ocfs2: remove entry once instead of null-ptr-derefer | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50271 | linux-libc-dev | MEDIUM | kernel: signal: restore the override_rlimit logic | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50272 | linux-libc-dev | MEDIUM | kernel: filemap: Fix bounds checking in filemap_read() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50273 | linux-libc-dev | MEDIUM | kernel: btrfs: reinitialize delayed ref list after deleting | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50284 | linux-libc-dev | MEDIUM | kernel: ksmbd: Fix the missing xa_store error check | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50285 | linux-libc-dev | MEDIUM | kernel: ksmbd: check outstanding simultaneous SMB operations | 6.1.38-4 | no fix | dagster |
| CVE-2024-50287 | linux-libc-dev | MEDIUM | kernel: media: v4l2-tpg: prevent the risk of a division by z | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50289 | linux-libc-dev | MEDIUM | kernel: media: av7110: fix a spectre vulnerability | 6.1.38-4 | no fix | dagster |
| CVE-2024-50290 | linux-libc-dev | MEDIUM | kernel: media: cx24116: prevent overflows on SNR calculus | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50292 | linux-libc-dev | MEDIUM | kernel: ASoC: stm32: spdifrx: fix dma channel release in stm | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50295 | linux-libc-dev | MEDIUM | kernel: net: arc: fix the device for dma_map_single/dma_unma | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50296 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix kernel crash when uninstalling driver | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50298 | linux-libc-dev | MEDIUM | kernel: net: enetc: allocate vf_state during PF probes | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2024-50299 | linux-libc-dev | MEDIUM | kernel: sctp: properly validate chunk size in sctp_sf_ootb() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50302 | linux-libc-dev | MEDIUM | kernel: HID: core: zero-initialize the report buffer | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-50304 | linux-libc-dev | MEDIUM | kernel: ipv4: ip_tunnel: Fix suspicious RCU usage warning in | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-50602 | libexpat1 | MEDIUM | libexpat: expat: DoS via XML_ResumeParser | 2.5.0-1 | 2.5.0-1+deb12u2 | dagster |
| CVE-2024-52304 | aiohttp | MEDIUM | aiohttp: aiohttp vulnerable to request smuggling due to inco | 3.8.5 | 3.10.11 | dagster |
| CVE-2024-52559 | linux-libc-dev | MEDIUM | kernel: drm/msm/gem: prevent integer overflow in msm_ioctl_g | 6.1.38-4 | no fix | dagster |
| CVE-2024-52560 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Mark inode as bad as soon as error detecte | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-53042 | linux-libc-dev | MEDIUM | kernel: ipv4: ip_tunnel: Fix suspicious RCU usage warning in | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53043 | linux-libc-dev | MEDIUM | kernel: mctp i2c: handle NULL header address | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53051 | linux-libc-dev | MEDIUM | kernel: drm/i915/hdcp: Add encoder check in intel_hdcp_get_c | 6.1.38-4 | no fix | dagster |
| CVE-2024-53052 | linux-libc-dev | MEDIUM | kernel: io_uring/rw: fix missing NOWAIT check for O_DIRECT s | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53055 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: fix 6 GHz scan construction | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53056 | linux-libc-dev | MEDIUM | kernel: drm/mediatek: Fix potential NULL dereference in mtk_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-53058 | linux-libc-dev | MEDIUM | kernel: net: stmmac: TSO: Fix unbalanced DMA map/unmap for n | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53060 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: prevent NULL pointer dereference if ATIF | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53063 | linux-libc-dev | MEDIUM | kernel: media: dvbdev: prevent the risk of out of memory acc | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53066 | linux-libc-dev | MEDIUM | kernel: nfs: Fix KMSAN warning in decode_getfattr_attrs() | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53070 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: fix fault at system suspend if device was | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53072 | linux-libc-dev | MEDIUM | kernel: platform/x86/amd/pmc: Detect when STB is not availab | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53079 | linux-libc-dev | MEDIUM | kernel: mm/thp: fix deferred split unqueue naming and lockin | 6.1.38-4 | no fix | dagster |
| CVE-2024-53081 | linux-libc-dev | MEDIUM | kernel: media: ar0521: don't overflow when checking PLL valu | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53085 | linux-libc-dev | MEDIUM | kernel: tpm: Lock TPM chip in tpm_pm_suspend() first | 6.1.38-4 | no fix | dagster |
| CVE-2024-53088 | linux-libc-dev | MEDIUM | kernel: i40e: fix race condition by adding filter's intermed | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53089 | linux-libc-dev | MEDIUM | kernel: LoongArch: KVM: Mark hrtimer to expire in hard inter | 6.1.38-4 | no fix | dagster |
| CVE-2024-53090 | linux-libc-dev | MEDIUM | kernel: afs: Fix lock recursion | 6.1.38-4 | no fix | dagster |
| CVE-2024-53091 | linux-libc-dev | MEDIUM | kernel: bpf: Add sk_is_inet and IS_ICSK check in tls_sw_has_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-53093 | linux-libc-dev | MEDIUM | kernel: nvme-multipath: defer partition scanning | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53094 | linux-libc-dev | MEDIUM | kernel: RDMA/siw: Add sendpage_ok() check to disable MSG_SPL | 6.1.38-4 | no fix | dagster |
| CVE-2024-53095 | linux-libc-dev | MEDIUM | kernel: smb: client: Fix use-after-free of network namespace | 6.1.38-4 | no fix | dagster |
| CVE-2024-53097 | linux-libc-dev | MEDIUM | kernel: mm: krealloc: Fix MTE false alarm in __do_krealloc | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53100 | linux-libc-dev | MEDIUM | kernel: nvme: tcp: avoid race between queue_lock lock and de | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53101 | linux-libc-dev | MEDIUM | kernel: fs: Fix uninitialized value issue in from_kuid and f | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53105 | linux-libc-dev | MEDIUM | kernel: mm: page_alloc: move mlocked flag clearance into fre | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53110 | linux-libc-dev | MEDIUM | kernel: vp_vdpa: fix id_table array not null terminated erro | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53112 | linux-libc-dev | MEDIUM | kernel: ocfs2: uncache inode which has failed entering the g | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53113 | linux-libc-dev | MEDIUM | kernel: mm: fix NULL pointer dereference in alloc_pages_bulk | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53114 | linux-libc-dev | MEDIUM | kernel: x86/CPU/AMD: Clear virtualized VMLOAD/VMSAVE on Zen4 | 6.1.38-4 | no fix | dagster |
| CVE-2024-53119 | linux-libc-dev | MEDIUM | kernel: virtio/vsock: Fix accept_queue memory leak | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53120 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: CT: Fix null-ptr-deref in add rule err fl | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53121 | linux-libc-dev | MEDIUM | kernel: net/mlx5: fs, lock FTE when checking if active | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53122 | linux-libc-dev | MEDIUM | kernel: mptcp: cope racing subflow creation in mptcp_rcv_spa | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53123 | linux-libc-dev | MEDIUM | kernel: mptcp: error out earlier on disconnect | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53124 | linux-libc-dev | MEDIUM | kernel: net: fix data-races around sk->sk_forward_alloc | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-53125 | linux-libc-dev | MEDIUM | kernel: bpf: sync_linked_regs() must preserve subreg_def | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53127 | linux-libc-dev | MEDIUM | kernel: Revert "mmc: dw_mmc: Fix IDMAC operation with pages | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53128 | linux-libc-dev | MEDIUM | kernel: sched/task_stack: fix object_is_on_stack() for KASAN | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-53129 | linux-libc-dev | MEDIUM | kernel: drm/rockchip: vop: Fix a dereferenced before check w | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53130 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix null-ptr-deref in block_dirty_buffer tra | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53131 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix null-ptr-deref in block_touch_buffer tra | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53134 | linux-libc-dev | MEDIUM | kernel: pmdomain: imx93-blk-ctrl: correct remove path | 6.1.38-4 | no fix | dagster |
| CVE-2024-53135 | linux-libc-dev | MEDIUM | kernel: KVM: VMX: Bury Intel PT virtualization (guest/host m | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53136 | linux-libc-dev | MEDIUM | kernel: mm: revert "mm: shmem: fix data-race in shmem_getatt | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53138 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: kTLS, Fix incorrect page refcounting | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53140 | linux-libc-dev | MEDIUM | kernel: netlink: terminate outstanding dump on socket close | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-53144 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_event: Align BR/EDR JUST_WORKS paring | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-53145 | linux-libc-dev | MEDIUM | kernel: um: Fix potential integer overflow during physmem se | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53146 | linux-libc-dev | MEDIUM | kernel: NFSD: Prevent a potential integer overflow | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53148 | linux-libc-dev | MEDIUM | kernel: comedi: Flush partial mappings in error case | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53151 | linux-libc-dev | MEDIUM | kernel: svcrdma: Address an integer overflow | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53154 | linux-libc-dev | MEDIUM | kernel: clk: clk-apple-nco: Add NULL check in applnco_probe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53157 | linux-libc-dev | MEDIUM | kernel: firmware: arm_scpi: Check the DVFS OPP count returne | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53158 | linux-libc-dev | MEDIUM | kernel: soc: qcom: geni-se: fix array underflow in geni_se_c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53161 | linux-libc-dev | MEDIUM | kernel: EDAC/bluefield: Fix potential integer overflow | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53164 | linux-libc-dev | MEDIUM | kernel: net: sched: fix ordering of qlen adjustment | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53172 | linux-libc-dev | MEDIUM | kernel: ubi: fastmap: Fix duplicate slab cache names while a | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53175 | linux-libc-dev | MEDIUM | kernel: ipc: fix memleak if msg_init_ns failed in create_ipc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53176 | linux-libc-dev | MEDIUM | kernel: smb: During unmount, ensure all cached dir instances | 6.1.38-4 | no fix | dagster |
| CVE-2024-53178 | linux-libc-dev | MEDIUM | kernel: smb: Don't leak cfid when reconnect races with open_ | 6.1.38-4 | no fix | dagster |
| CVE-2024-53180 | linux-libc-dev | MEDIUM | kernel: ALSA: pcm: Add sanity NULL check for the default mma | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53181 | linux-libc-dev | MEDIUM | kernel: um: vector: Do not use drvdata in release | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53183 | linux-libc-dev | MEDIUM | kernel: um: net: Do not use drvdata in release | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53184 | linux-libc-dev | MEDIUM | kernel: um: ubd: Do not use drvdata in release | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53187 | linux-libc-dev | MEDIUM | kernel: io_uring: check for overflows in io_pin_pages | 6.1.38-4 | no fix | dagster |
| CVE-2024-53190 | linux-libc-dev | MEDIUM | kernel: wifi: rtlwifi: Drastically reduce the attempts to re | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53194 | linux-libc-dev | MEDIUM | kernel: PCI: Fix use-after-free of slot->bus on hot remove | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53195 | linux-libc-dev | MEDIUM | kernel: KVM: arm64: Get rid of userspace_irqchip_in_use | 6.1.38-4 | no fix | dagster |
| CVE-2024-53196 | linux-libc-dev | MEDIUM | kernel: KVM: arm64: Don't retire aborted MMIO instruction | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53197 | linux-libc-dev | MEDIUM | kernel: ALSA: usb-audio: Fix potential out-of-bound accesses | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53198 | linux-libc-dev | MEDIUM | kernel: xen: Fix the issue of resource not being properly re | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53207 | linux-libc-dev | MEDIUM | kernel: Bluetooth: MGMT: Fix possible deadlocks | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53209 | linux-libc-dev | MEDIUM | kernel: bnxt_en: Fix receive ring space parameters when XDP | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2024-53210 | linux-libc-dev | MEDIUM | kernel: s390/iucv: MSG_PEEK causes memory leak in iucv_sock_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53215 | linux-libc-dev | MEDIUM | kernel: svcrdma: fix miss destroy percpu_counter in svc_rdma | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53217 | linux-libc-dev | MEDIUM | kernel: NFSD: Prevent NULL dereference in nfsd4_process_cb_u | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53219 | linux-libc-dev | MEDIUM | kernel: virtiofs: use pages instead of pointer for kernel di | 6.1.38-4 | no fix | dagster |
| CVE-2024-53220 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to account dirty data in __get_secs_requir | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53221 | linux-libc-dev | MEDIUM | kernel: f2fs: fix null-ptr-deref in f2fs_submit_page_bio() | 6.1.38-4 | no fix | dagster |
| CVE-2024-53224 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Move events notifier registration to be a | 6.1.38-4 | no fix | dagster |
| CVE-2024-53226 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Fix NULL pointer derefernce in hns_roce_ma | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53229 | linux-libc-dev | MEDIUM | kernel: RDMA/rxe: Fix the qp flush warnings in req | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-53230 | linux-libc-dev | MEDIUM | kernel: cpufreq: CPPC: Fix possible null-ptr-deref for cppc_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53231 | linux-libc-dev | MEDIUM | kernel: cpufreq: CPPC: Fix possible null-ptr-deref for cpufr | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53233 | linux-libc-dev | MEDIUM | kernel: unicode: Fix utf8_load() error path | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53234 | linux-libc-dev | MEDIUM | kernel: erofs: handle NONHEAD !delta[1] lclusters gracefully | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-53240 | linux-libc-dev | MEDIUM | kernel: xen: netfront: Backend can crash Linux netfront (Xen | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53241 | linux-libc-dev | MEDIUM | kernel: xen: Xen hypercall page unsafe against speculative a | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53680 | linux-libc-dev | MEDIUM | kernel: ipvs: fix UB due to uninitialized stack access in ip | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-53685 | linux-libc-dev | MEDIUM | kernel: ceph: give up on paths longer than PATH_MAX | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-53687 | linux-libc-dev | MEDIUM | kernel: riscv: Fix IPIs usage in kfence_protect_page() | 6.1.38-4 | no fix | dagster |
| CVE-2024-53690 | linux-libc-dev | MEDIUM | kernel: nilfs2: prevent use of deleted inode | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-54031 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_set_hash: unaligned atomic read on st | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-54458 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: bsg: Set bsg_queue to NULL after removal | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-54683 | linux-libc-dev | MEDIUM | kernel: netfilter: IDLETIMER: Fix for possible ABBA deadlock | 6.1.38-4 | no fix | dagster |
| CVE-2024-55881 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Play nice with protected guests in complet | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-55916 | linux-libc-dev | MEDIUM | kernel: Drivers: hv: util: Avoid accessing a ringbuffer not | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56201 | Jinja2 | MEDIUM | jinja2: Jinja has a sandbox breakout through malicious filen | 3.1.3 | 3.1.5 | dagster |
| CVE-2024-56326 | Jinja2 | MEDIUM | jinja2: Jinja has a sandbox breakout through indirect refere | 3.1.3 | 3.1.5 | dagster |
| CVE-2024-56369 | linux-libc-dev | MEDIUM | kernel: drm/modes: Avoid divide by zero harder in drm_mode_v | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56531 | linux-libc-dev | MEDIUM | kernel: ALSA: caiaq: Use snd_card_free_when_closed() at disc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56532 | linux-libc-dev | MEDIUM | kernel: ALSA: us122l: Use snd_card_free_when_closed() at dis | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56533 | linux-libc-dev | MEDIUM | kernel: ALSA: usx2y: Use snd_card_free_when_closed() at disc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56539 | linux-libc-dev | MEDIUM | kernel: wifi: mwifiex: Fix memcpy() field-spanning write war | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56544 | linux-libc-dev | MEDIUM | kernel: udmabuf: change folios array from kmalloc to kvmallo | 6.1.38-4 | no fix | dagster |
| CVE-2024-56546 | linux-libc-dev | MEDIUM | kernel: drivers: soc: xilinx: add the missing kfree in xlnx_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56549 | linux-libc-dev | MEDIUM | kernel: cachefiles: Fix NULL pointer dereference in object-> | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-56557 | linux-libc-dev | MEDIUM | kernel: iio: adc: ad7923: Fix buffer overflow for tx_buf and | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56562 | linux-libc-dev | MEDIUM | kernel: i3c: master: Fix miss free init_dyn_addr at i3c_mast | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56565 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to drop all discards after creating snapsh | 6.1.38-4 | no fix | dagster |
| CVE-2024-56566 | linux-libc-dev | MEDIUM | kernel: mm/slub: Avoid list corruption when removing a slab | 6.1.38-4 | no fix | dagster |
| CVE-2024-56567 | linux-libc-dev | MEDIUM | kernel: ad7780: fix division by zero in ad7780_write_raw() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56568 | linux-libc-dev | MEDIUM | kernel: iommu/arm-smmu: Defer probe of clients after smmu de | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56569 | linux-libc-dev | MEDIUM | kernel: ftrace: Fix regression with module command in stack_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56572 | linux-libc-dev | MEDIUM | kernel: media: platform: allegro-dvt: Fix possible memory le | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56574 | linux-libc-dev | MEDIUM | kernel: media: ts2020: fix null-ptr-deref in ts2020_probe() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56575 | linux-libc-dev | MEDIUM | kernel: media: imx-jpeg: Ensure power suppliers be suspended | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56576 | linux-libc-dev | MEDIUM | kernel: media: i2c: tc358743: Fix crash in the probe error p | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56578 | linux-libc-dev | MEDIUM | kernel: media: imx-jpeg: Set video drvdata before register v | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56579 | linux-libc-dev | MEDIUM | kernel: media: amphion: Set video drvdata before register vi | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56583 | linux-libc-dev | MEDIUM | kernel: sched/deadline: Fix warning in migrate_enable for bo | 6.1.38-4 | no fix | dagster |
| CVE-2024-56584 | linux-libc-dev | MEDIUM | kernel: io_uring/tctx: work around xa_store() allocation err | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56585 | linux-libc-dev | MEDIUM | kernel: LoongArch: Fix sleeping in atomic context for PREEMP | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56586 | linux-libc-dev | MEDIUM | kernel: f2fs: fix f2fs_bug_on when uninstalling filesystem c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56587 | linux-libc-dev | MEDIUM | kernel: leds: class: Protect brightness_show() with led_cdev | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56588 | linux-libc-dev | MEDIUM | kernel: scsi: hisi_sas: Create all dump files during debugfs | 6.1.38-4 | no fix | dagster |
| CVE-2024-56589 | linux-libc-dev | MEDIUM | kernel: scsi: hisi_sas: Add cond_resched() for no forced pre | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56590 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_core: Fix not checking skb length on | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56591 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_conn: Use disable_delayed_work_sync | 6.1.38-4 | no fix | dagster |
| CVE-2024-56592 | linux-libc-dev | MEDIUM | kernel: bpf: Call free_htab_elem() after htab_unlock_bucket( | 6.1.38-4 | no fix | dagster |
| CVE-2024-56593 | linux-libc-dev | MEDIUM | kernel: wifi: brcmfmac: Fix oops due to NULL pointer derefer | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56594 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: set the right AMDGPU sg segment limitati | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56599 | linux-libc-dev | MEDIUM | kernel: wifi: ath10k: avoid NULL pointer error during sdio r | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-56610 | linux-libc-dev | MEDIUM | kernel: kcsan: Turn report_filterlist_lock into a raw_spinlo | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56611 | linux-libc-dev | MEDIUM | kernel: mm/mempolicy: fix migrate_to_node() assuming there i | 6.1.38-4 | no fix | dagster |
| CVE-2024-56622 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: core: sysfs: Prevent div by zero | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56623 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Fix use after free on unload | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56625 | linux-libc-dev | MEDIUM | kernel: can: dev: can_set_termination(): allow sleeping GPIO | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56629 | linux-libc-dev | MEDIUM | kernel: HID: wacom: fix when get product name maybe null poi | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56630 | linux-libc-dev | MEDIUM | kernel: ocfs2: free inode when ocfs2_get_init_inode() fails | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56634 | linux-libc-dev | MEDIUM | kernel: gpio: grgpio: Add NULL check in grgpio_probe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56636 | linux-libc-dev | MEDIUM | kernel: geneve: do not assume mac header is set in geneve_xm | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56637 | linux-libc-dev | MEDIUM | kernel: netfilter: ipset: Hold module reference while reques | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56641 | linux-libc-dev | MEDIUM | kernel: net/smc: initialize close_work early to avoid warnin | 6.1.38-4 | no fix | dagster |
| CVE-2024-56643 | linux-libc-dev | MEDIUM | kernel: dccp: Fix memory leak in dccp_feat_change_recv | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56644 | linux-libc-dev | MEDIUM | kernel: net/ipv6: release expired exception dst cached in so | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56645 | linux-libc-dev | MEDIUM | kernel: can: j1939: j1939_session_new(): fix skb reference c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56647 | linux-libc-dev | MEDIUM | kernel: net: Fix icmp host relookup triggering ip_rt_bug | 6.1.38-4 | no fix | dagster |
| CVE-2024-56648 | linux-libc-dev | MEDIUM | kernel: net: hsr: avoid potential out-of-bound access in fil | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56657 | linux-libc-dev | MEDIUM | kernel: ALSA: control: Avoid WARN() for symlink errors | 6.1.38-4 | no fix | dagster |
| CVE-2024-56659 | linux-libc-dev | MEDIUM | kernel: net: lapb: increase LAPB_HEADER_LEN | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56660 | linux-libc-dev | MEDIUM | kernel: net/mlx5: DR, prevent potential error pointer derefe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56661 | linux-libc-dev | MEDIUM | kernel: tipc: fix NULL deref in cleanup_bearer() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56662 | linux-libc-dev | MEDIUM | kernel: acpi: nfit: vmalloc-out-of-bounds Read in acpi_nfit_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56665 | linux-libc-dev | MEDIUM | kernel: bpf,perf: Fix invalid prog_array access in perf_even | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56670 | linux-libc-dev | MEDIUM | kernel: usb: gadget: u_serial: Fix the issue that gs_start_i | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56677 | linux-libc-dev | MEDIUM | kernel: powerpc/fadump: Move fadump_cma_init to setup_arch() | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56678 | linux-libc-dev | MEDIUM | kernel: powerpc/mm/fault: Fix kfence page fault reporting | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56679 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56681 | linux-libc-dev | MEDIUM | kernel: crypto: bcm - add error check in the ahash_hmac_init | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56683 | linux-libc-dev | MEDIUM | kernel: drm/vc4: hdmi: Avoid hang with debug registers when | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56687 | linux-libc-dev | MEDIUM | kernel: usb: musb: Fix hardware lockup on first Rx endpoint | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56688 | linux-libc-dev | MEDIUM | kernel: sunrpc: clear XPRT_SOCK_UPD_TIMEOUT when reset trans | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56690 | linux-libc-dev | MEDIUM | kernel: crypto: pcrypt - Call crypto layer directly when pad | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56691 | linux-libc-dev | MEDIUM | kernel: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for USB Ty | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56692 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on node blkaddr in trun | 6.1.38-4 | no fix | dagster |
| CVE-2024-56693 | linux-libc-dev | MEDIUM | kernel: brd: defer automatic disk creation until module init | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56694 | linux-libc-dev | MEDIUM | kernel: bpf: fix recursive lock when verdict program return | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56698 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: gadget: Fix looping of queued SG entries | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56700 | linux-libc-dev | MEDIUM | kernel: media: wl128x: Fix atomicity violation in fmc_send_c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56701 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries: Fix dtl_access_lock to be a rw_sema | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56703 | linux-libc-dev | MEDIUM | kernel: ipv6: Fix soft lockups in fib6_select_path under hig | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-56705 | linux-libc-dev | MEDIUM | kernel: media: atomisp: Add check for rgby_data memory alloc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56707 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56709 | linux-libc-dev | MEDIUM | kernel: io_uring: check if iowq is killed before queuing | 6.1.38-4 | 6.1.123-1 | dagster, slack-rqd-api |
| CVE-2024-56712 | linux-libc-dev | MEDIUM | kernel: udmabuf: fix memory leak on last export_udmabuf() er | 6.1.38-4 | no fix | dagster |
| CVE-2024-56715 | linux-libc-dev | MEDIUM | kernel: ionic: Fix netdev notifier unregister on failure | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56716 | linux-libc-dev | MEDIUM | kernel: netdevsim: prevent bad user input in nsim_dev_health | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56717 | linux-libc-dev | MEDIUM | kernel: net: mscc: ocelot: fix incorrect IFH SRC_PORT field | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56718 | linux-libc-dev | MEDIUM | kernel: net/smc: protect link down work from execute after l | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56719 | linux-libc-dev | MEDIUM | kernel: net: stmmac: fix TSO DMA API usage causing oops | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2024-56720 | linux-libc-dev | MEDIUM | kernel: bpf, sockmap: Several fixes to bpf_msg_pop_data | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56722 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Fix cpu stuck caused by printings during r | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56723 | linux-libc-dev | MEDIUM | kernel: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for PMIC d | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56724 | linux-libc-dev | MEDIUM | kernel: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for TMU de | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56725 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56726 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: handle otx2_mbox_get_rsp errors in cn1 | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56727 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56728 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56729 | linux-libc-dev | MEDIUM | kernel: smb: Initialize cfid->tcon before performing network | 6.1.38-4 | no fix | dagster |
| CVE-2024-56739 | linux-libc-dev | MEDIUM | kernel: rtc: check if __rtc_read_time was successful in rtc_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56742 | linux-libc-dev | MEDIUM | kernel: vfio/mlx5: Fix an unwind issue in mlx5vf_add_migrati | 6.1.38-4 | no fix | dagster |
| CVE-2024-56745 | linux-libc-dev | MEDIUM | kernel: PCI: Fix reset_method_store() memory leak | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56746 | linux-libc-dev | MEDIUM | kernel: fbdev: sh7760fb: Fix a possible memory leak in sh776 | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56747 | linux-libc-dev | MEDIUM | kernel: scsi: qedi: Fix a possible memory leak in qedi_alloc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56748 | linux-libc-dev | MEDIUM | kernel: scsi: qedf: Fix a possible memory leak in qedf_alloc | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56751 | linux-libc-dev | MEDIUM | kernel: ipv6: release nexthop on device removal | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56754 | linux-libc-dev | MEDIUM | kernel: crypto: caam - Fix the pointer passed to caam_qi_shu | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56755 | linux-libc-dev | MEDIUM | kernel: netfs/fscache: Add a memory barrier for FSCACHE_VOLU | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56756 | linux-libc-dev | MEDIUM | kernel: nvme-pci: fix freeing of the HMB descriptor table | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56758 | linux-libc-dev | MEDIUM | kernel: btrfs: check folio mapping after unlock in relocate_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2024-56763 | linux-libc-dev | MEDIUM | kernel: tracing: Prevent bad count for tracing_cpumask_write | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56767 | linux-libc-dev | MEDIUM | kernel: dmaengine: at_xdmac: avoid null_prt_deref in at_xdma | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56769 | linux-libc-dev | MEDIUM | kernel: media: dvb-frontends: dib3000mb: fix uninit-value in | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56770 | linux-libc-dev | MEDIUM | kernel: net/sched: netem: account for backlog updates from c | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56774 | linux-libc-dev | MEDIUM | kernel: btrfs: add a sanity check for btrfs root in btrfs_se | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56776 | linux-libc-dev | MEDIUM | kernel: drm/sti: avoid potential dereference of error pointe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56777 | linux-libc-dev | MEDIUM | kernel: drm/sti: avoid potential dereference of error pointe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56778 | linux-libc-dev | MEDIUM | kernel: drm/sti: avoid potential dereference of error pointe | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56779 | linux-libc-dev | MEDIUM | kernel: nfsd: fix nfs4_openowner leak when concurrent nfsd4_ | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56780 | linux-libc-dev | MEDIUM | kernel: quota: flush quota_release_work upon quota writeback | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56783 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_socket: remove WARN_ON_ONCE on maximu | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56785 | linux-libc-dev | MEDIUM | kernel: MIPS: Loongson64: DTS: Really fix PCIe port nodes fo | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-56787 | linux-libc-dev | MEDIUM | kernel: soc: imx8m: Probe the SoC driver as platform driver | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57795 | linux-libc-dev | MEDIUM | kernel: RDMA/rxe: Remove the direct link to net_device | 6.1.38-4 | no fix | dagster |
| CVE-2024-57802 | linux-libc-dev | MEDIUM | kernel: netrom: check buffer length before accessing it | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57804 | linux-libc-dev | MEDIUM | kernel: scsi: mpi3mr: Fix corrupt config pages PHY state is | 6.1.38-4 | no fix | dagster |
| CVE-2024-57807 | linux-libc-dev | MEDIUM | kernel: scsi: megaraid_sas: Fix for a potential deadlock | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57809 | linux-libc-dev | MEDIUM | kernel: PCI: imx6: Fix suspend/resume support on i.MX6QDL | 6.1.38-4 | no fix | dagster |
| CVE-2024-57834 | linux-libc-dev | MEDIUM | kernel: media: vidtv: Fix a null-ptr-deref in vidtv_mux_stop | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57841 | linux-libc-dev | MEDIUM | kernel: net: fix memory leak in tcp_conn_request() | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57857 | linux-libc-dev | MEDIUM | kernel: RDMA/siw: Remove direct link to net_device | 6.1.38-4 | no fix | dagster |
| CVE-2024-57872 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: pltfrm: Dellocate HBA during ufshcd_pltfr | 6.1.38-4 | no fix | dagster |
| CVE-2024-57874 | linux-libc-dev | MEDIUM | kernel: arm64: ptrace: fix partial SETREGSET for NT_ARM_TAGG | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57882 | linux-libc-dev | MEDIUM | kernel: mptcp: fix TCP options overflow. | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57883 | linux-libc-dev | MEDIUM | kernel: mm: hugetlb: independent PMD page table shared count | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2024-57884 | linux-libc-dev | MEDIUM | kernel: mm: vmscan: account for free pages to prevent infini | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57888 | linux-libc-dev | MEDIUM | kernel: workqueue: Do not warn when cancelling WQ_MEM_RECLAI | 6.1.38-4 | no fix | dagster |
| CVE-2024-57889 | linux-libc-dev | MEDIUM | kernel: pinctrl: mcp23s08: Fix sleeping in atomic context du | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57890 | linux-libc-dev | MEDIUM | kernel: RDMA/uverbs: Prevent integer overflow issue | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57893 | linux-libc-dev | MEDIUM | kernel: ALSA: seq: oss: Fix races at processing SysEx messag | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57895 | linux-libc-dev | MEDIUM | kernel: ksmbd: set ATTR_CTIME flags when setting mtime | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2024-57897 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: Correct the migration DMA map direction | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57901 | linux-libc-dev | MEDIUM | kernel: af_packet: fix vlan_get_protocol_dgram() vs MSG_PEEK | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57902 | linux-libc-dev | MEDIUM | kernel: af_packet: fix vlan_get_tci() vs MSG_PEEK | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57903 | linux-libc-dev | MEDIUM | kernel: net: restrict SO_REUSEPORT to inet sockets | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57913 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_fs: Remove WARN_ON in functionfs_bind | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57916 | linux-libc-dev | MEDIUM | kernel: misc: microchip: pci1xxxx: Resolve kernel panic duri | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57922 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add check for granularity in dml ce | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57924 | linux-libc-dev | MEDIUM | kernel: fs: relax assertions on failure to encode file handl | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2024-57930 | linux-libc-dev | MEDIUM | kernel: tracing: Have process_string() also allow arrays | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57931 | linux-libc-dev | MEDIUM | kernel: selinux: ignore unknown extended permissions | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57938 | linux-libc-dev | MEDIUM | kernel: net/sctp: Prevent autoclose integer overflow in sctp | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2024-57939 | linux-libc-dev | MEDIUM | kernel: riscv: Fix sleeping in invalid context in die() | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57940 | linux-libc-dev | MEDIUM | kernel: exfat: fix the infinite loop in exfat_readdir() | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57946 | linux-libc-dev | MEDIUM | kernel: virtio-blk: don't keep queue frozen during system su | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2024-57947 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_set_pipapo: fix initial map fill | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-57948 | linux-libc-dev | MEDIUM | kernel: mac802154: check local interfaces before deleting sd | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57949 | linux-libc-dev | MEDIUM | kernel: irqchip/gic-v3-its: Don't enable interrupts in its_i | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2024-57973 | linux-libc-dev | MEDIUM | kernel: rdma/cxgb4: Prevent potential integer overflow on 32 | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57974 | linux-libc-dev | MEDIUM | kernel: udp: Deal with race between UDP socket address chang | 6.1.38-4 | no fix | dagster |
| CVE-2024-57975 | linux-libc-dev | MEDIUM | kernel: btrfs: do proper folio cleanup when run_delalloc_noc | 6.1.38-4 | no fix | dagster |
| CVE-2024-57976 | linux-libc-dev | MEDIUM | kernel: btrfs: do proper folio cleanup when cow_file_range() | 6.1.38-4 | no fix | dagster |
| CVE-2024-57977 | linux-libc-dev | MEDIUM | kernel: memcg: fix soft lockup in the OOM process | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-57978 | linux-libc-dev | MEDIUM | kernel: media: imx-jpeg: Fix potential error pointer derefer | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57979 | linux-libc-dev | MEDIUM | kernel: pps: Fix a use-after-free | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57981 | linux-libc-dev | MEDIUM | kernel: usb: xhci: Fix NULL pointer dereference on certain c | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57986 | linux-libc-dev | MEDIUM | kernel: HID: core: Fix assumption that Resolution Multiplier | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57993 | linux-libc-dev | MEDIUM | kernel: HID: hid-thrustmaster: Fix warning in thrustmaster_p | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57996 | linux-libc-dev | MEDIUM | kernel: net_sched: sch_sfq: don't allow 1 packet limit | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57997 | linux-libc-dev | MEDIUM | kernel: wifi: wcn36xx: fix channel survey memory allocation | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-57999 | linux-libc-dev | MEDIUM | kernel: powerpc/pseries/iommu: IOMMU incorrectly marks MMIO | 6.1.38-4 | no fix | dagster |
| CVE-2024-58001 | linux-libc-dev | MEDIUM | kernel: ocfs2: handle a symlink read error correctly | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58005 | linux-libc-dev | MEDIUM | kernel: tpm: Change to kvalloc() in eventlog/acpi.c | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-58006 | linux-libc-dev | MEDIUM | kernel: PCI: dwc: ep: Prevent changing BAR size/flags in pci | 6.1.38-4 | no fix | dagster |
| CVE-2024-58009 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: handle NULL sock pointer in l2cap_ | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58010 | linux-libc-dev | MEDIUM | kernel: binfmt_flat: Fix integer overflow bug on 32 bit syst | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58011 | linux-libc-dev | MEDIUM | kernel: platform/x86: int3472: Check for adev == NULL | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58012 | linux-libc-dev | MEDIUM | kernel: ASoC: SOF: Intel: hda-dai: Ensure DAI widget is vali | 6.1.38-4 | no fix | dagster |
| CVE-2024-58016 | linux-libc-dev | MEDIUM | kernel: safesetid: check size of policy writes | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58017 | linux-libc-dev | MEDIUM | kernel: printk: Fix signed integer overflow when defining LO | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58020 | linux-libc-dev | MEDIUM | kernel: HID: multitouch: Add NULL check in mt_input_configur | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58051 | linux-libc-dev | MEDIUM | kernel: ipmi: ipmb: Add check devm_kasprintf() returned valu | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58052 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix potential NULL pointer dereference i | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58053 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix handling of received connection abort | 6.1.38-4 | no fix | dagster |
| CVE-2024-58056 | linux-libc-dev | MEDIUM | kernel: remoteproc: core: Fix ida_free call while not alloca | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58058 | linux-libc-dev | MEDIUM | kernel: ubifs: skip dumping tnc tree when zroot is null | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58061 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: prohibit deactivating all links | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58063 | linux-libc-dev | MEDIUM | kernel: wifi: rtlwifi: fix memory leaks and invalid access a | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58068 | linux-libc-dev | MEDIUM | kernel: OPP: fix dev_pm_opp_find_bw_*() when bandwidth table | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58071 | linux-libc-dev | MEDIUM | kernel: team: prevent adding a device which is already a tea | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58074 | linux-libc-dev | MEDIUM | kernel: drm/i915: Grab intel_display from the encoder to avo | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2024-58076 | linux-libc-dev | MEDIUM | kernel: clk: qcom: gcc-sm6350: Add missing parent_map for tw | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58079 | linux-libc-dev | MEDIUM | kernel: media: uvcvideo: Fix crash during unbind if gpio uni | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-58080 | linux-libc-dev | MEDIUM | kernel: clk: qcom: dispcc-sm6350: Add missing parent_map for | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58083 | linux-libc-dev | MEDIUM | kernel: KVM: Explicitly verify target vCPU is online in kvm_ | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58085 | linux-libc-dev | MEDIUM | kernel: tomoyo: don't emit warning in tomoyo_write_control() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58086 | linux-libc-dev | MEDIUM | kernel: drm/v3d: Stop active perfmon if it is being destroye | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2024-58089 | linux-libc-dev | MEDIUM | kernel: btrfs: fix double accounting race when btrfs_run_del | 6.1.38-4 | no fix | dagster |
| CVE-2024-58090 | linux-libc-dev | MEDIUM | kernel: sched/core: Prevent rescheduling when interrupts are | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2024-58094 | linux-libc-dev | MEDIUM | kernel: jfs: add check read-only before truncation in jfs_tr | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-58095 | linux-libc-dev | MEDIUM | kernel: jfs: add check read-only before txBeginAnon() call | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-58096 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: add srng->lock for ath11k_hal_srng_* i | 6.1.38-4 | no fix | dagster |
| CVE-2024-58097 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: fix RCU stall while reaping monitor de | 6.1.38-4 | no fix | dagster |
| CVE-2024-58098 | linux-libc-dev | MEDIUM | kernel: bpf: track changes_pkt_data property for global func | 6.1.38-4 | no fix | dagster |
| CVE-2024-58100 | linux-libc-dev | MEDIUM | kernel: bpf: check changes_pkt_data property for extension p | 6.1.38-4 | no fix | dagster |
| CVE-2024-58237 | linux-libc-dev | MEDIUM | kernel: bpf: consider that tail calls invalidate packet poin | 6.1.38-4 | no fix | dagster |
| CVE-2024-58239 | linux-libc-dev | MEDIUM | kernel: tls: stop recv() if initial process_rx_list gave us | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-58241 | linux-libc-dev | MEDIUM | kernel: Kernel: Bluetooth HCI local DoS | 6.1.38-4 | no fix | dagster |
| CVE-2025-0395 | libc-bin | MEDIUM | glibc: buffer overflow in the GNU C Library's assert() | 2.36-9+deb12u1 | 2.36-9+deb12u10 | dagster |
| CVE-2025-0395 | libc-dev-bin | MEDIUM | glibc: buffer overflow in the GNU C Library's assert() | 2.36-9+deb12u1 | 2.36-9+deb12u10 | dagster |
| CVE-2025-0395 | libc6 | MEDIUM | glibc: buffer overflow in the GNU C Library's assert() | 2.36-9+deb12u1 | 2.36-9+deb12u10 | dagster |
| CVE-2025-0395 | libc6-dev | MEDIUM | glibc: buffer overflow in the GNU C Library's assert() | 2.36-9+deb12u1 | 2.36-9+deb12u10 | dagster |
| CVE-2025-0913 | stdlib | MEDIUM | Inconsistent handling of O_CREATE|O_EXCL on Unix and Windows | v1.22.4 | 1.23.10, 1.24.4 | dagster |
| CVE-2025-10148 | libcurl3-gnutls | MEDIUM | curl: predictable WebSocket mask | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-13151 | libtasn1-6 | MEDIUM | libtasn1: libtasn1: Denial of Service via stack-based buffer | 4.19.0-2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-1390 | libcap2 | MEDIUM | libcap: pam_cap: Fix potential configuration parsing error | 1:2.66-4 | 1:2.66-4+deb12u1 | dagster |
| CVE-2025-14524 | libcurl3-gnutls | MEDIUM | curl: Information disclosure via cross-protocol redirect wit | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-14819 | libcurl3-gnutls | MEDIUM | curl: libcurl: Improper certificate validation due to cached | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-14831 | libgnutls30 | MEDIUM | gnutls: GnuTLS: Denial of Service via excessive resource con | 3.7.9-2 | 3.7.9-2+deb12u6 | dagster |
| CVE-2025-15281 | libc-bin | MEDIUM | glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return un | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-15281 | libc-dev-bin | MEDIUM | glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return un | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2025-15281 | libc6 | MEDIUM | glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return un | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-15281 | libc6-dev | MEDIUM | glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return un | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2025-21629 | linux-libc-dev | MEDIUM | kernel: net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP | 6.1.38-4 | 6.1.124-1 | dagster |
| CVE-2025-21634 | linux-libc-dev | MEDIUM | kernel: cgroup/cpuset: remove kernfs active break | 6.1.38-4 | no fix | dagster |
| CVE-2025-21635 | linux-libc-dev | MEDIUM | kernel: rds: sysctl: rds_tcp_{rcv,snd}buf: avoid using curre | 6.1.38-4 | no fix | dagster |
| CVE-2025-21636 | linux-libc-dev | MEDIUM | kernel: sctp: sysctl: plpmtud_probe_interval: avoid using cu | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21637 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21638 | linux-libc-dev | MEDIUM | kernel: sctp: sysctl: auth_enable: avoid using current->nspr | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21639 | linux-libc-dev | MEDIUM | kernel: sctp: sysctl: rto_min/max: avoid using current->nspr | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21640 | linux-libc-dev | MEDIUM | kernel: sctp: sysctl: cookie_hmac_alg: avoid using current-> | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21645 | linux-libc-dev | MEDIUM | kernel: platform/x86/amd/pmc: Only disable IRQ1 wakeup where | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-21646 | linux-libc-dev | MEDIUM | kernel: afs: Fix the maximum cell name length | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21648 | linux-libc-dev | MEDIUM | kernel: netfilter: conntrack: clamp maximum hashtable size t | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21649 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix kernel crash when 1588 is sent on HIP | 6.1.38-4 | no fix | dagster |
| CVE-2025-21651 | linux-libc-dev | MEDIUM | kernel: net: hns3: don't auto enable misc vector | 6.1.38-4 | no fix | dagster |
| CVE-2025-21653 | linux-libc-dev | MEDIUM | kernel: net_sched: cls_flow: validate TCA_FLOW_RSHIFT attrib | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21655 | linux-libc-dev | MEDIUM | kernel: io_uring/eventfd: ensure io_eventfd_signal() defers | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21656 | linux-libc-dev | MEDIUM | kernel: hwmon: (drivetemp) Fix driver producing garbage data | 6.1.38-4 | no fix | dagster |
| CVE-2025-21658 | linux-libc-dev | MEDIUM | kernel: btrfs: avoid NULL pointer dereference if no valid ex | 6.1.38-4 | no fix | dagster |
| CVE-2025-21660 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix unexpectedly changed path in ksmbd_vfs_ke | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21662 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Fix variable not being completed when func | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21664 | linux-libc-dev | MEDIUM | kernel: dm thin: make get_first_thin use rcu-safe list first | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21665 | linux-libc-dev | MEDIUM | kernel: filemap: avoid truncating 64-bit offset to 32 bits | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21666 | linux-libc-dev | MEDIUM | kernel: vsock: prevent null-ptr-deref in vsock_*[has_data|ha | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21667 | linux-libc-dev | MEDIUM | kernel: iomap: avoid avoid truncating 64-bit offset to 32 bi | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21668 | linux-libc-dev | MEDIUM | kernel: pmdomain: imx8mp-blk-ctrl: add missing loop break co | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21669 | linux-libc-dev | MEDIUM | kernel: vsock/virtio: discard packets if the transport chang | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21673 | linux-libc-dev | MEDIUM | kernel: smb: client: fix double free of TCP_Server_Info::hos | 6.1.38-4 | no fix | dagster |
| CVE-2025-21675 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Clear port select structure when fail to c | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21676 | linux-libc-dev | MEDIUM | kernel: net: fec: handle page_pool_dev_alloc_pages error | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-21678 | linux-libc-dev | MEDIUM | kernel: gtp: Destroy device along with udp socket's netns di | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21681 | linux-libc-dev | MEDIUM | kernel: openvswitch: fix lockup on tx to unregistering netde | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21682 | linux-libc-dev | MEDIUM | kernel: eth: bnxt: always recalculate features after XDP cle | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-21683 | linux-libc-dev | MEDIUM | kernel: bpf: Fix bpf_sk_select_reuseport() memory leak | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21684 | linux-libc-dev | MEDIUM | kernel: gpio: xilinx: Convert gpio_lock to raw spinlock | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21688 | linux-libc-dev | MEDIUM | kernel: drm/v3d: Assign job pointer to NULL before signaling | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21689 | linux-libc-dev | MEDIUM | kernel: USB: serial: quatech2: fix null-ptr-deref in qt2_pro | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21690 | linux-libc-dev | MEDIUM | kernel: scsi: storvsc: Ratelimit warning logs to prevent VM | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21693 | linux-libc-dev | MEDIUM | kernel: mm: zswap: properly synchronize freeing resources du | 6.1.38-4 | no fix | dagster |
| CVE-2025-21694 | linux-libc-dev | MEDIUM | kernel: fs/proc: fix softlockup in __read_vmcore (part 2) | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21696 | linux-libc-dev | MEDIUM | kernel: mm: clear uffd-wp PTE/PMD state on mremap() | 6.1.38-4 | no fix | dagster |
| CVE-2025-21697 | linux-libc-dev | MEDIUM | kernel: drm/v3d: Ensure job pointer is set to NULL after job | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21699 | linux-libc-dev | MEDIUM | kernel: gfs2: Truncate address space when flipping GFS2_DIF_ | 6.1.38-4 | 6.1.128-1 | dagster |
| CVE-2025-21700 | linux-libc-dev | MEDIUM | kernel: net: sched: Disallow replacing of child qdisc from o | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21701 | linux-libc-dev | MEDIUM | kernel: net: avoid race between device unregistration and et | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21705 | linux-libc-dev | MEDIUM | kernel: mptcp: handle fastopen disconnect correctly | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21706 | linux-libc-dev | MEDIUM | kernel: mptcp: pm: only set fullmesh for subflow endp | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21707 | linux-libc-dev | MEDIUM | kernel: mptcp: consolidate suboption status | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21708 | linux-libc-dev | MEDIUM | kernel: net: usb: rtl8150: enable basic endpoint checking | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21709 | linux-libc-dev | MEDIUM | kernel: kernel: be more careful about dup_mmap() failures an | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-21711 | linux-libc-dev | MEDIUM | kernel: net/rose: prevent integer overflows in rose_setsocko | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21712 | linux-libc-dev | MEDIUM | kernel: md/md-bitmap: Synchronize bitmap_get_stats() with bi | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21714 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Fix implicit ODP use after free | 6.1.38-4 | no fix | dagster |
| CVE-2025-21716 | linux-libc-dev | MEDIUM | kernel: vxlan: Fix uninit-value in vxlan_vnifilter_dump() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21721 | linux-libc-dev | MEDIUM | kernel: nilfs2: handle errors that nilfs_prepare_chunk() may | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21722 | linux-libc-dev | MEDIUM | kernel: nilfs2: do not force clear folio if buffer is refere | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21723 | linux-libc-dev | MEDIUM | kernel: scsi: mpi3mr: Fix possible crash when setting up bsg | 6.1.38-4 | no fix | dagster |
| CVE-2025-21725 | linux-libc-dev | MEDIUM | kernel: smb: client: fix oops due to unset link speed | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21728 | linux-libc-dev | MEDIUM | kernel: bpf: Send signals asynchronously if !preemptible | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21729 | linux-libc-dev | MEDIUM | kernel: wifi: rtw89: fix race between cancel_hw_scan and hw_ | 6.1.38-4 | no fix | dagster |
| CVE-2025-21731 | linux-libc-dev | MEDIUM | kernel: nbd: don't allow reconnect after disconnect | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21732 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Fix a race for an ODP MR which leads to C | 6.1.38-4 | no fix | dagster |
| CVE-2025-21736 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix possible int overflows in nilfs_fiemap() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21738 | linux-libc-dev | MEDIUM | kernel: ata: libata-sff: Ensure that we cannot write outside | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21739 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: core: Fix use-after free in init error an | 6.1.38-4 | no fix | dagster |
| CVE-2025-21744 | linux-libc-dev | MEDIUM | kernel: wifi: brcmfmac: fix NULL pointer dereference in brcm | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21745 | linux-libc-dev | MEDIUM | kernel: blk-cgroup: Fix class @block_class's subsystem refco | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21748 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix integer overflows on 32 bit systems | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21749 | linux-libc-dev | MEDIUM | kernel: net: rose: lock the socket in rose_bind() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21750 | linux-libc-dev | MEDIUM | kernel: wifi: brcmfmac: Check the return value of of_propert | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21752 | linux-libc-dev | MEDIUM | kernel: btrfs: don't use btrfs_set_item_key_safe on RAID str | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-21758 | linux-libc-dev | MEDIUM | kernel: ipv6: mcast: add RCU protection to mld_newpack() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21759 | linux-libc-dev | MEDIUM | kernel: ipv6: mcast: extend RCU protection in igmp6_send() | 6.1.38-4 | no fix | dagster |
| CVE-2025-21760 | linux-libc-dev | MEDIUM | kernel: ndisc: extend RCU protection in ndisc_send_skb() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21763 | linux-libc-dev | MEDIUM | kernel: neighbour: use RCU protection in __neigh_notify() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21765 | linux-libc-dev | MEDIUM | kernel: ipv6: use RCU protection in ip6_default_advmss() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21766 | linux-libc-dev | MEDIUM | kernel: ipv4: use RCU protection in __ip_rt_update_pmtu() | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21767 | linux-libc-dev | MEDIUM | kernel: clocksource: Use migrate_disable() to avoid calling | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21768 | linux-libc-dev | MEDIUM | kernel: net: ipv6: fix dst ref loops in rpl, seg6 and ioam6 | 6.1.38-4 | no fix | dagster |
| CVE-2025-21775 | linux-libc-dev | MEDIUM | kernel: can: ctucanfd: handle skb allocation failure | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21776 | linux-libc-dev | MEDIUM | kernel: USB: hub: Ignore non-compliant devices with too many | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21779 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Reject Hyper-V's SEND_IPI hypercalls if lo | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21781 | linux-libc-dev | MEDIUM | kernel: batman-adv: fix panic during interface removal | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21787 | linux-libc-dev | MEDIUM | kernel: team: better TEAM_OPTION_TYPE_STRING validation | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21790 | linux-libc-dev | MEDIUM | kernel: vxlan: check vxlan_vnigroup_init() return value | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21792 | linux-libc-dev | MEDIUM | kernel: ax25: Fix refcount leak caused by setting SO_BINDTOD | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21795 | linux-libc-dev | MEDIUM | kernel: NFSD: fix hang in nfsd4_shutdown_callback | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21796 | linux-libc-dev | MEDIUM | kernel: nfsd: clear acl_access/acl_default after releasing t | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21799 | linux-libc-dev | MEDIUM | kernel: net: ethernet: ti: am65-cpsw: fix freeing IRQ in am6 | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21801 | linux-libc-dev | MEDIUM | kernel: net: ravb: Fix missing rtnl lock in suspend/resume p | 6.1.38-4 | no fix | dagster |
| CVE-2025-21802 | linux-libc-dev | MEDIUM | kernel: net: hns3: fix oops when unload drivers paralleling | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21804 | linux-libc-dev | MEDIUM | kernel: PCI: rcar-ep: Fix incorrect variable used when calli | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21806 | linux-libc-dev | MEDIUM | kernel: net: let net.core.dev_weight always be non-zero | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21807 | linux-libc-dev | MEDIUM | kernel: block: fix queue freeze vs limits lock order in sysf | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-21814 | linux-libc-dev | MEDIUM | kernel: ptp: Ensure info->enable callback is always set | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21816 | linux-libc-dev | MEDIUM | kernel: hrtimers: Force migrate away hrtimers queued after C | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-21819 | linux-libc-dev | MEDIUM | kernel: Revert "drm/amd/display: Use HW lock mgr for PSR1" | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21820 | linux-libc-dev | MEDIUM | kernel: tty: xilinx_uartps: split sysrq handling | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21821 | linux-libc-dev | MEDIUM | kernel: fbdev: omap: use threaded IRQ for LCD DMA | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21823 | linux-libc-dev | MEDIUM | kernel: batman-adv: Drop unmanaged ELP metric worker | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21825 | linux-libc-dev | MEDIUM | kernel: bpf: Cancel the running bpf_timer through kworker fo | 6.1.38-4 | no fix | dagster |
| CVE-2025-21826 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: reject mismatching sum of fiel | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21829 | linux-libc-dev | MEDIUM | kernel: RDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x170 | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21830 | linux-libc-dev | MEDIUM | kernel: landlock: Handle weird files | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21831 | linux-libc-dev | MEDIUM | kernel: PCI: Avoid putting some root ports into D3 on TUXEDO | 6.1.38-4 | no fix | dagster |
| CVE-2025-21832 | linux-libc-dev | MEDIUM | kernel: block: don't revert iter for -EIOCBQUEUED | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21835 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_midi: fix MIDI Streaming descriptor l | 6.1.38-4 | 6.1.129-1 | dagster |
| CVE-2025-21836 | linux-libc-dev | MEDIUM | kernel: io_uring/kbuf: re-using old struct io_buffer_list ma | 6.1.38-4 | no fix | dagster |
| CVE-2025-21838 | linux-libc-dev | MEDIUM | kernel: usb: gadget: core: flush gadget workqueue after devi | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21839 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Load DR6 with guest value only before ente | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-21844 | linux-libc-dev | MEDIUM | kernel: smb: client: Add check for next_buffer in receive_en | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21846 | linux-libc-dev | MEDIUM | kernel: acct: perform last write from workqueue | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21848 | linux-libc-dev | MEDIUM | kernel: nfp: bpf: Add check for nfp_app_ctrl_msg_alloc() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21853 | linux-libc-dev | MEDIUM | kernel: bpf: avoid holding freeze_mutex during mmap operatio | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-21859 | linux-libc-dev | MEDIUM | kernel: USB: gadget: f_midi: f_midi_complete to call queue_w | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21861 | linux-libc-dev | MEDIUM | kernel: mm/migrate_device: don't add folio to be freed to LR | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-21862 | linux-libc-dev | MEDIUM | kernel: drop_monitor: fix incorrect initialization order | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21864 | linux-libc-dev | MEDIUM | kernel: tcp: drop secpath at the same time as we currently d | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21865 | linux-libc-dev | MEDIUM | kernel: gtp: Suppress list corruption splat in gtp_net_exit_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21866 | linux-libc-dev | MEDIUM | kernel: powerpc/code-patching: Fix KASAN hit by not flagging | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21870 | linux-libc-dev | MEDIUM | kernel: ASoC: SOF: ipc4-topology: Harden loops for looking u | 6.1.38-4 | no fix | dagster |
| CVE-2025-21871 | linux-libc-dev | MEDIUM | kernel: tee: optee: Fix supplicant wait loop | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21872 | linux-libc-dev | MEDIUM | kernel: efi: Don't map the entire mokvar table to determine | 6.1.38-4 | no fix | dagster |
| CVE-2025-21875 | linux-libc-dev | MEDIUM | kernel: mptcp: always handle address removal under msk socke | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21877 | linux-libc-dev | MEDIUM | kernel: usbnet: gl620a: fix endpoint checking in genelink_bi | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21878 | linux-libc-dev | MEDIUM | kernel: i2c: npcm: disable interrupt enable bit before devm_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21881 | linux-libc-dev | MEDIUM | kernel: uprobes: Reject the shared zeropage in uprobe_write_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21885 | linux-libc-dev | MEDIUM | kernel: RDMA/bnxt_re: Fix the page details for the srq creat | 6.1.38-4 | no fix | dagster |
| CVE-2025-21888 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Fix a WARN during dereg_mr for DM type | 6.1.38-4 | no fix | dagster |
| CVE-2025-21891 | linux-libc-dev | MEDIUM | kernel: ipvlan: ensure network headers are in skb linear par | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21892 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Fix the recovery flow of the UMR QP | 6.1.38-4 | no fix | dagster |
| CVE-2025-21894 | linux-libc-dev | MEDIUM | kernel: net: enetc: VFs do not support HWTSTAMP_TX_ONESTEP_S | 6.1.38-4 | no fix | dagster |
| CVE-2025-21898 | linux-libc-dev | MEDIUM | kernel: ftrace: Avoid potential division by zero in function | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21899 | linux-libc-dev | MEDIUM | kernel: tracing: Fix bad hist from corrupting named_triggers | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21904 | linux-libc-dev | MEDIUM | kernel: caif_virtio: fix wrong pointer check in cfv_probe() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21907 | linux-libc-dev | MEDIUM | kernel: mm: memory-failure: update ttu flag inside unmap_poi | 6.1.38-4 | no fix | dagster |
| CVE-2025-21909 | linux-libc-dev | MEDIUM | kernel: wifi: nl80211: reject cooked mode if it is set along | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21910 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: regulatory: improve invalid hints ch | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21912 | linux-libc-dev | MEDIUM | kernel: gpio: rcar: Use raw_spinlock to protect register acc | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21913 | linux-libc-dev | MEDIUM | kernel: x86/amd_nb: Use rdmsr_safe() in amd_get_mmconfig_ran | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21916 | linux-libc-dev | MEDIUM | kernel: usb: atm: cxacru: fix a flaw in existing endpoint ch | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21917 | linux-libc-dev | MEDIUM | kernel: usb: renesas_usbhs: Flush the notify_hotplug_work | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21918 | linux-libc-dev | MEDIUM | kernel: usb: typec: ucsi: Fix NULL pointer access | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21922 | linux-libc-dev | MEDIUM | kernel: ppp: Fix KMSAN uninit-value warning with bpf | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21924 | linux-libc-dev | MEDIUM | kernel: net: hns3: make sure ptp clock is unregister and fre | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21925 | linux-libc-dev | MEDIUM | kernel: llc: do not use skb_get() before dev_queue_xmit() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21926 | linux-libc-dev | MEDIUM | kernel: net: gso: fix ownership in __udp_gso_segment | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21931 | linux-libc-dev | MEDIUM | kernel: hwpoison, memory_hotplug: lock folio before unmap hw | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-21935 | linux-libc-dev | MEDIUM | kernel: rapidio: add check for rio_add_net() in rio_scan_all | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21936 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Add check for mgmt_alloc_skb() in mgmt_de | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21937 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Add check for mgmt_alloc_skb() in mgmt_re | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21938 | linux-libc-dev | MEDIUM | kernel: mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21941 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Fix null check for pipe_ctx->plane_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21943 | linux-libc-dev | MEDIUM | kernel: gpio: aggregator: protect driver attr handlers again | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21944 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix bug on trap in smb2_lock | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21947 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix type confusion via race condition when us | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21948 | linux-libc-dev | MEDIUM | kernel: HID: appleir: Fix potential NULL dereference at raw | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21949 | linux-libc-dev | MEDIUM | kernel: LoongArch: Set hugetlb mmap base address aligned wit | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-21951 | linux-libc-dev | MEDIUM | kernel: bus: mhi: host: pci_generic: Use pci_try_reset_funct | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21955 | linux-libc-dev | MEDIUM | kernel: ksmbd: prevent connection release during oplock brea | 6.1.38-4 | no fix | dagster |
| CVE-2025-21956 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Assign normalized_pix_clk when colo | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21957 | linux-libc-dev | MEDIUM | kernel: scsi: qla1280: Fix kernel oops when debug level > 2 | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21959 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conncount: Fully initialize struct nf_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21960 | linux-libc-dev | MEDIUM | kernel: eth: bnxt: do not update checksum in bnxt_xdp_build_ | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21961 | linux-libc-dev | MEDIUM | kernel: eth: bnxt: fix truesize for mb-xdp-pass case | 6.1.38-4 | no fix | dagster |
| CVE-2025-21962 | linux-libc-dev | MEDIUM | kernel: cifs: Fix integer overflow while processing closetim | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21963 | linux-libc-dev | MEDIUM | kernel: cifs: Fix integer overflow while processing acdirmax | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21964 | linux-libc-dev | MEDIUM | kernel: cifs: Fix integer overflow while processing acregmax | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21970 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Bridge, fix the crash caused by LAG state | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21971 | linux-libc-dev | MEDIUM | kernel: net_sched: Prevent creation of classes with TC_H_ROO | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21972 | linux-libc-dev | MEDIUM | kernel: net: mctp: unshare packets when reassembling | 6.1.38-4 | no fix | dagster |
| CVE-2025-21975 | linux-libc-dev | MEDIUM | kernel: net/mlx5: handle errors in mlx5_chains_create_table( | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21976 | linux-libc-dev | MEDIUM | kernel: fbdev: hyperv_fb: Allow graceful removal of framebuf | 6.1.38-4 | no fix | dagster |
| CVE-2025-21978 | linux-libc-dev | MEDIUM | kernel: drm/hyperv: Fix address space leak when Hyper-V DRM | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21980 | linux-libc-dev | MEDIUM | kernel: sched: address a potential NULL pointer dereference | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21981 | linux-libc-dev | MEDIUM | kernel: ice: fix memory leak in aRFS after reset | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21986 | linux-libc-dev | MEDIUM | kernel: net: switchdev: Convert blocking notification chain | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21992 | linux-libc-dev | MEDIUM | kernel: HID: ignore non-functional sensor in HP 5MP Camera | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21994 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix incorrect validation for num_aces field o | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21996 | linux-libc-dev | MEDIUM | kernel: drm/radeon: fix uninitialized size issue in radeon_v | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21997 | linux-libc-dev | MEDIUM | kernel: xsk: fix an integer overflow in xp_create_and_assign | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-21999 | linux-libc-dev | MEDIUM | kernel: proc: fix UAF in proc_get_inode() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22005 | linux-libc-dev | MEDIUM | kernel: ipv6: Fix memleak of nhc_pcpu_rth_output in fib_chec | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22007 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Fix error code in chan_alloc_skb_cb() | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22008 | linux-libc-dev | MEDIUM | kernel: regulator: check that dummy regulator has been probe | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22010 | linux-libc-dev | MEDIUM | kernel: RDMA/hns: Fix soft lockup during bt pages loop | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22014 | linux-libc-dev | MEDIUM | kernel: soc: qcom: pdr: Fix the potential deadlock | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22015 | linux-libc-dev | MEDIUM | kernel: mm/migrate: fix shmem xarray update during migration | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22018 | linux-libc-dev | MEDIUM | kernel: atm: Fix NULL pointer dereference | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22021 | linux-libc-dev | MEDIUM | kernel: netfilter: socket: Lookup orig tuple for IPv6 SNAT | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-22025 | linux-libc-dev | MEDIUM | kernel: nfsd: put dl_stid if fail to queue dl_recall | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22026 | linux-libc-dev | MEDIUM | kernel: nfsd: don't ignore the return code of svc_proc_regis | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-22027 | linux-libc-dev | MEDIUM | kernel: media: streamzap: fix race between device disconnect | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22028 | linux-libc-dev | MEDIUM | kernel: media: vimc: skip .s_stream() for stopped entities | 6.1.38-4 | no fix | dagster |
| CVE-2025-22033 | linux-libc-dev | MEDIUM | kernel: arm64: Don't call NULL in do_compat_alignment_fixup( | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22035 | linux-libc-dev | MEDIUM | kernel: tracing: Fix use-after-free in print_graph_function_ | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22037 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix null pointer dereference in alloc_preauth | 6.1.38-4 | no fix | dagster |
| CVE-2025-22042 | linux-libc-dev | MEDIUM | kernel: ksmbd: add bounds check for create lease context | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22043 | linux-libc-dev | MEDIUM | kernel: ksmbd: add bounds check for durable handle context | 6.1.38-4 | no fix | dagster |
| CVE-2025-22044 | linux-libc-dev | MEDIUM | kernel: acpi: nfit: fix narrowing conversion in acpi_nfit_ct | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22045 | linux-libc-dev | MEDIUM | kernel: x86/mm: Fix flush_tlb_range() when used for zapping | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22048 | linux-libc-dev | MEDIUM | kernel: LoongArch: BPF: Don't override subprog's return valu | 6.1.38-4 | no fix | dagster |
| CVE-2025-22049 | linux-libc-dev | MEDIUM | kernel: LoongArch: Increase ARCH_DMA_MINALIGN up to 16 | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22050 | linux-libc-dev | MEDIUM | kernel: usbnet:fix NPE during rx_complete | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22053 | linux-libc-dev | MEDIUM | kernel: net: ibmveth: make veth_pool_store stop hanging | 6.1.38-4 | no fix | dagster |
| CVE-2025-22054 | linux-libc-dev | MEDIUM | kernel: arcnet: Add NULL check in com20020pci_probe() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22055 | linux-libc-dev | MEDIUM | kernel: net: fix geneve_opt length integer overflow | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22057 | linux-libc-dev | MEDIUM | kernel: net: decrease cached dst counters in dst_release | 6.1.38-4 | no fix | dagster |
| CVE-2025-22058 | linux-libc-dev | MEDIUM | kernel: udp: Fix memory accounting leak. | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22060 | linux-libc-dev | MEDIUM | kernel: net: mvpp2: Prevent parser TCAM memory corruption | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22062 | linux-libc-dev | MEDIUM | kernel: sctp: add mutual exclusion in proc_sctp_do_udp_port( | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-22063 | linux-libc-dev | MEDIUM | kernel: netlabel: Fix NULL pointer exception caused by CALIP | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22066 | linux-libc-dev | MEDIUM | kernel: ASoC: imx-card: Add NULL check in imx_card_probe() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22070 | linux-libc-dev | MEDIUM | kernel: fs/9p: fix NULL pointer dereference on mkdir | 6.1.38-4 | no fix | dagster |
| CVE-2025-22071 | linux-libc-dev | MEDIUM | kernel: spufs: fix a leak in spufs_create_context() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22072 | linux-libc-dev | MEDIUM | kernel: spufs: fix gang directory lifetimes | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22073 | linux-libc-dev | MEDIUM | kernel: spufs: fix a leak on spufs_new_file() failure | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22075 | linux-libc-dev | MEDIUM | kernel: rtnetlink: Allocate vfinfo size for VF GUIDs when su | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22081 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Fix a couple integer overflows on 32bit sy | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22086 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Fix mlx5_poll_one() cur_qp update flow | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22089 | linux-libc-dev | MEDIUM | kernel: RDMA/core: Don't expose hw_counters outside of init | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22090 | linux-libc-dev | MEDIUM | kernel: x86/mm/pat: Fix VM_PAT handling when fork() fails in | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-22093 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: avoid NPD when ASIC does not suppor | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22095 | linux-libc-dev | MEDIUM | kernel: PCI: brcmstb: Fix error path after a call to regulat | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22097 | linux-libc-dev | MEDIUM | kernel: drm/vkms: Fix use after free and double free on init | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-22103 | linux-libc-dev | MEDIUM | kernel: net: fix NULL pointer dereference in l3mdev_l3_rcv | 6.1.38-4 | no fix | dagster |
| CVE-2025-22105 | linux-libc-dev | MEDIUM | kernel: bonding: check xdp prog when set bond mode | 6.1.38-4 | no fix | dagster |
| CVE-2025-22108 | linux-libc-dev | MEDIUM | kernel: bnxt_en: Mask the bd_cnt field in the TX BD properly | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-22109 | linux-libc-dev | MEDIUM | kernel: ax25: Remove broken autobind | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-22111 | linux-libc-dev | MEDIUM | kernel: net: Remove RTNL dance for SIOCBRADDIF and SIOCBRDEL | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-22113 | linux-libc-dev | MEDIUM | kernel: ext4: avoid journaling sb update on error if journal | 6.1.38-4 | no fix | dagster |
| CVE-2025-22115 | linux-libc-dev | MEDIUM | kernel: btrfs: fix block group refcount race in btrfs_create | 6.1.38-4 | no fix | dagster |
| CVE-2025-22116 | linux-libc-dev | MEDIUM | kernel: idpf: check error for register_netdev() on init | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-22117 | linux-libc-dev | MEDIUM | kernel: ice: fix using untrusted value of pkt_len in ice_vc_ | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-22119 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: init wiphy_work before allocating rf | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-22125 | linux-libc-dev | MEDIUM | kernel: md/raid1,raid10: don't ignore IO flags | 6.1.38-4 | no fix | dagster |
| CVE-2025-22127 | linux-libc-dev | MEDIUM | kernel: f2fs: fix potential deadloop in prepare_compress_ove | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-22866 | stdlib | MEDIUM | crypto/internal/nistec: golang: Timing sidechannel for P-256 | v1.22.4 | 1.22.12, 1.23.6, 1.24.0-rc.3 | dagster |
| CVE-2025-22870 | stdlib | MEDIUM | golang.org/x/net/proxy: golang.org/x/net/http/httpproxy: HTT | v1.22.4 | 1.23.7, 1.24.1 | dagster |
| CVE-2025-22871 | stdlib | MEDIUM | net/http: Request smuggling due to acceptance of invalid chu | v1.22.4 | 1.23.8, 1.24.2 | dagster |
| CVE-2025-22873 | stdlib | MEDIUM | os: os: Information disclosure via path traversal using spec | v1.22.4 | 1.23.9, 1.24.3 | dagster |
| CVE-2025-23129 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: Clear affinity hint before calling ath | 6.1.38-4 | no fix | dagster |
| CVE-2025-23130 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid panic once fallocation fails for | 6.1.38-4 | no fix | dagster |
| CVE-2025-23131 | linux-libc-dev | MEDIUM | kernel: dlm: prevent NPD when writing a positive value to ev | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-23132 | linux-libc-dev | MEDIUM | kernel: f2fs: quota: fix to avoid warning in dquot_writeback | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-23135 | linux-libc-dev | MEDIUM | kernel: RISC-V: KVM: Teardown riscv specific bits after kvm_ | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-23136 | linux-libc-dev | MEDIUM | kernel: thermal: int340x: Add NULL check for adev | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23138 | linux-libc-dev | MEDIUM | kernel: watch_queue: fix pipe accounting mismatch | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23140 | linux-libc-dev | MEDIUM | kernel: misc: pci_endpoint_test: Avoid issue of interrupts r | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23141 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Acquire SRCU in KVM_GET_MP_STATE to protec | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23143 | linux-libc-dev | MEDIUM | kernel: net: Fix null-ptr-deref by sock_lock_init_class_and_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-23144 | linux-libc-dev | MEDIUM | kernel: backlight: led_bl: Hold led_access lock when calling | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-23145 | linux-libc-dev | MEDIUM | kernel: mptcp: fix NULL pointer in can_accept_new_subflow | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23146 | linux-libc-dev | MEDIUM | kernel: mfd: ene-kb3930: Fix a potential NULL pointer derefe | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23147 | linux-libc-dev | MEDIUM | kernel: i3c: Add NULL pointer check in i3c_master_queue_ibi( | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23148 | linux-libc-dev | MEDIUM | kernel: soc: samsung: exynos-chipid: Add NULL pointer check | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23150 | linux-libc-dev | MEDIUM | kernel: ext4: fix off-by-one error in do_split | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23151 | linux-libc-dev | MEDIUM | kernel: bus: mhi: host: Fix race between unprepare and queue | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23155 | linux-libc-dev | MEDIUM | kernel: net: stmmac: Fix accessing freed irq affinity_hint | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-23159 | linux-libc-dev | MEDIUM | kernel: media: venus: hfi: add a check to handle OOB in sfr | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23160 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: Fix a resource leak related | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-23161 | linux-libc-dev | MEDIUM | kernel: PCI: vmd: Make vmd_dev::cfg_lock a raw_spinlock_t ty | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-23163 | linux-libc-dev | MEDIUM | kernel: net: vlan: don't propagate flags on open | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-24528 | libgssapi-krb5-2 | MEDIUM | krb5: overflow when calculating ulog block size | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2025-24528 | libk5crypto3 | MEDIUM | krb5: overflow when calculating ulog block size | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2025-24528 | libkrb5-3 | MEDIUM | krb5: overflow when calculating ulog block size | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2025-24528 | libkrb5support0 | MEDIUM | krb5: overflow when calculating ulog block size | 1.20.1-2 | 1.20.1-2+deb12u3 | dagster |
| CVE-2025-24794 | snowflake-connector-python | MEDIUM | snowflake-connector-python vulnerable to insecure deserializ | 3.6.0 | 3.13.1 | dagster |
| CVE-2025-24795 | snowflake-connector-python | MEDIUM | snowflake-connector-python vulnerable to insecure cache file | 3.6.0 | 3.13.1 | dagster |
| CVE-2025-27516 | Jinja2 | MEDIUM | jinja2: Jinja sandbox breakout through attr filter selecting | 3.1.3 | 3.1.6 | dagster |
| CVE-2025-27558 | linux-libc-dev | MEDIUM | IEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks agai | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-30258 | gpgv | MEDIUM | gnupg: verification DoS due to a malicious subkey in the key | 2.2.40-1.1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-32989 | libgnutls30 | MEDIUM | gnutls: Vulnerability in GnuTLS SCT extension parsing | 3.7.9-2 | 3.7.9-2+deb12u5 | dagster |
| CVE-2025-3576 | libgssapi-krb5-2 | MEDIUM | krb5: Kerberos RC4-HMAC-MD5 Checksum Vulnerability Enabling | 1.20.1-2 | 1.20.1-2+deb12u4 | dagster |
| CVE-2025-3576 | libk5crypto3 | MEDIUM | krb5: Kerberos RC4-HMAC-MD5 Checksum Vulnerability Enabling | 1.20.1-2 | 1.20.1-2+deb12u4 | dagster |
| CVE-2025-3576 | libkrb5-3 | MEDIUM | krb5: Kerberos RC4-HMAC-MD5 Checksum Vulnerability Enabling | 1.20.1-2 | 1.20.1-2+deb12u4 | dagster |
| CVE-2025-3576 | libkrb5support0 | MEDIUM | krb5: Kerberos RC4-HMAC-MD5 Checksum Vulnerability Enabling | 1.20.1-2 | 1.20.1-2+deb12u4 | dagster |
| CVE-2025-37740 | linux-libc-dev | MEDIUM | kernel: jfs: add sanity check for agwidth in dbMount | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37741 | linux-libc-dev | MEDIUM | kernel: jfs: Prevent copying of nlink with value 0 from disk | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37742 | linux-libc-dev | MEDIUM | kernel: jfs: Fix uninit-value access of imap allocated in th | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37743 | linux-libc-dev | MEDIUM | kernel: wifi: ath12k: Avoid memory leak while enabling stati | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-37746 | linux-libc-dev | MEDIUM | kernel: perf/dwc_pcie: fix duplicate pci_dev devices | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-37747 | linux-libc-dev | MEDIUM | kernel: perf: Fix hang while freeing sigtrap event | 6.1.38-4 | no fix | dagster |
| CVE-2025-37748 | linux-libc-dev | MEDIUM | kernel: iommu/mediatek: Fix NULL pointer deference in mtk_io | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37756 | linux-libc-dev | MEDIUM | kernel: net: tls: explicitly disallow disconnect | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37757 | linux-libc-dev | MEDIUM | kernel: tipc: fix memory leak in tipc_link_xmit | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37758 | linux-libc-dev | MEDIUM | kernel: ata: pata_pxa: Fix potential NULL pointer dereferenc | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37765 | linux-libc-dev | MEDIUM | kernel: drm/nouveau: prime: fix ttm_bo_delayed_delete oops | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37766 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Prevent division by zero | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37767 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Prevent division by zero | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37768 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Prevent division by zero | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37769 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm/smu11: Prevent division by zero | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37770 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Prevent division by zero | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37771 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Prevent division by zero | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37772 | linux-libc-dev | MEDIUM | kernel: RDMA/cma: Fix workqueue crash in cma_netevent_work_h | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37773 | linux-libc-dev | MEDIUM | kernel: virtiofs: add filesystem context source name check | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37775 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix the warning from __kernel_write_iter | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37781 | linux-libc-dev | MEDIUM | kernel: i2c: cros-ec-tunnel: defer probe if parent EC is not | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37787 | linux-libc-dev | MEDIUM | kernel: net: dsa: mv88e6xxx: avoid unregistering devlink reg | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37788 | linux-libc-dev | MEDIUM | kernel: cxgb4: fix memory leak in cxgb4_init_ethtool_filters | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37790 | linux-libc-dev | MEDIUM | kernel: net: mctp: Set SOCK_RCU_FREE | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37792 | linux-libc-dev | MEDIUM | kernel: Bluetooth: btrtl: Prevent potential NULL dereference | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37794 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: Purge vif txq in ieee80211_do_stop() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37800 | linux-libc-dev | MEDIUM | kernel: driver core: fix potential NULL pointer dereference | 6.1.38-4 | no fix | dagster |
| CVE-2025-37801 | linux-libc-dev | MEDIUM | kernel: spi: spi-imx: Add check for spi_imx_setupxfer() | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37802 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix WARNING "do not call blocking ops when !T | 6.1.38-4 | no fix | dagster |
| CVE-2025-37805 | linux-libc-dev | MEDIUM | kernel: sound/virtio: Fix cancel_sync warnings on uninitiali | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37806 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Keep write operations atomic | 6.1.38-4 | no fix | dagster |
| CVE-2025-37807 | linux-libc-dev | MEDIUM | kernel: bpf: Fix kmemleak warning for percpu hashmap | 6.1.38-4 | no fix | dagster |
| CVE-2025-37808 | linux-libc-dev | MEDIUM | kernel: crypto: null - Use spin lock instead of mutex | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37811 | linux-libc-dev | MEDIUM | kernel: usb: chipidea: ci_hdrc_imx: fix usbmisc handling | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37812 | linux-libc-dev | MEDIUM | kernel: usb: cdns3: Fix deadlock when using NCM gadget | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37815 | linux-libc-dev | MEDIUM | kernel: misc: microchip: pci1xxxx: Fix Kernel panic during I | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37818 | linux-libc-dev | MEDIUM | kernel: LoongArch: Return NULL from huge_pte_offset() for in | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37820 | linux-libc-dev | MEDIUM | kernel: xen-netfront: handle NULL returned by xdp_convert_bu | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37824 | linux-libc-dev | MEDIUM | kernel: tipc: fix NULL pointer dereference in tipc_mon_reini | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37829 | linux-libc-dev | MEDIUM | kernel: cpufreq: scpi: Fix null-ptr-deref in scpi_cpufreq_ge | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37830 | linux-libc-dev | MEDIUM | kernel: cpufreq: scmi: Fix null-ptr-deref in scmi_cpufreq_ge | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37833 | linux-libc-dev | MEDIUM | kernel: net/niu: Niu requires MSIX ENTRY_DATA fields touch b | 6.1.38-4 | no fix | dagster |
| CVE-2025-37834 | linux-libc-dev | MEDIUM | kernel: mm/vmscan: don't try to reclaim hwpoison folio | 6.1.38-4 | no fix | dagster |
| CVE-2025-37836 | linux-libc-dev | MEDIUM | kernel: PCI: Fix reference leak in pci_register_host_bridge( | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37838 | linux-libc-dev | MEDIUM | kernel: HSI: ssi_protocol: Fix use after free vulnerability | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37841 | linux-libc-dev | MEDIUM | kernel: pm: cpupower: bench: Prevent NULL dereference on mal | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37842 | linux-libc-dev | MEDIUM | kernel: spi: fsl-qspi: use devm function instead of driver r | 6.1.38-4 | no fix | dagster |
| CVE-2025-37844 | linux-libc-dev | MEDIUM | kernel: cifs: avoid NULL pointer dereference in dbg call | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37850 | linux-libc-dev | MEDIUM | kernel: pwm: mediatek: Prevent divide-by-zero in pwm_mediate | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37851 | linux-libc-dev | MEDIUM | kernel: fbdev: omapfb: Add 'plane' value check | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37852 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: handle amdgpu_cgs_create_device() errors | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37853 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: debugfs hang_hws skip GPU with MES | 6.1.38-4 | no fix | dagster |
| CVE-2025-37856 | linux-libc-dev | MEDIUM | kernel: btrfs: harden block_group::bg_list against list_del( | 6.1.38-4 | no fix | dagster |
| CVE-2025-37857 | linux-libc-dev | MEDIUM | kernel: scsi: st: Fix array overflow in st_setup() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37858 | linux-libc-dev | MEDIUM | kernel: fs/jfs: Prevent integer overflow in AG size calculat | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37859 | linux-libc-dev | MEDIUM | kernel: page_pool: avoid infinite loop to schedule delayed w | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37860 | linux-libc-dev | MEDIUM | kernel: sfc: fix NULL dereferences in ef100_process_design_p | 6.1.38-4 | no fix | dagster |
| CVE-2025-37862 | linux-libc-dev | MEDIUM | kernel: HID: pidff: Fix null pointer dereference in pidff_fi | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37864 | linux-libc-dev | MEDIUM | kernel: net: dsa: clean up FDB, MDB, VLAN entries on unbind | 6.1.38-4 | no fix | dagster |
| CVE-2025-37865 | linux-libc-dev | MEDIUM | kernel: net: dsa: mv88e6xxx: fix -ENOENT when deleting VLANs | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37867 | linux-libc-dev | MEDIUM | kernel: RDMA/core: Silence oversized kvmalloc() warning | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37871 | linux-libc-dev | MEDIUM | kernel: nfsd: decrease sc_count directly if fail to queue dl | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37875 | linux-libc-dev | MEDIUM | kernel: igc: fix PTM cycle trigger logic | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37880 | linux-libc-dev | MEDIUM | kernel: um: work around sched_yield not yielding in time-tra | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-37881 | linux-libc-dev | MEDIUM | kernel: usb: gadget: aspeed: Add NULL pointer check in ast_v | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37883 | linux-libc-dev | MEDIUM | kernel: s390/sclp: Add check for get_zeroed_page() | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37889 | linux-libc-dev | MEDIUM | kernel: ASoC: ops: Consistently treat platform_max as contro | 6.1.38-4 | 6.1.133-1 | dagster |
| CVE-2025-37893 | linux-libc-dev | MEDIUM | kernel: LoongArch: BPF: Fix off-by-one error in build_prolog | 6.1.38-4 | no fix | dagster |
| CVE-2025-37897 | linux-libc-dev | MEDIUM | kernel: wifi: plfxlc: Remove erroneous assert in plfxlc_mac_ | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37901 | linux-libc-dev | MEDIUM | kernel: irqchip/qcom-mpm: Prevent crash when trying to handl | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37905 | linux-libc-dev | MEDIUM | kernel: firmware: arm_scmi: Balance device refcount when des | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37906 | linux-libc-dev | MEDIUM | kernel: Linux kernel: ublk race condition causes kernel cras | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-37909 | linux-libc-dev | MEDIUM | kernel: net: lan743x: Fix memleak issue when GSO enabled | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37911 | linux-libc-dev | MEDIUM | kernel: bnxt_en: Fix out-of-bound memcpy() during ethtool -w | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37912 | linux-libc-dev | MEDIUM | kernel: ice: Check VF VSI Pointer Value in ice_vc_add_fdir_f | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37917 | linux-libc-dev | MEDIUM | kernel: net: ethernet: mtk-star-emac: fix spinlock recursion | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37920 | linux-libc-dev | MEDIUM | kernel: xsk: Fix race condition in AF_XDP generic RX path | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-37925 | linux-libc-dev | MEDIUM | kernel: jfs: reject on-disk inodes of an unsupported type | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-37929 | linux-libc-dev | MEDIUM | kernel: arm64: errata: Add missing sentinels to Spectre-BHB | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37930 | linux-libc-dev | MEDIUM | kernel: drm/nouveau: Fix WARN_ON in nouveau_fence_context_ki | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37931 | linux-libc-dev | MEDIUM | kernel: btrfs: adjust subpage bit start based on sectorsize | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-37932 | linux-libc-dev | MEDIUM | kernel: sch_htb: make htb_qlen_notify() idempotent | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37936 | linux-libc-dev | MEDIUM | kernel: perf/x86/intel: KVM: Mask PEBS_ENABLE loaded for gue | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37937 | linux-libc-dev | MEDIUM | kernel: objtool, media: dib8000: Prevent divide-by-zero in d | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37938 | linux-libc-dev | MEDIUM | kernel: tracing: Verify event formats that have "%*p.." | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37940 | linux-libc-dev | MEDIUM | kernel: ftrace: Add cond_resched() to ftrace_graph_set_hash( | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37945 | linux-libc-dev | MEDIUM | kernel: net: phy: allow MDIO bus PM ops to start/stop state | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-37948 | linux-libc-dev | MEDIUM | kernel: arm64: bpf: Add BHB mitigation to the epilogue for c | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37949 | linux-libc-dev | MEDIUM | kernel: xenbus: Use kref to track req lifetime | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37951 | linux-libc-dev | MEDIUM | kernel: drm/v3d: Add job to pending list if the reset was sk | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37953 | linux-libc-dev | MEDIUM | kernel: Linux kernel: sch_htb NULL pointer dereference | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37956 | linux-libc-dev | MEDIUM | kernel: ksmbd: prevent rename with empty string | 6.1.38-4 | no fix | dagster |
| CVE-2025-37958 | linux-libc-dev | MEDIUM | kernel: mm/huge_memory: fix dereferencing invalid pmd migrat | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-37959 | linux-libc-dev | MEDIUM | kernel: bpf: Scrub packet on bpf_redirect_peer | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37961 | linux-libc-dev | MEDIUM | kernel: ipvs: fix uninit-value for saddr in do_output_route4 | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37962 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix memory leak in parse_lease_state() | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37963 | linux-libc-dev | MEDIUM | kernel: arm64: bpf: Only mitigate cBPF programs loaded by un | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37964 | linux-libc-dev | MEDIUM | kernel: x86/mm: Eliminate window where TLB flushes may be in | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37967 | linux-libc-dev | MEDIUM | kernel: usb: typec: ucsi: displayport: Fix deadlock | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37968 | linux-libc-dev | MEDIUM | kernel: iio: light: opt3001: fix deadlock due to concurrent | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-37969 | linux-libc-dev | MEDIUM | kernel: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6 | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37970 | linux-libc-dev | MEDIUM | kernel: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6 | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37972 | linux-libc-dev | MEDIUM | kernel: Input: mtk-pmic-keys - fix possible null pointer der | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37977 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: exynos: Disable iocc if dma-coherent prop | 6.1.38-4 | no fix | dagster |
| CVE-2025-37980 | linux-libc-dev | MEDIUM | kernel: block: fix resource leak in blk_register_queue() err | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-37982 | linux-libc-dev | MEDIUM | kernel: wifi: wl1251: fix memory leak in wl1251_tx_work | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-37983 | linux-libc-dev | MEDIUM | kernel: qibfs: fix _another_ leak | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37985 | linux-libc-dev | MEDIUM | kernel: USB: wdm: close race between wdm_open and wdm_wwan_p | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37989 | linux-libc-dev | MEDIUM | kernel: net: phy: leds: fix memory leak | 6.1.38-4 | 6.1.137-1 | dagster |
| CVE-2025-37990 | linux-libc-dev | MEDIUM | kernel: wifi: brcm80211: fmac: Add error handling for brcmf_ | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37992 | linux-libc-dev | MEDIUM | kernel: net_sched: Flush gso_skb list too during ->change() | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-37994 | linux-libc-dev | MEDIUM | kernel: usb: typec: ucsi: displayport: Fix NULL pointer acce | 6.1.38-4 | 6.1.139-1 | dagster |
| CVE-2025-37995 | linux-libc-dev | MEDIUM | kernel: module: ensure that kobject_put() is safe for module | 6.1.38-4 | 6.1.139-1 | dagster |
| CVE-2025-37997 | linux-libc-dev | MEDIUM | kernel: netfilter: ipset: fix region locking in hash types | 6.1.38-4 | 6.1.139-1 | dagster |
| CVE-2025-37998 | linux-libc-dev | MEDIUM | kernel: openvswitch: Fix unsafe attribute parsing in output_ | 6.1.38-4 | 6.1.139-1 | dagster |
| CVE-2025-38001 | linux-libc-dev | MEDIUM | kernel: net_sched: hfsc: Address reentrant enqueue adding cl | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38003 | linux-libc-dev | MEDIUM | kernel: can: bcm: add missing rcu read protection for procfs | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38005 | linux-libc-dev | MEDIUM | kernel: dmaengine: ti: k3-udma: Add missing locking | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38006 | linux-libc-dev | MEDIUM | kernel: net: mctp: Don't access ifa_index when missing | 6.1.38-4 | no fix | dagster |
| CVE-2025-38007 | linux-libc-dev | MEDIUM | kernel: HID: uclogic: Add NULL check in uclogic_input_config | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38009 | linux-libc-dev | MEDIUM | kernel: wifi: mt76: disable napi on driver removal | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38014 | linux-libc-dev | MEDIUM | kernel: dmaengine: idxd: Refactor remove call with idxd_clea | 6.1.38-4 | no fix | dagster |
| CVE-2025-38015 | linux-libc-dev | MEDIUM | kernel: dmaengine: idxd: fix memory leak in error handling p | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38018 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Local Denial of Service due to NULL po | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38020 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Disable MACsec offload for uplink represe | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38023 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service via NULL pointer dereferen | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38029 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to sleepable pag | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38031 | linux-libc-dev | MEDIUM | kernel: padata: do not leak refcount in reorder_work | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38034 | linux-libc-dev | MEDIUM | kernel: btrfs: correct the order of prelim_ref arguments in | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38035 | linux-libc-dev | MEDIUM | kernel: nvmet-tcp: don't restore null sk_state_change | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38036 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to null pointer | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38037 | linux-libc-dev | MEDIUM | kernel: vxlan: Annotate FDB data races | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38038 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in amd-pstate cpufre | 6.1.38-4 | no fix | dagster |
| CVE-2025-38039 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Avoid WARN_ON when configuring MQPRIO wit | 6.1.38-4 | no fix | dagster |
| CVE-2025-38040 | linux-libc-dev | MEDIUM | kernel: serial: mctrl_gpio: split disable_ms into sync and n | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38041 | linux-libc-dev | MEDIUM | kernel: clk: sunxi-ng: h616: Reparent GPU clock during frequ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38042 | linux-libc-dev | MEDIUM | kernel: dmaengine: ti: k3-udma-glue: Drop skip_fdq argument | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38043 | linux-libc-dev | MEDIUM | kernel: firmware: arm_ffa: Set dma_mask for ffa devices | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38044 | linux-libc-dev | MEDIUM | kernel: media: cx231xx: set device_caps for 417 | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38045 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: fix debug actions order | 6.1.38-4 | no fix | dagster |
| CVE-2025-38048 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Data race in virtio_ring can lead to d | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38057 | linux-libc-dev | MEDIUM | kernel: espintcp: fix skb leaks | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-38058 | linux-libc-dev | MEDIUM | kernel: __legitimize_mnt(): check for MNT_SYNC_UMOUNT should | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38059 | linux-libc-dev | MEDIUM | kernel: btrfs: avoid NULL pointer dereference if no valid cs | 6.1.38-4 | no fix | dagster |
| CVE-2025-38061 | linux-libc-dev | MEDIUM | kernel: net: pktgen: fix access outside of user given buffer | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38062 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Use-After-Free vulnerability in MSI tr | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38063 | linux-libc-dev | MEDIUM | kernel: dm: fix unconditional IO throttle caused by REQ_PREF | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38064 | linux-libc-dev | MEDIUM | kernel: virtio: break and reset virtio devices on device_shu | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38065 | linux-libc-dev | MEDIUM | kernel: orangefs: Do not truncate file size | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38066 | linux-libc-dev | MEDIUM | kernel: dm cache: prevent BUG_ON by blocking retries on fail | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38067 | linux-libc-dev | MEDIUM | kernel: rseq: Fix segfault on registration when rseq_cs is n | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38071 | linux-libc-dev | MEDIUM | kernel: x86/mm: Check return value from memblock_phys_alloc_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38072 | linux-libc-dev | MEDIUM | kernel: libnvdimm/labels: Fix divide error in nd_label_data_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38074 | linux-libc-dev | MEDIUM | kernel: vhost-scsi: protect vq->log_used with vq->mutex | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38075 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to NULL pointer | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38078 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Use-After-Free vulnerability in PCM OS | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38080 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Increase block_sequence array size | 6.1.38-4 | no fix | dagster |
| CVE-2025-38083 | linux-libc-dev | MEDIUM | kernel: net_sched: prio: fix a race in prio_tune() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38084 | linux-libc-dev | MEDIUM | kernel: mm/hugetlb: unshare page tables during VMA split, no | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38085 | linux-libc-dev | MEDIUM | kernel: mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38086 | linux-libc-dev | MEDIUM | kernel: net: ch9200: fix uninitialised access during mii_nwa | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38090 | linux-libc-dev | MEDIUM | kernel: drivers/rapidio/rio_cm.c: prevent possible heap over | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38094 | linux-libc-dev | MEDIUM | kernel: net: cadence: macb: Fix a possible deadlock in macb_ | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38095 | linux-libc-dev | MEDIUM | kernel: Linux kernel dma-buf: Denial of Service via memory r | 6.1.38-4 | 6.1.140-1 | dagster |
| CVE-2025-38096 | linux-libc-dev | MEDIUM | kernel: Linux Kernel: Denial of Service in iwlwifi due to im | 6.1.38-4 | no fix | dagster |
| CVE-2025-38097 | linux-libc-dev | MEDIUM | kernel: espintcp: remove encap socket caching to avoid refer | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38100 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Local Denial of Service due to TIF_IO_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38104 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Replace Mutex with Spinlock for RLCG reg | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38105 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in USB-audio MIDI dr | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38112 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to TOCTOU in `sk | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38113 | linux-libc-dev | MEDIUM | kernel: ACPI: CPPC: Fix NULL pointer dereference when nosmp | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38115 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Local Denial of Service in network sch | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38119 | linux-libc-dev | MEDIUM | kernel: scsi: core: ufs: Fix a hang in the error handler | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38120 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_set_pipapo_avx2: fix initial map fill | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38122 | linux-libc-dev | MEDIUM | kernel: gve: add missing NULL check for gve_alloc_pending_pa | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38124 | linux-libc-dev | MEDIUM | kernel: net: fix udp gso skb_segment after pull from frag_li | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38125 | linux-libc-dev | MEDIUM | kernel: net: stmmac: make sure that ptp_rate is not 0 before | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38126 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in stmmac network dr | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38127 | linux-libc-dev | MEDIUM | kernel: ice: fix Tx scheduler error handling in XDP callback | 6.1.38-4 | no fix | dagster |
| CVE-2025-38132 | linux-libc-dev | MEDIUM | kernel: coresight: holding cscfg_csdev_lock while removing c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38135 | linux-libc-dev | MEDIUM | kernel: serial: Fix potential null-ptr-deref in mlb_usio_pro | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38136 | linux-libc-dev | MEDIUM | kernel: usb: renesas_usbhs: Reorder clock handling and power | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38138 | linux-libc-dev | MEDIUM | kernel: dmaengine: ti: Add NULL check in udma_probe() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38140 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Local denial of service in device mapp | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38142 | linux-libc-dev | MEDIUM | kernel: hwmon: (asus-ec-sensors) check sensor index in read_ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38143 | linux-libc-dev | MEDIUM | kernel: backlight: pm8941: Add NULL check in wled_configure( | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38145 | linux-libc-dev | MEDIUM | kernel: soc: aspeed: Add NULL check in aspeed_lpc_enable_sno | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38147 | linux-libc-dev | MEDIUM | kernel: calipso: Don't call calipso functions for AF_INET sk | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38148 | linux-libc-dev | MEDIUM | kernel: net: phy: mscc: Fix memory leak when using one step | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38151 | linux-libc-dev | MEDIUM | kernel: RDMA/cma: Fix hang when cma_netevent_callback fails | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38152 | linux-libc-dev | MEDIUM | kernel: remoteproc: core: Clear table_sz when rproc_shutdown | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-38158 | linux-libc-dev | MEDIUM | kernel: hisi_acc_vfio_pci: fix XQE dma address error | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38160 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via NULL pointer der | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38161 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Fix error flow upon firmware failure for | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38162 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in netfilter due to | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38163 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on sbi->total_valid_blo | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38165 | linux-libc-dev | MEDIUM | kernel: bpf, sockmap: Fix panic when calling skb_linearize | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38166 | linux-libc-dev | MEDIUM | kernel: bpf: fix ktls panic with sockmap | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38167 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: handle hdr_first_de() return value | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38170 | linux-libc-dev | MEDIUM | kernel: arm64/fpsimd: Discard stale CPU state when handling | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38173 | linux-libc-dev | MEDIUM | kernel: crypto: marvell/cesa - Handle zero-length skcipher r | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38174 | linux-libc-dev | MEDIUM | kernel: thunderbolt: Do not double dequeue a configuration r | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38177 | linux-libc-dev | MEDIUM | kernel: sch_hfsc: make hfsc_qlen_notify() idempotent | 6.1.38-4 | 6.1.139-1 | dagster |
| CVE-2025-38181 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of service due to null pointer | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38184 | linux-libc-dev | MEDIUM | kernel: tipc: fix null-ptr-deref when acquiring remote ip of | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38185 | linux-libc-dev | MEDIUM | kernel: atm: atmtcp: Free invalid length skb in atmtcp_c_sen | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38190 | linux-libc-dev | MEDIUM | kernel: atm: Revert atm_account_tx() if copy_from_iter_full( | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38191 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix null pointer dereference in destroy_previ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38192 | linux-libc-dev | MEDIUM | kernel: net: clear the dst when changing skb protocol | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38193 | linux-libc-dev | MEDIUM | kernel: net_sched: sch_sfq: reject invalid perturb period | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38194 | linux-libc-dev | MEDIUM | kernel: jffs2: check that raw node were preallocated before | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38195 | linux-libc-dev | MEDIUM | kernel: LoongArch: Fix panic caused by NULL-PMD in huge_pte_ | 6.1.38-4 | no fix | dagster |
| CVE-2025-38197 | linux-libc-dev | MEDIUM | kernel: platform/x86: dell_rbu: Fix list usage | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38199 | linux-libc-dev | MEDIUM | kernel: wifi: ath12k: Fix memory leak due to multiple rx_sta | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38200 | linux-libc-dev | MEDIUM | kernel: i40e: fix MMIO write access to an invalid page in i4 | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38202 | linux-libc-dev | MEDIUM | kernel: bpf: Check rcu_read_lock_trace_held() in bpf_map_loo | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38203 | linux-libc-dev | MEDIUM | kernel: jfs: Fix null-ptr-deref in jfs_ioc_trim | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38205 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Avoid divide by zero by initializin | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38207 | linux-libc-dev | MEDIUM | kernel: mm: fix uprobe pte be overwritten when expanding vma | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38214 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via null-pointer der | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38215 | linux-libc-dev | MEDIUM | kernel: fbdev: Fix do_register_framebuffer to prevent null-p | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38218 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on sit_bitmap_size | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38219 | linux-libc-dev | MEDIUM | kernel: f2fs: prevent kernel warning due to negative i_nlink | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38222 | linux-libc-dev | MEDIUM | kernel: ext4: inline: fix len overflow in ext4_prepare_inlin | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38225 | linux-libc-dev | MEDIUM | kernel: media: imx-jpeg: Cleanup after an allocation error | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38229 | linux-libc-dev | MEDIUM | kernel: media: cxusb: no longer judge rbuf when the write fa | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38231 | linux-libc-dev | MEDIUM | kernel: nfsd: Initialize ssc before laundromat_work to preve | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38232 | linux-libc-dev | MEDIUM | kernel: NFSD: fix race between nfsd registration and exports | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38234 | linux-libc-dev | MEDIUM | kernel: sched/rt: Fix race in push_rt_task | 6.1.38-4 | no fix | dagster |
| CVE-2025-38237 | linux-libc-dev | MEDIUM | kernel: media: platform: exynos4-is: Add hardware sync wait | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38244 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in SMB client due to | 6.1.38-4 | no fix | dagster |
| CVE-2025-38246 | linux-libc-dev | MEDIUM | kernel: bnxt: properly flush XDP redirect lists | 6.1.38-4 | no fix | dagster |
| CVE-2025-38251 | linux-libc-dev | MEDIUM | kernel: atm: clip: prevent NULL deref in clip_push() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38260 | linux-libc-dev | MEDIUM | kernel: btrfs: handle csum tree error with rescue=ibadroots | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38261 | linux-libc-dev | MEDIUM | kernel: riscv: save the SR_SUM status over switches | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38262 | linux-libc-dev | MEDIUM | kernel: tty: serial: uartlite: register uart driver in init | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38263 | linux-libc-dev | MEDIUM | kernel: bcache: fix NULL pointer in cache_set_flush() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38264 | linux-libc-dev | MEDIUM | kernel: nvme-tcp: sanitize request list handling | 6.1.38-4 | no fix | dagster |
| CVE-2025-38272 | linux-libc-dev | MEDIUM | kernel: net: dsa: b53: do not enable EEE on bcm63xx | 6.1.38-4 | no fix | dagster |
| CVE-2025-38273 | linux-libc-dev | MEDIUM | kernel: net: tipc: fix refcount warning in tipc_aead_encrypt | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38275 | linux-libc-dev | MEDIUM | kernel: phy: qcom-qmp-usb: Fix an NULL vs IS_ERR() bug | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38277 | linux-libc-dev | MEDIUM | kernel: mtd: nand: ecc-mxic: Fix use of uninitialized variab | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38282 | linux-libc-dev | MEDIUM | kernel: kernfs: Relax constraint in draining guard | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38283 | linux-libc-dev | MEDIUM | kernel: hisi_acc_vfio_pci: bugfix live migration function wi | 6.1.38-4 | no fix | dagster |
| CVE-2025-38284 | linux-libc-dev | MEDIUM | kernel: wifi: rtw89: pci: configure manual DAC mode via PCI | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38285 | linux-libc-dev | MEDIUM | kernel: bpf: Fix WARN() in get_bpf_raw_tp_regs | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38293 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ath11k wifi drive | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38300 | linux-libc-dev | MEDIUM | kernel: crypto: sun8i-ce-cipher - fix error handling in sun8 | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38303 | linux-libc-dev | MEDIUM | kernel: Bluetooth: eir: Fix possible crashes on eir_create_a | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38304 | linux-libc-dev | MEDIUM | kernel: Linux kernel (Bluetooth): Denial of Service due to N | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38305 | linux-libc-dev | MEDIUM | kernel: Linux kernel (PTP): Denial of Service due to recursi | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38310 | linux-libc-dev | MEDIUM | kernel: Linux kernel (seg6): Information disclosure or denia | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38311 | linux-libc-dev | MEDIUM | kernel: Linux kernel (iavf): Denial of Service due to a lock | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38312 | linux-libc-dev | MEDIUM | kernel: fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hp | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38319 | linux-libc-dev | MEDIUM | kernel: drm/amd/pp: Fix potential NULL pointer dereference i | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38322 | linux-libc-dev | MEDIUM | kernel: perf/x86/intel: Fix crash in icl_update_topdown_even | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38324 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in MPLS subsystem du | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38326 | linux-libc-dev | MEDIUM | kernel: aoe: clean device rq_list in aoedev_downdev() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38328 | linux-libc-dev | MEDIUM | kernel: Linux kernel (jffs2): Denial of Service via invalid | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38331 | linux-libc-dev | MEDIUM | kernel: net: ethernet: cortina: Use TOE/TSO on all TCP | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38332 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Use memcpy() for BIOS version | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38333 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to bail out in get_new_segment() | 6.1.38-4 | no fix | dagster |
| CVE-2025-38334 | linux-libc-dev | MEDIUM | kernel: x86/sgx: Prevent attempts to reclaim poisoned pages | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38335 | linux-libc-dev | MEDIUM | kernel: Input: gpio-keys - fix a sleep while atomic with PRE | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38336 | linux-libc-dev | MEDIUM | kernel: ata: pata_via: Force PIO for ATAPI devices on VT6415 | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38337 | linux-libc-dev | MEDIUM | kernel: jbd2: fix data-race and null-ptr-deref in jbd2_journ | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38344 | linux-libc-dev | MEDIUM | kernel: ACPICA: fix acpi parse and parseext cache leaks | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38345 | linux-libc-dev | MEDIUM | kernel: ACPICA: fix acpi operand cache leak in dswstate.c | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38347 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on ino and xnid | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38354 | linux-libc-dev | MEDIUM | kernel: drm/msm/gpu: Fix crash when throttling GPU immediate | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38359 | linux-libc-dev | MEDIUM | kernel: s390/mm: Fix in_atomic() handling in do_secure_stora | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38362 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null pointer check for get_firs | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38363 | linux-libc-dev | MEDIUM | kernel: drm/tegra: Fix a possible null pointer dereference | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38364 | linux-libc-dev | MEDIUM | kernel: maple_tree: fix MA_STATE_PREALLOC flag in mas_preall | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38365 | linux-libc-dev | MEDIUM | kernel: btrfs: fix a race between renames and directory logg | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38371 | linux-libc-dev | MEDIUM | kernel: drm/v3d: Disable interrupts before resetting the GPU | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38382 | linux-libc-dev | MEDIUM | kernel: btrfs: fix iteration of extrefs during log replay | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38384 | linux-libc-dev | MEDIUM | kernel: mtd: spinand: fix memory leak of ECC engine conf | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38386 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ACPICA due to mis | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38387 | linux-libc-dev | MEDIUM | kernel: RDMA/mlx5: Initialize obj_event->obj_sub_list before | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38391 | linux-libc-dev | MEDIUM | kernel: usb: typec: altmodes/displayport: do not index inval | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38393 | linux-libc-dev | MEDIUM | kernel: NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38399 | linux-libc-dev | MEDIUM | kernel: scsi: target: Fix NULL pointer dereference in core_s | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38400 | linux-libc-dev | MEDIUM | kernel: nfs: Clean up /proc/net/rpc/nfs when nfs_fs_proc_net | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38404 | linux-libc-dev | MEDIUM | kernel: usb: typec: displayport: Fix potential deadlock | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38406 | linux-libc-dev | MEDIUM | kernel: wifi: ath6kl: remove WARN on bad firmware input | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38408 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via improper pointer | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38409 | linux-libc-dev | MEDIUM | kernel: drm/msm: Fix another leak in the submit error path | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38410 | linux-libc-dev | MEDIUM | kernel: drm/msm: Fix a fence leak in submit error path | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38412 | linux-libc-dev | MEDIUM | kernel: platform/x86: dell-wmi-sysman: Fix WMI data block re | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38418 | linux-libc-dev | MEDIUM | kernel: remoteproc: core: Release rproc->clean_table after r | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38419 | linux-libc-dev | MEDIUM | kernel: remoteproc: core: Cleanup acquired resources when rp | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38420 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in carl9170 Wi-Fi dr | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38424 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service in perf due to user stack | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38426 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Add basic validation for RAS header | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38429 | linux-libc-dev | MEDIUM | kernel: bus: mhi: ep: Update read pointer only after buffer | 6.1.38-4 | no fix | dagster |
| CVE-2025-38430 | linux-libc-dev | MEDIUM | kernel: nfsd: nfsd4_spo_must_allow() must check this is a v4 | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38436 | linux-libc-dev | MEDIUM | kernel: drm/scheduler: signal scheduled fence when kill job | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38438 | linux-libc-dev | MEDIUM | kernel: ASoC: SOF: Intel: hda: Use devm_kstrdup() to avoid m | 6.1.38-4 | no fix | dagster |
| CVE-2025-38439 | linux-libc-dev | MEDIUM | kernel: bnxt_en: Set DMA unmap len correctly for XDP_REDIREC | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38441 | linux-libc-dev | MEDIUM | kernel: netfilter: flowtable: account for Ethernet header in | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38444 | linux-libc-dev | MEDIUM | kernel: raid10: cleanup memleak at raid10_make_request | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38448 | linux-libc-dev | MEDIUM | kernel: usb: gadget: u_serial: Fix race condition in TTY wak | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38449 | linux-libc-dev | MEDIUM | kernel: drm/gem: Acquire references on GEM handles for frame | 6.1.38-4 | no fix | dagster |
| CVE-2025-38451 | linux-libc-dev | MEDIUM | kernel: md/md-bitmap: fix GPF in bitmap_get_stats() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38455 | linux-libc-dev | MEDIUM | kernel: KVM: SVM: Reject SEV{-ES} intra host migration if vC | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38457 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to invalid queue | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38458 | linux-libc-dev | MEDIUM | kernel: atm: clip: Fix NULL pointer dereference in vcc_sendm | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38460 | linux-libc-dev | MEDIUM | kernel: atm: clip: Fix potential null-ptr-deref in to_atmarp | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38461 | linux-libc-dev | MEDIUM | kernel: vsock: Fix transport_* TOCTOU | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38462 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in vsock due to TOCT | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38465 | linux-libc-dev | MEDIUM | kernel: netlink: Fix wraparounds of sk->sk_rmem_alloc. | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38466 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in uprobes due to im | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38467 | linux-libc-dev | MEDIUM | kernel: drm/exynos: exynos7_drm_decon: add vblank check in I | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38468 | linux-libc-dev | MEDIUM | kernel: net/sched: Return NULL when htb_lookup_leaf encounte | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38470 | linux-libc-dev | MEDIUM | kernel: net: vlan: fix VLAN 0 refcount imbalance of toggling | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38472 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conntrack: fix crash due to removal of | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38473 | linux-libc-dev | MEDIUM | kernel: Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_c | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38474 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Local privilege escalation or denial o | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38477 | linux-libc-dev | MEDIUM | kernel: net/sched: sch_qfq: Fix race condition on qfq_aggreg | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38478 | linux-libc-dev | MEDIUM | kernel: comedi: Fix initialization of data for instructions | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38480 | linux-libc-dev | MEDIUM | kernel: comedi: Fix use of uninitialized data in insn_rw_emu | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38481 | linux-libc-dev | MEDIUM | kernel: comedi: Fail COMEDI_INSNLIST ioctl if n_insns is too | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38487 | linux-libc-dev | MEDIUM | kernel: soc: aspeed: lpc-snoop: Don't disable channels that | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38491 | linux-libc-dev | MEDIUM | kernel: mptcp: make fallback action and fallback decision at | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38495 | linux-libc-dev | MEDIUM | kernel: HID: core: ensure the allocated report buffer can co | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38498 | linux-libc-dev | MEDIUM | kernel: do_change_type(): refuse to operate on unmounted/not | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38499 | linux-libc-dev | MEDIUM | kernel: clone_private_mnt(): make sure that caller has CAP_S | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38503 | linux-libc-dev | MEDIUM | kernel: btrfs: fix assertion when building free space tree | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38507 | linux-libc-dev | MEDIUM | kernel: HID: nintendo: avoid bluetooth suspend/resume stalls | 6.1.38-4 | no fix | dagster |
| CVE-2025-38510 | linux-libc-dev | MEDIUM | kernel: kasan: remove kasan_find_vm_area() to prevent possib | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38513 | linux-libc-dev | MEDIUM | kernel: wifi: zd1211rw: Fix potential NULL pointer dereferen | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38514 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix oops due to non-existence of prealloc bac | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38515 | linux-libc-dev | MEDIUM | kernel: drm/sched: Increment job count before swapping tail | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38516 | linux-libc-dev | MEDIUM | kernel: pinctrl: qcom: msm: mark certain pins as invalid for | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38520 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: Don't call mmput from MMU notifier callb | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38524 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix recv-recv race of completed call | 6.1.38-4 | no fix | dagster |
| CVE-2025-38528 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in BPF due to format | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38531 | linux-libc-dev | MEDIUM | kernel: iio: common: st_sensors: Fix use of uninitialize dev | 6.1.38-4 | no fix | dagster |
| CVE-2025-38539 | linux-libc-dev | MEDIUM | kernel: tracing: Add down_write(trace_event_sem) when adding | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38540 | linux-libc-dev | MEDIUM | kernel: HID: quirks: Add quirk for 2 Chicony Electronics HP | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38542 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via device refcount | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38543 | linux-libc-dev | MEDIUM | kernel: drm/tegra: nvdec: Fix dma_alloc_coherent error check | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38544 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in rxrpc due to prea | 6.1.38-4 | no fix | dagster |
| CVE-2025-38546 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in ATM clip module can lea | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-38553 | linux-libc-dev | MEDIUM | kernel: net/sched: Restrict conditions for adding duplicatin | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38560 | linux-libc-dev | MEDIUM | kernel: x86/sev: Evict cache lines during SNP memory validat | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38561 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix Preauh_HashValue race condition | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38562 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix null pointer dereference error in generat | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38569 | linux-libc-dev | MEDIUM | kernel: benet: fix BUG when creating VFs | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38575 | linux-libc-dev | MEDIUM | kernel: ksmbd: use aead_request_free to match aead_request_a | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-38576 | linux-libc-dev | MEDIUM | kernel: powerpc/eeh: Make EEH driver device hotplug safe | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38577 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid panic in f2fs_evict_inode | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38578 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid UAF in f2fs_sync_inode_meta() | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38581 | linux-libc-dev | MEDIUM | kernel: crypto: ccp - Fix crash when rebind ccp device for c | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38583 | linux-libc-dev | MEDIUM | kernel: clk: xilinx: vcu: unregister pll_post only if regist | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38587 | linux-libc-dev | MEDIUM | kernel: ipv6: fix possible infinite loop in fib6_info_uses_d | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38588 | linux-libc-dev | MEDIUM | kernel: ipv6: prevent infinite loop in rt6_nlmsg_size() | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38590 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Remove skb secpath if xfrm state is not f | 6.1.38-4 | no fix | dagster |
| CVE-2025-38591 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in BPF due to improp | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-38597 | linux-libc-dev | MEDIUM | kernel: drm/rockchip: vop2: fail cleanly if missing a primar | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-38601 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: clear initialized flag for deinit-ed s | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38602 | linux-libc-dev | MEDIUM | kernel: iwlwifi: Add missing check for alloc_ordered_workque | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38604 | linux-libc-dev | MEDIUM | kernel: wifi: rtl818x: Kill URBs before clearing tx status q | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38605 | linux-libc-dev | MEDIUM | kernel: wifi: ath12k: Pass ab pointer directly to ath12k_dp_ | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38608 | linux-libc-dev | MEDIUM | kernel: Linux kernel kTLS: Denial of Service from uninitiali | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38609 | linux-libc-dev | MEDIUM | kernel: PM / devfreq: Check governor before using governor-> | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38610 | linux-libc-dev | MEDIUM | kernel: powercap: dtpm_cpu: Fix NULL pointer dereference in | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38612 | linux-libc-dev | MEDIUM | kernel: staging: fbtft: fix potential memory leak in fbtft_f | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38614 | linux-libc-dev | MEDIUM | kernel: eventpoll: Fix semi-unbounded recursion | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38615 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: cancle set bad inode after removing name f | 6.1.38-4 | no fix | dagster |
| CVE-2025-38617 | linux-libc-dev | MEDIUM | kernel: net/packet: fix a race in packet_set_ring() and pack | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38621 | linux-libc-dev | MEDIUM | kernel: md: make rdev_addable usable for rcu mode | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-38622 | linux-libc-dev | MEDIUM | kernel: net: drop UFO packets in udp_rcv_segment() | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38623 | linux-libc-dev | MEDIUM | kernel: PCI: pnv_php: Fix surprise plug detection and recove | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38624 | linux-libc-dev | MEDIUM | kernel: PCI: pnv_php: Clean up allocated IRQs on unplug | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38626 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to trigger foreground gc during f2fs_map_b | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38630 | linux-libc-dev | MEDIUM | kernel: fbdev: imxfb: Check fb_add_videomode to prevent null | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38634 | linux-libc-dev | MEDIUM | kernel: power: supply: cpcap-charger: Fix null check for pow | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38635 | linux-libc-dev | MEDIUM | kernel: clk: davinci: Add NULL check in davinci_lpsc_clk_reg | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38637 | linux-libc-dev | MEDIUM | kernel: net_sched: skbprio: Remove overly strict queue asser | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-38639 | linux-libc-dev | MEDIUM | kernel: netfilter: xt_nfacct: don't assume acct name is null | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38643 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: Add missing lock in cfg80211_check_a | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-38644 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: reject TDLS operations when station | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38645 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Check device memory pointer before usage | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38650 | linux-libc-dev | MEDIUM | kernel: hfsplus: remove mutex_lock check in hfsplus_free_ext | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38659 | linux-libc-dev | MEDIUM | kernel: gfs2: No more self recovery | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-38663 | linux-libc-dev | MEDIUM | kernel: nilfs2: reject invalid file types when reading inode | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38664 | linux-libc-dev | MEDIUM | kernel: ice: Fix a null pointer dereference in ice_copy_and_ | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38665 | linux-libc-dev | MEDIUM | kernel: can: netlink: can_changelink(): fix NULL pointer der | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38668 | linux-libc-dev | MEDIUM | kernel: regulator: core: fix NULL dereference on unbind due | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38671 | linux-libc-dev | MEDIUM | kernel: Linux kernel (i2c: qup): Denial of Service via impro | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-38678 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: reject duplicate device on upd | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-38681 | linux-libc-dev | MEDIUM | kernel: mm/ptdump: take the memory hotplug lock inside ptdum | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38683 | linux-libc-dev | MEDIUM | kernel: hv_netvsc: Fix panic during namespace deletion with | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38684 | linux-libc-dev | MEDIUM | kernel: net/sched: ets: use old 'nbands' while purging unuse | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38687 | linux-libc-dev | MEDIUM | kernel: comedi: fix race between polling and detaching | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38691 | linux-libc-dev | MEDIUM | kernel: pNFS: Fix uninited ptr deref in block/scsi layout | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38692 | linux-libc-dev | MEDIUM | kernel: exfat: add cluster chain loop check for dir | 6.1.38-4 | no fix | dagster |
| CVE-2025-38693 | linux-libc-dev | MEDIUM | kernel: media: dvb-frontends: w7090p: fix null-ptr-deref in | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38694 | linux-libc-dev | MEDIUM | kernel: media: dvb-frontends: dib7090p: fix null-ptr-deref i | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38695 | linux-libc-dev | MEDIUM | kernel: scsi: lpfc: Check for hdwq null ptr when cleaning up | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38696 | linux-libc-dev | MEDIUM | kernel: MIPS: Don't crash in stack_top() for tasks without A | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38698 | linux-libc-dev | MEDIUM | kernel: jfs: Regular file corruption check | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38700 | linux-libc-dev | MEDIUM | kernel: scsi: libiscsi: Initialize iscsi_conn->dd_data only | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38701 | linux-libc-dev | MEDIUM | kernel: ext4: do not BUG when INLINE_DATA_FL lacks system.da | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38705 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: fix null pointer access | 6.1.38-4 | no fix | dagster |
| CVE-2025-38706 | linux-libc-dev | MEDIUM | kernel: ASoC: core: Check for rtd == NULL in snd_soc_remove_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38709 | linux-libc-dev | MEDIUM | kernel: loop: Avoid updating block size under exclusive owne | 6.1.38-4 | no fix | dagster |
| CVE-2025-38710 | linux-libc-dev | MEDIUM | kernel: gfs2: Validate i_depth for exhash directories | 6.1.38-4 | no fix | dagster |
| CVE-2025-38711 | linux-libc-dev | MEDIUM | kernel: smb/server: avoid deadlock when linking with Replace | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38712 | linux-libc-dev | MEDIUM | kernel: hfsplus: don't use BUG_ON() in hfsplus_create_attrib | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38716 | linux-libc-dev | MEDIUM | kernel: hfs: fix general protection fault in hfs_find_init() | 6.1.38-4 | no fix | dagster |
| CVE-2025-38717 | linux-libc-dev | MEDIUM | kernel: net: kcm: Fix race condition in kcm_unattach() | 6.1.38-4 | no fix | dagster |
| CVE-2025-38721 | linux-libc-dev | MEDIUM | kernel: netfilter: ctnetlink: fix refcount leak on table dum | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38723 | linux-libc-dev | MEDIUM | kernel: LoongArch: BPF: Fix jump offset calculation in tailc | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38725 | linux-libc-dev | MEDIUM | kernel: net: usb: asix_devices: add phy_mask for ax88772 mdi | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38727 | linux-libc-dev | MEDIUM | kernel: netlink: avoid infinite retry looping in netlink_uni | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38732 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_reject: don't leak dst refcount for lo | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-38735 | linux-libc-dev | MEDIUM | kernel: gve: prevent ethtool ops after shutdown | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39673 | linux-libc-dev | MEDIUM | kernel: ppp: fix race conditions in ppp_fill_forward_path | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39675 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Add null pointer check in mod_hdcp_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39676 | linux-libc-dev | MEDIUM | kernel: scsi: qla4xxx: Prevent a potential error pointer der | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39677 | linux-libc-dev | MEDIUM | kernel: net/sched: Fix backlog accounting in qdisc_dequeue_i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39681 | linux-libc-dev | MEDIUM | kernel: x86/cpu/hygon: Add missing resctrl_cpu_detect() in b | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39684 | linux-libc-dev | MEDIUM | kernel: comedi: Fix use of uninitialized memory in do_insn_i | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39692 | linux-libc-dev | MEDIUM | kernel: smb: server: split ksmbd_rdma_stop_listening() out o | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39693 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Avoid a NULL pointer dereference | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39694 | linux-libc-dev | MEDIUM | kernel: s390/sclp: Fix SCCB present check | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39697 | linux-libc-dev | MEDIUM | kernel: NFS: Fix a race when updating an existing write | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39703 | linux-libc-dev | MEDIUM | kernel: net, hsr: reject HSR frame if skb can't hold tag | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39705 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: fix a Null pointer dereference vuln | 6.1.38-4 | no fix | dagster |
| CVE-2025-39706 | linux-libc-dev | MEDIUM | kernel: drm/amdkfd: Destroy KFD debugfs after destroy KFD wq | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39707 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: check if hubbub is NULL in debugfs/amdgp | 6.1.38-4 | no fix | dagster |
| CVE-2025-39709 | linux-libc-dev | MEDIUM | kernel: media: venus: protect against spurious interrupts du | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39713 | linux-libc-dev | MEDIUM | kernel: media: rainshadow-cec: fix TOCTOU race condition in | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39714 | linux-libc-dev | MEDIUM | kernel: media: usbtv: Lock resolution while streaming | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39715 | linux-libc-dev | MEDIUM | kernel: parisc: Revise gateway LWS calls to probe user read | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39716 | linux-libc-dev | MEDIUM | kernel: parisc: Revise __get_user() to probe user read acces | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39718 | linux-libc-dev | MEDIUM | kernel: vsock/virtio: Validate length in packet header befor | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39720 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix refcount leak causing resource not releas | 6.1.38-4 | no fix | dagster |
| CVE-2025-39721 | linux-libc-dev | MEDIUM | kernel: crypto: qat - flush misc workqueue during device shu | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-39724 | linux-libc-dev | MEDIUM | kernel: serial: 8250: fix panic due to PSLVERR | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39726 | linux-libc-dev | MEDIUM | kernel: s390/ism: fix concurrency management in ism_cmd() | 6.1.38-4 | no fix | dagster |
| CVE-2025-39728 | linux-libc-dev | MEDIUM | kernel: clk: samsung: Fix UBSAN panic in samsung_clk_init() | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-39731 | linux-libc-dev | MEDIUM | kernel: f2fs: vm_unmap_ram() may be called from an invalid c | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-39732 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: fix sleeping-in-atomic in ath11k_mac_o | 6.1.38-4 | no fix | dagster |
| CVE-2025-39734 | linux-libc-dev | MEDIUM | kernel: Revert "fs/ntfs3: Replace inode_trylock with inode_l | 6.1.38-4 | 6.1.148-1 | dagster |
| CVE-2025-39736 | linux-libc-dev | MEDIUM | kernel: mm/kmemleak: avoid deadlock by moving pr_warn() outs | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39737 | linux-libc-dev | MEDIUM | kernel: mm/kmemleak: avoid soft lockup in __kmemleak_do_clea | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39742 | linux-libc-dev | MEDIUM | kernel: RDMA: hfi1: fix possible divide-by-zero in find_hw_t | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39746 | linux-libc-dev | MEDIUM | kernel: wifi: ath10k: shutdown driver when hardware is unrel | 6.1.38-4 | no fix | dagster |
| CVE-2025-39747 | linux-libc-dev | MEDIUM | kernel: drm/msm: Add error handling for krealloc in metadata | 6.1.38-4 | no fix | dagster |
| CVE-2025-39748 | linux-libc-dev | MEDIUM | kernel: bpf: Forget ranges when refining tnum after JSET | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-39752 | linux-libc-dev | MEDIUM | kernel: ARM: rockchip: fix kernel hang during smp initializa | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39754 | linux-libc-dev | MEDIUM | kernel: mm/smaps: fix race between smaps_hugetlb_range and m | 6.1.38-4 | no fix | dagster |
| CVE-2025-39756 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via excessive file d | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39762 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: add null check | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39763 | linux-libc-dev | MEDIUM | kernel: ACPI: APEI: send SIGBUS to current task if synchrono | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-39764 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via double-increment | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-39767 | linux-libc-dev | MEDIUM | kernel: LoongArch: Optimize module load time by optimizing P | 6.1.38-4 | no fix | dagster |
| CVE-2025-39770 | linux-libc-dev | MEDIUM | kernel: net: gso: Forbid IPv6 TSO with extensions on devices | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39772 | linux-libc-dev | MEDIUM | kernel: drm/hisilicon/hibmc: fix the hibmc loaded failed bug | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39773 | linux-libc-dev | MEDIUM | kernel: net: bridge: fix soft lockup in br_multicast_query_e | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39775 | linux-libc-dev | MEDIUM | kernel: Linux kernel: mremap local denial of service | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-39779 | linux-libc-dev | MEDIUM | kernel: btrfs: subpage: keep TOWRITE tag until folio is clea | 6.1.38-4 | no fix | dagster |
| CVE-2025-39782 | linux-libc-dev | MEDIUM | kernel: jbd2: prevent softlockup in jbd2_log_do_checkpoint() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39787 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in MDT loader due to | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39789 | linux-libc-dev | MEDIUM | kernel: crypto: x86/aegis - Add missing error checks | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39794 | linux-libc-dev | MEDIUM | kernel: ARM: tegra: Use I/O memcpy to write to IRAM | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39795 | linux-libc-dev | MEDIUM | kernel: block: avoid possible overflow for chunk_sectors che | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39798 | linux-libc-dev | MEDIUM | kernel: NFS: Fix the setting of capabilities when automounti | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39800 | linux-libc-dev | MEDIUM | kernel: Linux kernel (btrfs): Denial of Service due to unexp | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39801 | linux-libc-dev | MEDIUM | kernel: usb: dwc3: Remove WARN_ON for device endpoint comman | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39805 | linux-libc-dev | MEDIUM | kernel: net: macb: fix unregister_netdev call order in macb_ | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-39808 | linux-libc-dev | MEDIUM | kernel: HID: hid-ntrig: fix unable to handle page fault in n | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39812 | linux-libc-dev | MEDIUM | kernel: sctp: initialize more fields in sctp_v6_from_sk() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39813 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ftrace due to rac | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39819 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via resource leak in | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39822 | linux-libc-dev | MEDIUM | kernel: io_uring/kbuf: fix signedness in this_len calculatio | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-39825 | linux-libc-dev | MEDIUM | kernel: smb: client: fix race with concurrent opens in renam | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39827 | linux-libc-dev | MEDIUM | kernel: net: rose: include node references in rose_neigh ref | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39829 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to improper reso | 6.1.38-4 | no fix | dagster |
| CVE-2025-39830 | linux-libc-dev | MEDIUM | kernel: net/mlx5: HWS, Fix memory leak in hws_pool_buddy_ini | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-39833 | linux-libc-dev | MEDIUM | kernel: mISDN: hfcpci: Fix warning when deleting uninitializ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39834 | linux-libc-dev | MEDIUM | kernel: net/mlx5: HWS, Fix memory leak in hws_action_get_sha | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-39838 | linux-libc-dev | MEDIUM | kernel: cifs: prevent NULL pointer dereference in UTF16 conv | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39842 | linux-libc-dev | MEDIUM | kernel: ocfs2: prevent release journal inode after journal s | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39843 | linux-libc-dev | MEDIUM | kernel: mm: slub: avoid wake up kswapd in set_track_prepare | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39844 | linux-libc-dev | MEDIUM | kernel: mm: move page table sync declarations to linux/pgtab | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39845 | linux-libc-dev | MEDIUM | kernel: x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arch | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39846 | linux-libc-dev | MEDIUM | kernel: pcmcia: Fix a NULL pointer dereference in __iodyn_fi | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39847 | linux-libc-dev | MEDIUM | kernel: ppp: fix memory leak in pad_compress_skb | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39848 | linux-libc-dev | MEDIUM | kernel: ax25: properly unshare skbs in ax25_kiss_rcv() | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39850 | linux-libc-dev | MEDIUM | kernel: vxlan: Fix NPD in {arp,neigh}_reduce() when using ne | 6.1.38-4 | no fix | dagster |
| CVE-2025-39851 | linux-libc-dev | MEDIUM | kernel: vxlan: Fix NPD when refreshing an FDB entry with a n | 6.1.38-4 | no fix | dagster |
| CVE-2025-39857 | linux-libc-dev | MEDIUM | kernel: net/smc: fix one NULL pointer dereference in smc_ib_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39865 | linux-libc-dev | MEDIUM | kernel: tee: fix NULL pointer dereference in tee_shm_put | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39876 | linux-libc-dev | MEDIUM | kernel: net: fec: Fix possible NPD in fec_enet_phy_reset_aft | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39885 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix recursive semaphore deadlock in fiemap ca | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39886 | linux-libc-dev | MEDIUM | kernel: bpf: Tell memcg to use allow_spinning=false path in | 6.1.38-4 | no fix | dagster |
| CVE-2025-39889 | linux-libc-dev | MEDIUM | kernel: Bluetooth: l2cap: Check encryption key size on incom | 6.1.38-4 | 6.1.135-1 | dagster |
| CVE-2025-39894 | linux-libc-dev | MEDIUM | kernel: netfilter: br_netfilter: do not check confirmed bit | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39902 | linux-libc-dev | MEDIUM | kernel: mm/slub: avoid accessing metadata when pointer is in | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39907 | linux-libc-dev | MEDIUM | kernel: mtd: rawnand: stm32_fmc2: avoid overlapping mappings | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39909 | linux-libc-dev | MEDIUM | kernel: mm/damon/lru_sort: avoid divide-by-zero in damon_lru | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39910 | linux-libc-dev | MEDIUM | kernel: mm/vmalloc, mm/kasan: respect gfp mask in kasan_popu | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39914 | linux-libc-dev | MEDIUM | kernel: tracing: Silence warning when chunk allocation fails | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39916 | linux-libc-dev | MEDIUM | kernel: mm/damon/reclaim: avoid divide-by-zero in damon_recl | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39920 | linux-libc-dev | MEDIUM | kernel: pcmcia: Add error handling for add_interval() in do_ | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39923 | linux-libc-dev | MEDIUM | kernel: dmaengine: qcom: bam_dma: Fix DT error handling for | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-39925 | linux-libc-dev | MEDIUM | kernel: can: j1939: implement NETDEV_UNREGISTER notification | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39927 | linux-libc-dev | MEDIUM | kernel: ceph: fix race condition validating r_parent before | 6.1.38-4 | no fix | dagster |
| CVE-2025-39929 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39931 | linux-libc-dev | MEDIUM | kernel: crypto: af_alg - Set merge to zero early in af_alg_s | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39932 | linux-libc-dev | MEDIUM | kernel: smb: client: let smbd_destroy() call disable_work_sy | 6.1.38-4 | no fix | dagster |
| CVE-2025-39933 | linux-libc-dev | MEDIUM | kernel: smb: client: let recv_done verify data_offset, data_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-39934 | linux-libc-dev | MEDIUM | kernel: drm: bridge: anx7625: Fix NULL pointer dereference w | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39937 | linux-libc-dev | MEDIUM | kernel: Linux kernel (rfkill-gpio): Denial of Service via un | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39938 | linux-libc-dev | MEDIUM | kernel: ASoC: qcom: q6apm-lpass-dais: Fix NULL pointer deref | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39940 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via integer overflow | 6.1.38-4 | no fix | dagster |
| CVE-2025-39942 | linux-libc-dev | MEDIUM | kernel: ksmbd: smbdirect: verify remaining_data_length respe | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39946 | linux-libc-dev | MEDIUM | kernel: tls: make sure to abort the stream if headers are bo | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39947 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Harden uplink netdev access against devic | 6.1.38-4 | no fix | dagster |
| CVE-2025-39949 | linux-libc-dev | MEDIUM | kernel: qed: Don't collect too many protection override GRC | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39953 | linux-libc-dev | MEDIUM | kernel: cgroup: split cgroup_destroy_wq into 3 workqueues | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39961 | linux-libc-dev | MEDIUM | kernel: iommu/amd/pgtbl: Fix possible race while increase pa | 6.1.38-4 | no fix | dagster |
| CVE-2025-39968 | linux-libc-dev | MEDIUM | kernel: Linux kernel i40e: Resource exhaustion via unbounded | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39969 | linux-libc-dev | MEDIUM | kernel: i40e: fix validation of VF state in get resources | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39970 | linux-libc-dev | MEDIUM | kernel: i40e: fix input validation logic for action_meta | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39972 | linux-libc-dev | MEDIUM | kernel: i40e: fix idx validation in i40e_validate_queue_map | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39977 | linux-libc-dev | MEDIUM | kernel: futex: Prevent use-after-free during requeue-PI | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39978 | linux-libc-dev | MEDIUM | kernel: octeontx2-pf: Fix potential use after free in otx2_t | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39980 | linux-libc-dev | MEDIUM | kernel: nexthop: Forbid FDB status change while nexthop is i | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39985 | linux-libc-dev | MEDIUM | kernel: can: mcba_usb: populate ndo_change_mtu() to prevent | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39986 | linux-libc-dev | MEDIUM | kernel: can: sun4i_can: populate ndo_change_mtu() to prevent | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39987 | linux-libc-dev | MEDIUM | kernel: can: hi311x: populate ndo_change_mtu() to prevent bu | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39988 | linux-libc-dev | MEDIUM | kernel: can: etas_es58x: populate ndo_change_mtu() to preven | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39989 | linux-libc-dev | MEDIUM | kernel: x86/mce: use is_copy_from_user() to determine copy-f | 6.1.38-4 | no fix | dagster |
| CVE-2025-39990 | linux-libc-dev | MEDIUM | kernel: bpf: Check the helper function is valid in get_helpe | 6.1.38-4 | no fix | dagster |
| CVE-2025-39994 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Use-after-free in xc5000 tuner driver | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39995 | linux-libc-dev | MEDIUM | kernel: media: i2c: tc358743: Fix use-after-free bugs caused | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39996 | linux-libc-dev | MEDIUM | kernel: Linux kernel (media: b2c2): Use-after-free vulnerabi | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-39998 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Buffer overflow in target_lu_gp_member | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40001 | linux-libc-dev | MEDIUM | kernel: scsi: mvsas: Fix use-after-free bugs in mvs_work_que | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40003 | linux-libc-dev | MEDIUM | kernel: net: mscc: ocelot: Fix use-after-free caused by cycl | 6.1.38-4 | no fix | dagster |
| CVE-2025-40005 | linux-libc-dev | MEDIUM | kernel: spi: cadence-quadspi: Implement refcount to handle u | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-40006 | linux-libc-dev | MEDIUM | kernel: mm/hugetlb: fix folio is still mapped when deleted | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40008 | linux-libc-dev | MEDIUM | kernel: kmsan: fix out-of-bounds access to shadow memory | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40010 | linux-libc-dev | MEDIUM | kernel: afs: Fix potential null pointer dereference in afs_p | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40011 | linux-libc-dev | MEDIUM | kernel: drm/gma500: Fix null dereference in hdmi teardown | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40013 | linux-libc-dev | MEDIUM | kernel: ASoC: qcom: audioreach: fix potential null pointer d | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40016 | linux-libc-dev | MEDIUM | kernel: Linux kernel: uvcvideo Denial of Service from invali | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-40018 | linux-libc-dev | MEDIUM | kernel: ipvs: Defer ip_vs_ftp unregister during netns cleanu | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40019 | linux-libc-dev | MEDIUM | kernel: crypto: essiv - Check ssize for decryption and in-pl | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40020 | linux-libc-dev | MEDIUM | kernel: can: peak_usb: fix shift-out-of-bounds issue | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40021 | linux-libc-dev | MEDIUM | kernel: tracing: dynevent: Add a missing lockdown check on d | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40022 | linux-libc-dev | MEDIUM | kernel: crypto: af_alg - Fix incorrect boolean values in af_ | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40025 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on node footer for non | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40026 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Don't (re)check L1 intercepts when complet | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40027 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service in 9p filesystem client vi | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40029 | linux-libc-dev | MEDIUM | kernel: bus: fsl-mc: Check return value of platform_get_reso | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40030 | linux-libc-dev | MEDIUM | kernel: pinctrl: check the return value of pinmux_ops::get_f | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40032 | linux-libc-dev | MEDIUM | kernel: PCI: endpoint: pci-epf-test: Add NULL check for DMA | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40036 | linux-libc-dev | MEDIUM | kernel: misc: fastrpc: fix possible map leak in fastrpc_put_ | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40039 | linux-libc-dev | MEDIUM | kernel: ksmbd: Fix race condition in RPC handle list access | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-40040 | linux-libc-dev | MEDIUM | kernel: mm/ksm: fix flag-dropping behavior in ksm_madvise | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40042 | linux-libc-dev | MEDIUM | kernel: tracing: Fix race condition in kprobe initialization | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40043 | linux-libc-dev | MEDIUM | kernel: net: nfc: nci: Add parameter validation for packet d | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40044 | linux-libc-dev | MEDIUM | kernel: fs: udf: fix OOB read in lengthAllocDescs handling | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40048 | linux-libc-dev | MEDIUM | kernel: uio_hv_generic: Let userspace take care of interrupt | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40049 | linux-libc-dev | MEDIUM | kernel: Squashfs: fix uninit-value in squashfs_get_parent | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40051 | linux-libc-dev | MEDIUM | kernel: vhost: vringh: Modify the return value check | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40053 | linux-libc-dev | MEDIUM | kernel: net: dlink: handle copy_thresh allocation failure | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40054 | linux-libc-dev | MEDIUM | kernel: f2fs: fix UAF issue in f2fs_merge_page_bio() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40055 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix double free in user_cluster_connect() | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40056 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Data corruption and denial of service | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40057 | linux-libc-dev | MEDIUM | kernel: ptp: Add a upper bound on max_vclocks | 6.1.38-4 | no fix | dagster |
| CVE-2025-40060 | linux-libc-dev | MEDIUM | kernel: coresight: trbe: Return NULL pointer for allocation | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40062 | linux-libc-dev | MEDIUM | kernel: crypto: hisilicon/qm - set NULL to qm->debug.qm_diff | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40065 | linux-libc-dev | MEDIUM | kernel: RISC-V: KVM: Write hgatp register with valid mode bi | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40068 | linux-libc-dev | MEDIUM | kernel: fs: ntfs3: Fix integer overflow in run_unpack() | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40070 | linux-libc-dev | MEDIUM | kernel: pps: fix warning in pps_register_cdev when register | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40071 | linux-libc-dev | MEDIUM | kernel: tty: n_gsm: Don't block input queue by waiting MSC | 6.1.38-4 | no fix | dagster |
| CVE-2025-40074 | linux-libc-dev | MEDIUM | kernel: ipv4: start using dst_dev_rcu() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40075 | linux-libc-dev | MEDIUM | kernel: tcp_metrics: use dst_dev_net_rcu() | 6.1.38-4 | no fix | dagster |
| CVE-2025-40077 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid overflow while left shift operati | 6.1.38-4 | no fix | dagster |
| CVE-2025-40078 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via improper access | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40080 | linux-libc-dev | MEDIUM | kernel: nbd: restrict sockets to TCP and UDP | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40081 | linux-libc-dev | MEDIUM | kernel: perf: arm_spe: Prevent overflow in PERF_IDX2OFF() | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40083 | linux-libc-dev | MEDIUM | kernel: net/sched: sch_qfq: Fix null-deref in agg_dequeue | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40084 | linux-libc-dev | MEDIUM | kernel: ksmbd: transport_ipc: validate payload size before r | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40085 | linux-libc-dev | MEDIUM | kernel: ALSA: usb-audio: Fix NULL pointer deference in try_t | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40086 | linux-libc-dev | MEDIUM | kernel: drm/xe: Don't allow evicting of BOs in same VM in ar | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-40087 | linux-libc-dev | MEDIUM | kernel: NFSD: Define a proc_layoutcommit for the FlexFiles l | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40088 | linux-libc-dev | MEDIUM | kernel: hfsplus: fix slab-out-of-bounds read in hfsplus_strc | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40092 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_ncm: Refactor bind path to use __free | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40093 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_ecm: Refactor bind path to use __free | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40094 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via NULL pointer der | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40095 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_rndis: Refactor bind path to use __fr | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40097 | linux-libc-dev | MEDIUM | kernel: ALSA: hda: Fix missing pointer check in hda_componen | 6.1.38-4 | no fix | dagster |
| CVE-2025-40098 | linux-libc-dev | MEDIUM | kernel: ALSA: hda: cs35l41: Fix NULL pointer dereference in | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-40099 | linux-libc-dev | MEDIUM | kernel: cifs: parse_dfs_referrals: prevent oob on malformed | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40100 | linux-libc-dev | MEDIUM | kernel: btrfs: do not assert we found block group item when | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40102 | linux-libc-dev | MEDIUM | kernel: Linux kernel KVM: Denial of Service due to uninitial | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40103 | linux-libc-dev | MEDIUM | kernel: smb: client: Fix refcount leak for cifs_sb_tlink | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40104 | linux-libc-dev | MEDIUM | kernel: ixgbevf: fix mailbox API compatibility by negotiatin | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40105 | linux-libc-dev | MEDIUM | kernel: vfs: Don't leak disconnected dentries on umount | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40106 | linux-libc-dev | MEDIUM | kernel: comedi: fix divide-by-zero in comedi_buf_munge() | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40107 | linux-libc-dev | MEDIUM | kernel: can: hi311x: fix null pointer dereference when resum | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40109 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in crypto random num | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40110 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Fix a null-ptr access in the cursor snoo | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-40111 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Fix Use-after-free in validation | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40112 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40115 | linux-libc-dev | MEDIUM | kernel: scsi: mpt3sas: Fix crash in transport port remove by | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40116 | linux-libc-dev | MEDIUM | kernel: usb: host: max3421-hcd: Fix error pointer dereferenc | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40118 | linux-libc-dev | MEDIUM | kernel: scsi: pm80xx: Fix array-index-out-of-of-bounds on rm | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40120 | linux-libc-dev | MEDIUM | kernel: net: usb: asix: hold PM usage ref to avoid PM/MDIO + | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40121 | linux-libc-dev | MEDIUM | kernel: ASoC: Intel: bytcr_rt5651: Fix invalid quirk input m | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40123 | linux-libc-dev | MEDIUM | kernel: bpf: Enforce expected_attach_type for tailcall compa | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40124 | linux-libc-dev | MEDIUM | kernel: sparc: fix accurate exception reporting in copy_{fro | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40125 | linux-libc-dev | MEDIUM | kernel: blk-mq: check kobject state_in_sysfs before deleting | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40126 | linux-libc-dev | MEDIUM | kernel: sparc: fix accurate exception reporting in copy_{fro | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40127 | linux-libc-dev | MEDIUM | kernel: hwrng: ks-sa - fix division by zero in ks_sa_rng_ini | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40130 | linux-libc-dev | MEDIUM | kernel: scsi: ufs: core: Fix data race in CPU latency PM QoS | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-40134 | linux-libc-dev | MEDIUM | kernel: dm: fix NULL pointer dereference in __dm_suspend() | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40136 | linux-libc-dev | MEDIUM | kernel: crypto: hisilicon/qm - request reserved interrupt fo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40137 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to truncate first page in error path of f2 | 6.1.38-4 | no fix | dagster |
| CVE-2025-40139 | linux-libc-dev | MEDIUM | kernel: smc: Use __sk_dst_get() and dst_dev_rcu() in in smc_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40140 | linux-libc-dev | MEDIUM | kernel: net: usb: Remove disruptive netif_wake_queue in rtl8 | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40146 | linux-libc-dev | MEDIUM | kernel: blk-mq: fix potential deadlock while nr_requests gro | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40147 | linux-libc-dev | MEDIUM | kernel: blk-throttle: fix access race during throttle policy | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-40150 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid migrating empty section | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-40153 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via mprotect() on hu | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40156 | linux-libc-dev | MEDIUM | kernel: PM / devfreq: mtk-cci: Fix potential error pointer d | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40160 | linux-libc-dev | MEDIUM | kernel: xen/events: Return -EEXIST for bound VIRQs | 6.1.38-4 | no fix | dagster |
| CVE-2025-40164 | linux-libc-dev | MEDIUM | kernel: usbnet: Fix using smp_processor_id() in preemptible | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-40167 | linux-libc-dev | MEDIUM | kernel: ext4: detect invalid INLINE_DATA + EXTENTS flag comb | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40171 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service in nvmet-fc due to resourc | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40173 | linux-libc-dev | MEDIUM | kernel: net/ip6_tunnel: Prevent perpetual tunnel growth | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40178 | linux-libc-dev | MEDIUM | kernel: pid: Add a judgment for ns null in pid_nr_ns | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40179 | linux-libc-dev | MEDIUM | kernel: ext4: verify orphan file size is not too big | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40180 | linux-libc-dev | MEDIUM | kernel: mailbox: zynqmp-ipi: Fix out-of-bounds access in mai | 6.1.38-4 | no fix | dagster |
| CVE-2025-40183 | linux-libc-dev | MEDIUM | kernel: bpf: Fix metadata_dst leak __bpf_redirect_neigh_v{4, | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40187 | linux-libc-dev | MEDIUM | kernel: net/sctp: fix a null dereference in sctp_disposition | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40188 | linux-libc-dev | MEDIUM | kernel: pwm: berlin: Fix wrong register in suspend/resume | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40190 | linux-libc-dev | MEDIUM | kernel: ext4: guard against EA inode refcount underflow in x | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40193 | linux-libc-dev | MEDIUM | kernel: xtensa: simdisk: add input size check in proc_write_ | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40194 | linux-libc-dev | MEDIUM | kernel: cpufreq: intel_pstate: Fix object lifecycle issue in | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40196 | linux-libc-dev | MEDIUM | kernel: fs: quota: create dedicated workqueue for quota_rele | 6.1.38-4 | no fix | dagster |
| CVE-2025-40197 | linux-libc-dev | MEDIUM | kernel: media: mc: Clear minor number before put device | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40198 | linux-libc-dev | MEDIUM | kernel: ext4: avoid potential buffer over-read in parse_appl | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40200 | linux-libc-dev | MEDIUM | kernel: Squashfs: reject negative file sizes in squashfs_rea | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40201 | linux-libc-dev | MEDIUM | kernel: kernel/sys.c: fix the racy usage of task_lock(tsk->g | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40202 | linux-libc-dev | MEDIUM | kernel: ipmi: Rework user message limit handling | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40204 | linux-libc-dev | MEDIUM | kernel: sctp: Fix MAC comparison to be constant-time | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40205 | linux-libc-dev | MEDIUM | kernel: btrfs: avoid potential out-of-bounds in btrfs_encode | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40206 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_objref: validate objref and objrefmap | 6.1.38-4 | no fix | dagster |
| CVE-2025-40207 | linux-libc-dev | MEDIUM | kernel: media: v4l2-subdev: Fix alloc failure check in v4l2_ | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40211 | linux-libc-dev | MEDIUM | kernel: ACPI: video: Fix use-after-free in acpi_video_switch | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40214 | linux-libc-dev | MEDIUM | kernel: af_unix: Initialise scc_index in unix_add_edge() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40215 | linux-libc-dev | MEDIUM | kernel: xfrm: delete x->tunnel as we delete x | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-40217 | linux-libc-dev | MEDIUM | kernel: pidfs: validate extensible ioctls | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-40219 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to race conditio | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-40220 | linux-libc-dev | MEDIUM | kernel: fuse: fix livelock in synchronous file put from fuse | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40223 | linux-libc-dev | MEDIUM | kernel: most: usb: Fix use-after-free in hdm_disconnect | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40231 | linux-libc-dev | MEDIUM | kernel: vsock: fix lock inversion in vsock_assign_transport( | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40233 | linux-libc-dev | MEDIUM | kernel: ocfs2: clear extent cache after moving/defragmenting | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40242 | linux-libc-dev | MEDIUM | kernel: gfs2: Fix unlikely race in gdlm_put_lock | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-40243 | linux-libc-dev | MEDIUM | kernel: hfs: fix KMSAN uninit-value issue in hfs_find_set_ze | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40244 | linux-libc-dev | MEDIUM | kernel: hfsplus: fix KMSAN uninit-value issue in __hfsplus_e | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40245 | linux-libc-dev | MEDIUM | kernel: nios2: ensure that memblock.current_limit is set whe | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40247 | linux-libc-dev | MEDIUM | kernel: drm/msm: Fix pgtable prealloc error path | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40251 | linux-libc-dev | MEDIUM | kernel: devlink: rate: Unset parent pointer in devl_rate_nod | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-40252 | linux-libc-dev | MEDIUM | kernel: net: qlogic/qede: fix potential out-of-bounds read i | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40253 | linux-libc-dev | MEDIUM | kernel: s390/ctcm: Fix double-kfree | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40254 | linux-libc-dev | MEDIUM | kernel: net: openvswitch: remove never-working support for s | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40257 | linux-libc-dev | MEDIUM | kernel: Linux kernel MPTCP: Privilege escalation or denial o | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40261 | linux-libc-dev | MEDIUM | kernel: nvme: nvme-fc: Ensure ->ioerr_work is cancelled in n | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-40262 | linux-libc-dev | MEDIUM | kernel: Input: imx_sc_key - fix memory corruption on unload | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40263 | linux-libc-dev | MEDIUM | kernel: Input: cros_ec_keyb - fix an invalid memory access | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40264 | linux-libc-dev | MEDIUM | kernel: Linux kernel: be2net driver NULL pointer dereference | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40266 | linux-libc-dev | MEDIUM | kernel: KVM: arm64: Check the untrusted offset in FF-A memor | 6.1.38-4 | no fix | dagster |
| CVE-2025-40272 | linux-libc-dev | MEDIUM | kernel: mm/secretmem: fix use-after-free race in fault handl | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40273 | linux-libc-dev | MEDIUM | kernel: NFSD: free copynotify stateid in nfs4_free_ol_statei | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40275 | linux-libc-dev | MEDIUM | kernel: ALSA: usb-audio: Fix NULL pointer dereference in snd | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40278 | linux-libc-dev | MEDIUM | kernel: net: sched: act_ife: initialize struct tc_ife to fix | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40279 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Information disclosure via uninitializ | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40280 | linux-libc-dev | MEDIUM | kernel: tipc: Fix use-after-free in tipc_mon_reinit_self() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40281 | linux-libc-dev | MEDIUM | kernel: sctp: prevent possible shift-out-of-bounds in sctp_t | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40282 | linux-libc-dev | MEDIUM | kernel: Bluetooth: 6lowpan: reset link-local header on ipv6 | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40283 | linux-libc-dev | MEDIUM | kernel: Bluetooth: btusb: reorder cleanup in btusb_disconnec | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40284 | linux-libc-dev | MEDIUM | kernel: Bluetooth: MGMT: cancel mesh send timer when hdev re | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40285 | linux-libc-dev | MEDIUM | kernel: smb/server: fix possible refcount leak in smb2_sess_ | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40286 | linux-libc-dev | MEDIUM | kernel: smb/server: fix possible memory leak in smb2_read() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40288 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Fix NULL pointer dereference in VRAM log | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40289 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: hide VRAM sysfs attributes on GPUs witho | 6.1.38-4 | no fix | dagster |
| CVE-2025-40292 | linux-libc-dev | MEDIUM | kernel: virtio-net: fix received length check in big packets | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40293 | linux-libc-dev | MEDIUM | kernel: iommufd: Don't overflow during division for dirty tr | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40297 | linux-libc-dev | MEDIUM | kernel: net: bridge: fix use-after-free due to MST port stat | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40300 | linux-libc-dev | MEDIUM | kernel: x86/vmscape: Add conditional IBPB mitigation | 6.1.38-4 | 6.1.153-1 | dagster |
| CVE-2025-40306 | linux-libc-dev | MEDIUM | kernel: orangefs: fix xattr related buffer overflow.. | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40307 | linux-libc-dev | MEDIUM | kernel: exfat: validate cluster allocation bits of the alloc | 6.1.38-4 | no fix | dagster |
| CVE-2025-40308 | linux-libc-dev | MEDIUM | kernel: Bluetooth: bcsp: receive data only if registered | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40309 | linux-libc-dev | MEDIUM | kernel: Bluetooth: SCO: Fix UAF on sco_conn_free | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40311 | linux-libc-dev | MEDIUM | kernel: accel/habanalabs: support mapping cb with vmalloc-ba | 6.1.38-4 | no fix | dagster |
| CVE-2025-40312 | linux-libc-dev | MEDIUM | kernel: Linux kernel (JFS): Data corruption, information dis | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40313 | linux-libc-dev | MEDIUM | kernel: ntfs3: pretend $Extend records as regular files | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40314 | linux-libc-dev | MEDIUM | kernel: usb: cdns3: gadget: Use-after-free during failed ini | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40315 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_fs: Fix epfile null pointer access af | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40317 | linux-libc-dev | MEDIUM | kernel: regmap: slimbus: fix bus_context pointer in regmap i | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40319 | linux-libc-dev | MEDIUM | kernel: bpf: Sync pending IRQ work before freeing ring buffe | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40321 | linux-libc-dev | MEDIUM | kernel: wifi: brcmfmac: fix crash while sending Action Frame | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40323 | linux-libc-dev | MEDIUM | kernel: fbcon: Set fb_display[i]->mode to NULL when the mode | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40324 | linux-libc-dev | MEDIUM | kernel: NFSD: Fix crash in nfsd4_read_release() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40325 | linux-libc-dev | MEDIUM | kernel: md/raid10: wait barrier before returning discard req | 6.1.38-4 | no fix | dagster |
| CVE-2025-40331 | linux-libc-dev | MEDIUM | kernel: sctp: Prevent TOCTOU out-of-bounds write | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40333 | linux-libc-dev | MEDIUM | kernel: f2fs: fix infinite loop in __insert_extent_tree() | 6.1.38-4 | no fix | dagster |
| CVE-2025-40337 | linux-libc-dev | MEDIUM | kernel: net: stmmac: Correctly handle Rx checksum offload er | 6.1.38-4 | no fix | dagster |
| CVE-2025-40338 | linux-libc-dev | MEDIUM | kernel: ASoC: Intel: avs: Do not share the name pointer betw | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40339 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: fix nullptr err of vm_handle_moved | 6.1.38-4 | no fix | dagster |
| CVE-2025-40342 | linux-libc-dev | MEDIUM | kernel: nvme-fc: use lock accessing port_state and rport sta | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40343 | linux-libc-dev | MEDIUM | kernel: nvmet-fc: avoid scheduling association deletion twic | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40345 | linux-libc-dev | MEDIUM | kernel: usb: storage: sddr55: Reject out-of-bound new_pba | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40346 | linux-libc-dev | MEDIUM | kernel: arch_topology: Fix incorrect error check in topology | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40347 | linux-libc-dev | MEDIUM | kernel: net: enetc: fix the deadlock of enetc_mdio_lock | 6.1.38-4 | no fix | dagster |
| CVE-2025-40354 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: increase max link count and fix lin | 6.1.38-4 | no fix | dagster |
| CVE-2025-40355 | linux-libc-dev | MEDIUM | kernel: sysfs: check visibility before changing group attrib | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-40358 | linux-libc-dev | MEDIUM | kernel: riscv: stacktrace: Disable KASAN checks for non-curr | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-40360 | linux-libc-dev | MEDIUM | kernel: Linux kernel drm/sysfb: Denial of service via NULL p | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-40363 | linux-libc-dev | MEDIUM | kernel: net: ipv6: fix field-spanning memcpy warning in AH o | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-4598 | libsystemd0 | MEDIUM | systemd-coredump: race condition that allows a local attacke | 252.12-1~deb12u1 | 252.38-1~deb12u1 | dagster |
| CVE-2025-4598 | libudev1 | MEDIUM | systemd-coredump: race condition that allows a local attacke | 252.12-1~deb12u1 | 252.38-1~deb12u1 | dagster |
| CVE-2025-4673 | stdlib | MEDIUM | net/http: Sensitive headers not cleared on cross-origin redi | v1.22.4 | 1.23.10, 1.24.4 | dagster |
| CVE-2025-47906 | stdlib | MEDIUM | os/exec: Unexpected paths returned from LookPath in os/exec | v1.22.4 | 1.23.12, 1.24.6 | dagster |
| CVE-2025-47912 | stdlib | MEDIUM | net/url: Insufficient validation of bracketed IPv6 hostnames | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-58185 | stdlib | MEDIUM | encoding/asn1: Parsing DER payload can cause memory exhausti | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-58186 | stdlib | MEDIUM | golang.org/net/http: Lack of limit when parsing cookies can | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-58187 | stdlib | MEDIUM | crypto/x509: Quadratic complexity when checking name constra | v1.22.4 | 1.24.9, 1.25.3 | dagster |
| CVE-2025-58188 | stdlib | MEDIUM | crypto/x509: golang: Panic when validating certificates with | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-58189 | stdlib | MEDIUM | crypto/tls: go crypto/tls ALPN negotiation error contains at | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-59375 | libexpat1 | MEDIUM | firefox: thunderbird: expat: libexpat in Expat allows attack | 2.5.0-1 | no fix | dagster |
| CVE-2025-61723 | stdlib | MEDIUM | encoding/pem: Quadratic complexity when parsing some invalid | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-61724 | stdlib | MEDIUM | net/textproto: Excessive CPU consumption in Reader.ReadRespo | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-61725 | stdlib | MEDIUM | net/mail: Excessive CPU consumption in ParseAddress in net/m | v1.22.4 | 1.24.8, 1.25.2 | dagster |
| CVE-2025-61727 | stdlib | MEDIUM | golang: crypto/x509: excluded subdomain constraint does not | v1.22.4 | 1.24.11, 1.25.5 | dagster |
| CVE-2025-61730 | stdlib | MEDIUM | During the TLS 1.3 handshake if multiple messages are sent i | v1.22.4 | 1.24.12, 1.25.6 | dagster |
| CVE-2025-6395 | libgnutls30 | MEDIUM | gnutls: NULL pointer dereference in _gnutls_figure_common_ci | 3.7.9-2 | 3.7.9-2+deb12u5 | dagster |
| CVE-2025-66382 | libexpat1 | MEDIUM | libexpat: libexpat: Denial of service via crafted file proce | 2.5.0-1 | no fix | dagster |
| CVE-2025-68171 | linux-libc-dev | MEDIUM | kernel: x86/fpu: Ensure XFD state on signal delivery | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68173 | linux-libc-dev | MEDIUM | kernel: ftrace: Fix softlockup in ftrace_module_enable | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68174 | linux-libc-dev | MEDIUM | kernel: amd/amdkfd: enhance kfd process check in switch part | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68175 | linux-libc-dev | MEDIUM | kernel: media: nxp: imx8-isi: Fix streaming cleanup on relea | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-68176 | linux-libc-dev | MEDIUM | kernel: PCI: cadence: Check for the existence of cdns_pcie:: | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68177 | linux-libc-dev | MEDIUM | kernel: cpufreq/longhaul: handle NULL policy in longhaul_exi | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68185 | linux-libc-dev | MEDIUM | kernel: nfs4_setup_readdir(): insufficient locking for ->d_p | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68188 | linux-libc-dev | MEDIUM | kernel: tcp: use dst_dev_rcu() in tcp_fastopen_active_disabl | 6.1.38-4 | no fix | dagster |
| CVE-2025-68190 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu/atom: Check kcalloc() for WS buffer in am | 6.1.38-4 | no fix | dagster |
| CVE-2025-68192 | linux-libc-dev | MEDIUM | kernel: net: usb: qmi_wwan: initialize MAC header offset in | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68193 | linux-libc-dev | MEDIUM | kernel: drm/xe/guc: Add devm release action to safely tear d | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68194 | linux-libc-dev | MEDIUM | kernel: Linux kernel: imon media driver denial of service vi | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68200 | linux-libc-dev | MEDIUM | kernel: bpf: Add bpf_prog_run_data_pointers() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68201 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: remove two invalid BUG_ON()s | 6.1.38-4 | no fix | dagster |
| CVE-2025-68204 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to generic power | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68206 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_ct: add seqadj extension for natted c | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-68209 | linux-libc-dev | MEDIUM | kernel: mlx5: Fix default values in create CQ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68211 | linux-libc-dev | MEDIUM | kernel: ksm: use range-walk function to jump over holes in s | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68214 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to NULL function | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68217 | linux-libc-dev | MEDIUM | kernel: Input: pegasus-notetaker - fix potential out-of-boun | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68218 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in nvme-multipath du | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68219 | linux-libc-dev | MEDIUM | kernel: cifs: fix memory leak in smb3_fs_context_parse_param | 6.1.38-4 | no fix | dagster |
| CVE-2025-68220 | linux-libc-dev | MEDIUM | kernel: net: ethernet: ti: netcp: Standardize knav_dma_open_ | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68223 | linux-libc-dev | MEDIUM | kernel: drm/radeon: delete radeon_fence_process in is_signal | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68227 | linux-libc-dev | MEDIUM | kernel: mptcp: Fix proto fallback detection with BPF | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68229 | linux-libc-dev | MEDIUM | kernel: scsi: target: tcm_loop: Fix segfault in tcm_loop_tpg | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68231 | linux-libc-dev | MEDIUM | kernel: mm/mempool: fix poisoning order>0 pages with HIGHMEM | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68233 | linux-libc-dev | MEDIUM | kernel: drm/tegra: Add call to put_pid() | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68236 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service during UFS power dow | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68237 | linux-libc-dev | MEDIUM | kernel: mtdchar: fix integer overflow in read/write ioctls | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68238 | linux-libc-dev | MEDIUM | kernel: mtd: rawnand: cadence: fix DMA device NULL pointer d | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68239 | linux-libc-dev | MEDIUM | kernel: binfmt_misc: restore write access before closing fil | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-68241 | linux-libc-dev | MEDIUM | kernel: ipv4: route: Prevent rt_bind_exception() from rebind | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68244 | linux-libc-dev | MEDIUM | kernel: drm/i915: Avoid lock inversion when pinning to GGTT | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68245 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68246 | linux-libc-dev | MEDIUM | kernel: ksmbd: close accepted socket when per-IP limit rejec | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68249 | linux-libc-dev | MEDIUM | kernel: most: usb: hdm_probe: Fix calling put_device() befor | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-68251 | linux-libc-dev | MEDIUM | kernel: Linux kernel (erofs): Denial of Service via corrupte | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68254 | linux-libc-dev | MEDIUM | kernel: staging: rtl8723bs: fix out-of-bounds read in OnBeac | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68255 | linux-libc-dev | MEDIUM | kernel: staging: rtl8723bs: fix stack buffer overflow in OnA | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68256 | linux-libc-dev | MEDIUM | kernel: staging: rtl8723bs: fix out-of-bounds read in rtw_ge | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68257 | linux-libc-dev | MEDIUM | kernel: comedi: check device's attached status in compat ioc | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68258 | linux-libc-dev | MEDIUM | kernel: comedi: multiq3: sanitize config options in multiq3_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68259 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in KVM due to incorr | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68261 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ext4 due to a rac | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68263 | linux-libc-dev | MEDIUM | kernel: ksmbd: ipc: fix use-after-free in ipc_msg_send_reque | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68264 | linux-libc-dev | MEDIUM | kernel: ext4: refresh inline data size before write operatio | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68265 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in NVMe driver due t | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-68266 | linux-libc-dev | MEDIUM | kernel: bfs: Reconstruct file type when loading from disk | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68282 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Use-after-free in USB gadget driver du | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68283 | linux-libc-dev | MEDIUM | kernel: libceph: replace BUG_ON with bounds check for map->m | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68284 | linux-libc-dev | MEDIUM | kernel: libceph: prevent potential out-of-bounds writes in h | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68286 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Check NULL before accessing | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68288 | linux-libc-dev | MEDIUM | kernel: usb: storage: Fix memory leak in USB bulk transport | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68289 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_eem: Fix memory leak in eem_unwrap | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68290 | linux-libc-dev | MEDIUM | kernel: most: usb: fix double free on late probe failure | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68291 | linux-libc-dev | MEDIUM | kernel: mptcp: Initialise rcv_mss before calling tcp_send_ac | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68295 | linux-libc-dev | MEDIUM | kernel: smb: client: fix memory leak in cifs_construct_tcon( | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68296 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to race conditio | 6.1.38-4 | no fix | dagster |
| CVE-2025-68302 | linux-libc-dev | MEDIUM | kernel: net: sxgbe: fix potential NULL dereference in sxgbe_ | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68303 | linux-libc-dev | MEDIUM | kernel: platform/x86: intel: punit_ipc: fix memory corruptio | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68304 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_core: lookup hci_conn on RX path on p | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68307 | linux-libc-dev | MEDIUM | kernel: can: gs_usb: gs_usb_xmit_callback(): fix handling of | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68308 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in kvaser_usb CAN dr | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68310 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to deadlock in P | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68312 | linux-libc-dev | MEDIUM | kernel: usbnet: Prevents free active kevent | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68315 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to detect potential corrupted nid in free_ | 6.1.38-4 | no fix | dagster |
| CVE-2025-68318 | linux-libc-dev | MEDIUM | kernel: clk: thead: th1520-ap: set all AXI clocks to CLK_IS_ | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68319 | linux-libc-dev | MEDIUM | kernel: netconsole: Acquire su_mutex before navigating confi | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68320 | linux-libc-dev | MEDIUM | kernel: lan966x: Fix sleeping in atomic context | 6.1.38-4 | no fix | dagster |
| CVE-2025-68321 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to page allocati | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68322 | linux-libc-dev | MEDIUM | kernel: parisc: Avoid crash due to unaligned access in unwin | 6.1.38-4 | no fix | dagster |
| CVE-2025-68325 | linux-libc-dev | MEDIUM | kernel: net/sched: sch_cake: Fix incorrect qlen reduction in | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68327 | linux-libc-dev | MEDIUM | kernel: usb: renesas_usbhs: Fix synchronous external abort o | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68328 | linux-libc-dev | MEDIUM | kernel: firmware: stratix10-svc: fix bug in saving controlle | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68330 | linux-libc-dev | MEDIUM | kernel: iio: accel: bmc150: Fix irq assumption regression | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68331 | linux-libc-dev | MEDIUM | kernel: usb: uas: fix urb unmapping issue when the uas devic | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68332 | linux-libc-dev | MEDIUM | kernel: comedi: c6xdigio: Fix invalid PNP driver unregistrat | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68334 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to missing power | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68335 | linux-libc-dev | MEDIUM | kernel: comedi: pcl818: fix null-ptr-deref in pcl818_ai_canc | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68336 | linux-libc-dev | MEDIUM | kernel: locking/spinlock/debug: Fix data-race in do_raw_writ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68337 | linux-libc-dev | MEDIUM | kernel: jbd2: avoid bug_on in jbd2_journal_get_create_access | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68339 | linux-libc-dev | MEDIUM | kernel: atm/fore200e: Fix possible data race in fore200e_ope | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68340 | linux-libc-dev | MEDIUM | kernel: team: Move team device type change at the end of tea | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68342 | linux-libc-dev | MEDIUM | kernel: can: gs_usb: gs_usb_receive_bulk_callback(): check a | 6.1.38-4 | no fix | dagster |
| CVE-2025-68343 | linux-libc-dev | MEDIUM | kernel: can: gs_usb: gs_usb_receive_bulk_callback(): check a | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68344 | linux-libc-dev | MEDIUM | kernel: ALSA: wavefront: Fix integer overflow in sample size | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68345 | linux-libc-dev | MEDIUM | kernel: Linux kernel ALSA: Denial of Service due to NULL poi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68346 | linux-libc-dev | MEDIUM | kernel: ALSA: dice: fix buffer overflow in detect_stream_for | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68353 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service via NULL pointer dereferen | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68354 | linux-libc-dev | MEDIUM | kernel: regulator: core: Protect regulator_supply_alias_list | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68358 | linux-libc-dev | MEDIUM | kernel: btrfs: fix racy bitfield write in btrfs_clear_space_ | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-68359 | linux-libc-dev | MEDIUM | kernel: btrfs: fix double free of qgroup record after failur | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68360 | linux-libc-dev | MEDIUM | kernel: wifi: mt76: wed: use proper wed reference in mt76 we | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68362 | linux-libc-dev | MEDIUM | kernel: wifi: rtl818x: rtl8187: Fix potential buffer underfl | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68363 | linux-libc-dev | MEDIUM | kernel: bpf: Check skb->transport_header is set in bpf_skb_c | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68364 | linux-libc-dev | MEDIUM | kernel: ocfs2: relax BUG() to ocfs2_error() in __ocfs2_move_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68365 | linux-libc-dev | MEDIUM | kernel: fs/ntfs3: Initialize allocated memory before use | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68367 | linux-libc-dev | MEDIUM | kernel: Linux kernel (macintosh/mac_hid): Denial of Service | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68368 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service in md driver via uninitial | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68369 | linux-libc-dev | MEDIUM | kernel: ntfs3: init run lock for extend inode | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68372 | linux-libc-dev | MEDIUM | kernel: nbd: defer config put in recv_work | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68376 | linux-libc-dev | MEDIUM | kernel: coresight: ETR: Fix ETR buffer use-after-free issue | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68378 | linux-libc-dev | MEDIUM | kernel: bpf: Fix stackmap overflow check in __bpf_get_stacki | 6.1.38-4 | no fix | dagster |
| CVE-2025-68379 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in RDMA subsystem vi | 6.1.38-4 | no fix | dagster |
| CVE-2025-68380 | linux-libc-dev | MEDIUM | kernel: wifi: ath11k: fix peer HE MCS assignment | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68725 | linux-libc-dev | MEDIUM | kernel: bpf: Do not let BPF test infra emit invalid GSO type | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68727 | linux-libc-dev | MEDIUM | kernel: ntfs3: Fix uninit buffer allocated by __getname() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68728 | linux-libc-dev | MEDIUM | kernel: ntfs3: fix uninit memory after failed mi_read in mi_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68729 | linux-libc-dev | MEDIUM | kernel: wifi: ath12k: Fix MSDU buffer types handling in RX e | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68730 | linux-libc-dev | MEDIUM | kernel: accel/ivpu: Fix page fault in ivpu_bo_unbind_all_bos | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68732 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in GPU host1x due to | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68733 | linux-libc-dev | MEDIUM | kernel: smack: fix bug: unprivileged task can create labels | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68734 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68735 | linux-libc-dev | MEDIUM | kernel: drm/panthor: Prevent potential UAF in group creation | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68736 | linux-libc-dev | MEDIUM | kernel: landlock: Fix handling of disconnected directories | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68742 | linux-libc-dev | MEDIUM | kernel: bpf: Fix invalid prog->stats access when update_effe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68745 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in qla2xxx SCSI driv | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68750 | linux-libc-dev | MEDIUM | kernel: usb: potential integer overflow in usbg_make_tpg() | 6.1.38-4 | 6.1.147-1 | dagster |
| CVE-2025-68753 | linux-libc-dev | MEDIUM | kernel: ALSA: firewire-motu: add bounds check in put_user lo | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68755 | linux-libc-dev | MEDIUM | kernel: staging: most: remove broken i2c driver | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68757 | linux-libc-dev | MEDIUM | kernel: drm/vgem-fence: Fix potential deadlock on release | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68758 | linux-libc-dev | MEDIUM | kernel: backlight: led-bl: Add devlink to supplier LEDs | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68759 | linux-libc-dev | MEDIUM | kernel: wifi: rtl818x: Fix potential memory leaks in rtl8180 | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68764 | linux-libc-dev | MEDIUM | kernel: NFS: Automounted filesystems should inherit ro,noexe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68765 | linux-libc-dev | MEDIUM | kernel: mt76: mt7615: Fix memory leak in mt7615_mcu_wtbl_sta | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68766 | linux-libc-dev | MEDIUM | kernel: irqchip/mchp-eic: Fix error code in mchp_eic_domain_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68767 | linux-libc-dev | MEDIUM | kernel: hfsplus: Verify inode mode when loading from disk | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68768 | linux-libc-dev | MEDIUM | kernel: inet: frags: flush pending skbs in fqdir_pre_exit() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-68769 | linux-libc-dev | MEDIUM | kernel: f2fs: fix return value of f2fs_recover_fsync_data() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68771 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix kernel BUG in ocfs2_find_victim_chain | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68772 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid updating compression context duri | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68773 | linux-libc-dev | MEDIUM | kernel: spi: fsl-cpm: Check length parity before switching t | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68774 | linux-libc-dev | MEDIUM | kernel: hfsplus: fix missing hfs_bnode_get() in __hfs_bnode_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68776 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via NULL pointer der | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68777 | linux-libc-dev | MEDIUM | kernel: Input: ti_am335x_tsc - fix off-by-one error in wire_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68778 | linux-libc-dev | MEDIUM | kernel: btrfs: don't log conflicting inode if it's a dir mov | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68780 | linux-libc-dev | MEDIUM | kernel: sched/deadline: only set free_cpus for online runque | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68781 | linux-libc-dev | MEDIUM | kernel: usb: phy: fsl-usb: Fix use-after-free in delayed wor | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68783 | linux-libc-dev | MEDIUM | kernel: ALSA: usb-mixer: us16x08: validate meter packet indi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68785 | linux-libc-dev | MEDIUM | kernel: net: openvswitch: fix middle attribute validation in | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68786 | linux-libc-dev | MEDIUM | kernel: ksmbd: skip lock-range check on equal size to avoid | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68787 | linux-libc-dev | MEDIUM | kernel: netrom: Fix memory leak in nr_sendmsg() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68794 | linux-libc-dev | MEDIUM | kernel: iomap: adjust read range correctly for non-block-ali | 6.1.38-4 | no fix | dagster |
| CVE-2025-68795 | linux-libc-dev | MEDIUM | kernel: ethtool: Avoid overflowing userspace buffer on stats | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68796 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid updating zero-sized extent in ext | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68797 | linux-libc-dev | MEDIUM | kernel: char: applicom: fix NULL pointer dereference in ac_i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68798 | linux-libc-dev | MEDIUM | kernel: perf/x86/amd: Check event before enable to avoid GPF | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68799 | linux-libc-dev | MEDIUM | kernel: caif: fix integer underflow in cffrml_receive() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68801 | linux-libc-dev | MEDIUM | kernel: mlxsw: spectrum_router: Fix neighbour use-after-free | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68803 | linux-libc-dev | MEDIUM | kernel: NFSD: NFSv4 file creation neglects setting ACL | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68804 | linux-libc-dev | MEDIUM | kernel: platform/chrome: cros_ec_ishtp: Fix UAF after unbind | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68806 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix buffer validation by including null termi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68808 | linux-libc-dev | MEDIUM | kernel: media: vidtv: initialize local pointers upon transfe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68809 | linux-libc-dev | MEDIUM | kernel: ksmbd: vfs: fix race on m_flags in vfs_cache | 6.1.38-4 | no fix | dagster |
| CVE-2025-68813 | linux-libc-dev | MEDIUM | kernel: ipvs: fix ipv4 null-ptr-deref in route error path | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68814 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in io_uring's __io_openat_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68815 | linux-libc-dev | MEDIUM | kernel: net/sched: ets: Remove drr class from the active lis | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68816 | linux-libc-dev | MEDIUM | kernel: Linux kernel: mlx5 firmware tracer vulnerable to arb | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68818 | linux-libc-dev | MEDIUM | kernel: scsi: Revert "scsi: qla2xxx: Perform lockless comman | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68819 | linux-libc-dev | MEDIUM | kernel: media: dvb-usb: dtv5100: fix out-of-bounds in dtv510 | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68820 | linux-libc-dev | MEDIUM | kernel: ext4: xattr: fix null pointer deref in ext4_raw_inod | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68821 | linux-libc-dev | MEDIUM | kernel: Linux kernel FUSE: Denial of Service via readahead r | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68822 | linux-libc-dev | MEDIUM | kernel: Input: alps - fix use-after-free bugs caused by dev3 | 6.1.38-4 | no fix | dagster |
| CVE-2025-68823 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ublk due to deadl | 6.1.38-4 | no fix | dagster |
| CVE-2025-68972 | gpgv | MEDIUM | gnupg: GnuPG: Signature bypass via form feed character in si | 2.2.40-1.1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-69227 | aiohttp | MEDIUM | aiohttp: aiohttp: Denial of Service via specially crafted PO | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69228 | aiohttp | MEDIUM | aiohttp: aiohttp: Denial of Service via memory exhaustion fr | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69229 | aiohttp | MEDIUM | aiohttp: AIOHTTP: Denial of Service via excessive CPU usage | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-71064 | linux-libc-dev | MEDIUM | kernel: net: hns3: using the num_tqps in the vf driver to ap | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71065 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to avoid potential deadlock | 6.1.38-4 | no fix | dagster |
| CVE-2025-71066 | linux-libc-dev | MEDIUM | kernel: net/sched: ets: Always remove class from active list | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71067 | linux-libc-dev | MEDIUM | kernel: ntfs: set dummy blocksize to read boot_block when mo | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2025-71069 | linux-libc-dev | MEDIUM | kernel: f2fs: invalidate dentry cache on failed whiteout cre | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71074 | linux-libc-dev | MEDIUM | kernel: functionfs: fix the open/removal races | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-71077 | linux-libc-dev | MEDIUM | kernel: tpm: Cap the number of PCR banks | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71079 | linux-libc-dev | MEDIUM | kernel: net: nfc: fix deadlock between nfc_unregister_device | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71081 | linux-libc-dev | MEDIUM | kernel: ASoC: stm32: sai: fix OF node leak on probe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71083 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service via NULL pointer dereferen | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71084 | linux-libc-dev | MEDIUM | kernel: RDMA/cm: Fix leaking the multicast GID table referen | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71085 | linux-libc-dev | MEDIUM | kernel: ipv6: BUG() in pskb_expand_head() as part of calipso | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71087 | linux-libc-dev | MEDIUM | kernel: iavf: fix off-by-one issues in iavf_config_rss_reg() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71088 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via MPTCP race condi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71094 | linux-libc-dev | MEDIUM | kernel: net: usb: asix: validate PHY address before use | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71095 | linux-libc-dev | MEDIUM | kernel: net: stmmac: fix the crash issue for zero copy XDP_T | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71096 | linux-libc-dev | MEDIUM | kernel: RDMA/core: Check for the presence of LS_NLA_TYPE_DGI | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71097 | linux-libc-dev | MEDIUM | kernel: Linux kernel (IPv4): Denial of Service due to refere | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71098 | linux-libc-dev | MEDIUM | kernel: ip6_gre: make ip6gre_header() robust | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71102 | linux-libc-dev | MEDIUM | kernel: scs: fix a wrong parameter in __scs_magic | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71104 | linux-libc-dev | MEDIUM | kernel: Linux kernel KVM: Host system hard lockup due to per | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71105 | linux-libc-dev | MEDIUM | kernel: f2fs: use global inline_xattr_slab instead of per-sb | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71108 | linux-libc-dev | MEDIUM | kernel: usb: typec: ucsi: Handle incorrect num_connectors ca | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71109 | linux-libc-dev | MEDIUM | kernel: MIPS: ftrace: Fix memory corruption when kernel is l | 6.1.38-4 | no fix | dagster |
| CVE-2025-71111 | linux-libc-dev | MEDIUM | kernel: hwmon: (w83791d) Convert macros to functions to avoi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71113 | linux-libc-dev | MEDIUM | kernel: crypto: af_alg - zero initialize memory allocated vi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71114 | linux-libc-dev | MEDIUM | kernel: via_wdt: fix critical boot hang due to unnamed resou | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71117 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via deadlock in bloc | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-71118 | linux-libc-dev | MEDIUM | kernel: ACPICA: Avoid walking the Namespace if start_node is | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71119 | linux-libc-dev | MEDIUM | kernel: powerpc/kexec: Enable SMT before waking offline CPUs | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71120 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in SUNRPC via zero-l | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71121 | linux-libc-dev | MEDIUM | kernel: parisc: Do not reprogram affinitiy on ASP chip | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71125 | linux-libc-dev | MEDIUM | kernel: tracing: Do not register unsupported perf events | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71126 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Deadlock due to MPTCP packet reinjecti | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71127 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: Discard Beacon frames to non-broadca | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71129 | linux-libc-dev | MEDIUM | kernel: LoongArch: BPF: Sign extend kfunc call arguments | 6.1.38-4 | no fix | dagster |
| CVE-2025-71130 | linux-libc-dev | MEDIUM | kernel: drm/i915/gem: Zero-initialize the eb.vma array in i9 | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71131 | linux-libc-dev | MEDIUM | kernel: crypto: seqiv - Do not use req->iv after crypto_aead | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71132 | linux-libc-dev | MEDIUM | kernel: smc91x: fix broken irq-context in PREEMPT_RT | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71138 | linux-libc-dev | MEDIUM | kernel: drm/msm/dpu: Add missing NULL pointer check for ping | 6.1.38-4 | no fix | dagster |
| CVE-2025-71141 | linux-libc-dev | MEDIUM | kernel: drm/tilcdc: Fix removal actions in case of failed pr | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-71144 | linux-libc-dev | MEDIUM | kernel: mptcp: ensure context reset on disconnect() | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71147 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to memory leak i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71150 | linux-libc-dev | MEDIUM | kernel: Linux kernel ksmbd: Denial of Service via reference | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71154 | linux-libc-dev | MEDIUM | kernel: net: usb: rtl8150: fix memory leak on usb_submit_urb | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71160 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: avoid chain re-validation if p | 6.1.38-4 | no fix | dagster |
| CVE-2025-71161 | linux-libc-dev | MEDIUM | kernel: dm-verity: disable recursive forward error correctio | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-71163 | linux-libc-dev | MEDIUM | kernel: dmaengine: idxd: fix device leaks on compat bind and | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71180 | linux-libc-dev | MEDIUM | kernel: counter: interrupt-cnt: Drop IRQF_NO_THREAD flag | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71182 | linux-libc-dev | MEDIUM | kernel: can: j1939: make j1939_session_activate() fail if de | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71183 | linux-libc-dev | MEDIUM | kernel: btrfs: always detect conflicting inodes when logging | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71184 | linux-libc-dev | MEDIUM | kernel: btrfs: fix NULL dereference on root when tracing ino | 6.1.38-4 | no fix | dagster |
| CVE-2025-71185 | linux-libc-dev | MEDIUM | kernel: dmaengine: ti: dma-crossbar: fix device leak on am33 | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71186 | linux-libc-dev | MEDIUM | kernel: dmaengine: stm32: dmamux: fix device leak on route a | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71188 | linux-libc-dev | MEDIUM | kernel: dmaengine: lpc18xx-dmamux: fix device leak on route | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-71189 | linux-libc-dev | MEDIUM | kernel: dmaengine: dw: dmamux: fix OF node leak on route all | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71190 | linux-libc-dev | MEDIUM | kernel: dmaengine: bcm-sba-raid: fix device leak on probe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71191 | linux-libc-dev | MEDIUM | kernel: dmaengine: at_hdmac: fix device leak on of_dma_xlate | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71192 | linux-libc-dev | MEDIUM | kernel: ALSA: ac97: fix a double free in snd_ac97_controller | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71193 | linux-libc-dev | MEDIUM | kernel: phy: qcom-qusb2: Fix NULL pointer dereference on ear | 6.1.38-4 | no fix | dagster |
| CVE-2025-71194 | linux-libc-dev | MEDIUM | kernel: btrfs: fix deadlock in wait_current_trans() due to i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71196 | linux-libc-dev | MEDIUM | kernel: phy: stm32-usphyc: Fix off by one in probe() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71197 | linux-libc-dev | MEDIUM | kernel: w1: therm: Fix off-by-one buffer overflow in alarms_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71198 | linux-libc-dev | MEDIUM | kernel: iio: imu: st_lsm6dsx: fix iio_chan_spec for sensors | 6.1.38-4 | no fix | dagster |
| CVE-2025-71199 | linux-libc-dev | MEDIUM | kernel: iio: adc: at91-sama5d2_adc: Fix potential use-after- | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71200 | linux-libc-dev | MEDIUM | kernel: mmc: sdhci-of-dwcmshc: Prevent illegal clock reducti | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-71202 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory Corruption and Kernel Crashes v | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-71222 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in wlcore due to ins | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71225 | linux-libc-dev | MEDIUM | kernel: md: suspend array while updating raid_disks via sysf | 6.1.38-4 | no fix | dagster |
| CVE-2025-71227 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: don't WARN for connections on invali | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-71232 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Free sp in error path to fix system c | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71233 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via NULL pointer der | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71235 | linux-libc-dev | MEDIUM | kernel: scsi: qla2xxx: Delay module unload while fabric scan | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71236 | linux-libc-dev | MEDIUM | kernel: Linux kernel qla2xxx driver: Denial of Service via N | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71237 | linux-libc-dev | MEDIUM | kernel: nilfs2: Fix potential block overflow that cause syst | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71239 | linux-libc-dev | MEDIUM | kernel: audit: add fchmodat2() to change attributes class | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2025-71265 | linux-libc-dev | MEDIUM | kernel: fs: ntfs3: fix infinite loop in attr_load_runs_range | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-71266 | linux-libc-dev | MEDIUM | kernel: fs: ntfs3: check return value of indx_find to avoid | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-71267 | linux-libc-dev | MEDIUM | kernel: fs: ntfs3: fix infinite loop triggered by zero-sized | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-71269 | linux-libc-dev | MEDIUM | kernel: btrfs: do not free data reservation in fallback from | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2025-7709 | libsqlite3-0 | MEDIUM | An integer overflow exists in the FTS5 https://sqlite.org/f | 3.40.1-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8058 | libc-bin | MEDIUM | glibc: Double free in glibc | 2.36-9+deb12u1 | 2.36-9+deb12u13 | dagster |
| CVE-2025-8058 | libc-dev-bin | MEDIUM | glibc: Double free in glibc | 2.36-9+deb12u1 | 2.36-9+deb12u13 | dagster |
| CVE-2025-8058 | libc6 | MEDIUM | glibc: Double free in glibc | 2.36-9+deb12u1 | 2.36-9+deb12u13 | dagster |
| CVE-2025-8058 | libc6-dev | MEDIUM | glibc: Double free in glibc | 2.36-9+deb12u1 | 2.36-9+deb12u13 | dagster |
| CVE-2025-8869 | pip | MEDIUM | pip: pip missing checks on symbolic link extraction | 23.0.1 | 25.3 | dagster, slack-rqd-api |
| CVE-2025-9820 | libgnutls30 | MEDIUM | gnutls: Stack-based Buffer Overflow in gnutls_pkcs11_token_i | 3.7.9-2 | 3.7.9-2+deb12u6 | dagster |
| CVE-2026-0915 | libc-bin | MEDIUM | glibc: glibc: Information disclosure via zero-valued network | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-0915 | libc-dev-bin | MEDIUM | glibc: glibc: Information disclosure via zero-valued network | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-0915 | libc6 | MEDIUM | glibc: glibc: Information disclosure via zero-valued network | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-0915 | libc6-dev | MEDIUM | glibc: glibc: Information disclosure via zero-valued network | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-1965 | libcurl3-gnutls | MEDIUM | curl: curl: Authentication bypass due to incorrect connectio | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-2219 | dpkg | MEDIUM | It was discovered that dpkg-deb (a component of dpkg, the De | 1.21.22 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-2219 | dpkg-dev | MEDIUM | It was discovered that dpkg-deb (a component of dpkg, the De | 1.22.21 | 1.22.22 | slack-rqd-api |
| CVE-2026-2219 | libdpkg-perl | MEDIUM | It was discovered that dpkg-deb (a component of dpkg, the De | 1.22.21 | 1.22.22 | slack-rqd-api |
| CVE-2026-22815 | aiohttp | MEDIUM | aiohttp: AIOHTTP: Denial of Service via insufficient header/ | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-22976 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in sch_qfq due to NU | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22977 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service in network socket error ha | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22979 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in networking due to incor | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22981 | linux-libc-dev | MEDIUM | kernel: idpf: detach and close netdevs while handling a rese | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-22982 | linux-libc-dev | MEDIUM | kernel: net: mscc: ocelot: Fix crash when adding interface u | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22985 | linux-libc-dev | MEDIUM | kernel: idpf: Fix RSS LUT NULL pointer crash on early ethtoo | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-22986 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to a race condit | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-22990 | linux-libc-dev | MEDIUM | kernel: libceph: replace overzealous BUG_ON in osdmap_apply_ | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22991 | linux-libc-dev | MEDIUM | kernel: libceph: make free_choose_arg_map() resilient to par | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22992 | linux-libc-dev | MEDIUM | kernel: libceph: return the handler error from mon_handle_au | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22993 | linux-libc-dev | MEDIUM | kernel: idpf: Fix RSS LUT NULL ptr issue after soft reset | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-22994 | linux-libc-dev | MEDIUM | kernel: Kernel: Resource leak in BPF via missing buffer conv | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22996 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Don't store mlx5e_priv in mlx5e_dev devli | 6.1.38-4 | no fix | dagster |
| CVE-2026-22997 | linux-libc-dev | MEDIUM | kernel: net: can: j1939: j1939_xtp_rx_rts_session_active(): | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-22999 | linux-libc-dev | MEDIUM | kernel: net/sched: sch_qfq: do not free existing class in qf | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23000 | linux-libc-dev | MEDIUM | kernel: Linux kernel (mlx5e): Denial of Service due to NULL | 6.1.38-4 | no fix | dagster |
| CVE-2026-23003 | linux-libc-dev | MEDIUM | kernel: ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23004 | linux-libc-dev | MEDIUM | kernel: dst: fix races in rt6_uncached_list_del() and rt_del | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23005 | linux-libc-dev | MEDIUM | kernel: x86/fpu: Clear XSTATE_BV[i] in guest XSAVE state whe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23006 | linux-libc-dev | MEDIUM | kernel: ASoC: tlv320adcx140: fix null pointer | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23007 | linux-libc-dev | MEDIUM | kernel: block: zero non-PI portion of auto integrity buffer | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23011 | linux-libc-dev | MEDIUM | kernel: ipv4: ip_gre: make ipgre_header() robust | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23017 | linux-libc-dev | MEDIUM | kernel: idpf: fix error handling in the init_task on load | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23019 | linux-libc-dev | MEDIUM | kernel: net: marvell: prestera: fix NULL dereference on devl | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23020 | linux-libc-dev | MEDIUM | kernel: net: 3com: 3c59x: fix possible null dereference in v | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23021 | linux-libc-dev | MEDIUM | kernel: Linux kernel (net: usb: pegasus): Denial of Service | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23026 | linux-libc-dev | MEDIUM | kernel: dmaengine: qcom: gpi: Fix memory leak in gpi_periphe | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23030 | linux-libc-dev | MEDIUM | kernel: phy: rockchip: inno-usb2: Fix a double free bug in r | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23031 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in gs_usb module can lead | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23033 | linux-libc-dev | MEDIUM | kernel: dmaengine: omap-dma: fix dma_pool resource leak in e | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23035 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Pass netdev to mlx5e_destroy_netdev inste | 6.1.38-4 | no fix | dagster |
| CVE-2026-23037 | linux-libc-dev | MEDIUM | kernel: can: etas_es58x: allow partial RX URB allocation to | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23038 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory leak in pnfs/flexfiles can lead | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23047 | linux-libc-dev | MEDIUM | kernel: libceph: make calc_target() set t->paused, not just | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23049 | linux-libc-dev | MEDIUM | kernel: drm/panel-simple: fix connector type for DataImage S | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23056 | linux-libc-dev | MEDIUM | kernel: uacce: implement mremap in uacce_vm_ops to return -E | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23058 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ems_usb CAN USB d | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23060 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in authencesn due to | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23061 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in kvaser_usb CAN dr | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23063 | linux-libc-dev | MEDIUM | kernel: uacce: ensure safe queue release with state manageme | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23064 | linux-libc-dev | MEDIUM | kernel: net/sched: act_ife: avoid possible NULL deref | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23066 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service via unsafe requeue i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23069 | linux-libc-dev | MEDIUM | kernel: vsock/virtio: fix potential underflow in virtio_tran | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23070 | linux-libc-dev | MEDIUM | kernel: Octeontx2-af: Add proper checks for fwdata | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23071 | linux-libc-dev | MEDIUM | kernel: regmap: Fix race condition in hwspinlock irqsave rou | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23075 | linux-libc-dev | MEDIUM | kernel: can: esd_usb: esd_usb_read_bulk_callback(): fix URB | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23080 | linux-libc-dev | MEDIUM | kernel: can: mcba_usb: mcba_usb_read_bulk_callback(): fix UR | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23084 | linux-libc-dev | MEDIUM | kernel: be2net: Fix NULL pointer dereference in be_cmd_get_m | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23085 | linux-libc-dev | MEDIUM | kernel: irqchip/gic-v3-its: Avoid truncating memory addresse | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23086 | linux-libc-dev | MEDIUM | kernel: vsock/virtio: cap TX credit to local buffer size | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23087 | linux-libc-dev | MEDIUM | kernel: scsi: xen: scsiback: Fix potential memory leak in sc | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23088 | linux-libc-dev | MEDIUM | kernel: tracing: Fix crash on synthetic stacktrace field usa | 6.1.38-4 | no fix | dagster |
| CVE-2026-23090 | linux-libc-dev | MEDIUM | kernel: slimbus: core: fix device reference leak on report p | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23091 | linux-libc-dev | MEDIUM | kernel: intel_th: fix device leak on output open() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23093 | linux-libc-dev | MEDIUM | kernel: ksmbd: smbd: fix dma_unmap_sg() nents | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23095 | linux-libc-dev | MEDIUM | kernel: gue: Fix skb memleak with inner IP protocol 0 | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23096 | linux-libc-dev | MEDIUM | kernel: uacce: fix cdev handling in the cleanup path | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23097 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to a deadlock in | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23100 | linux-libc-dev | MEDIUM | kernel: mm/hugetlb: fix hugetlb_pmd_shared() | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2026-23101 | linux-libc-dev | MEDIUM | kernel: leds: led-class: Only Add LED to leds_list when it i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23103 | linux-libc-dev | MEDIUM | kernel: ipvlan: Make the addrs_lock be per port | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23104 | linux-libc-dev | MEDIUM | kernel: ice: fix devlink reload call trace | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23105 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in QFQ scheduler via | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23107 | linux-libc-dev | MEDIUM | kernel: Linux kernel (arm64): Denial of Service via NULL poi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23108 | linux-libc-dev | MEDIUM | kernel: can: usb_8dev: usb_8dev_read_bulk_callback(): fix UR | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23110 | linux-libc-dev | MEDIUM | kernel: scsi: core: Wake up the error handler when final com | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23113 | linux-libc-dev | MEDIUM | kernel: io_uring/io-wq: check IO_WQ_BIT_EXIT inside work run | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2026-23116 | linux-libc-dev | MEDIUM | kernel: Kernel: Local denial of service via incorrect VPU po | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23118 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix data-race warning and potential load/stor | 6.1.38-4 | no fix | dagster |
| CVE-2026-23119 | linux-libc-dev | MEDIUM | kernel: bonding: provide a net pointer to __skb_flow_dissect | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23120 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in L2TP due to data- | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23121 | linux-libc-dev | MEDIUM | kernel: Linux kernel mISDN: Denial of Service via data race | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23124 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Data race in IPv6 neighbor discovery l | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23125 | linux-libc-dev | MEDIUM | kernel: sctp: move SCTP_CMD_ASSOC_SHKEY right after SCTP_CMD | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23126 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in netdevsim due to | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23128 | linux-libc-dev | MEDIUM | kernel: arm64: Set __nocfi on swsusp_arch_resume() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23133 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Memory management flaw in ath10k Wi-Fi | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23137 | linux-libc-dev | MEDIUM | kernel: of: unittest: Fix memory leak in unittest_data_add() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23138 | linux-libc-dev | MEDIUM | kernel: tracing: Add recursion protection in kernel stack tr | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23139 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conncount: update last_gc only when GC | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23140 | linux-libc-dev | MEDIUM | kernel: bpf, test_run: Subtract size of xdp_frame from allow | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23141 | linux-libc-dev | MEDIUM | kernel: btrfs: send: check for inline extents in range_is_ho | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2026-23142 | linux-libc-dev | MEDIUM | kernel: mm/damon/sysfs-scheme: cleanup access_pattern subdir | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23144 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Local denial of service and memory lea | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23145 | linux-libc-dev | MEDIUM | kernel: ext4: fix iloc.bh leak in ext4_xattr_inode_update_re | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23146 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in Bluetooth HCI UAR | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23150 | linux-libc-dev | MEDIUM | kernel: nfc: llcp: Fix memleak in nfc_llcp_send_ui_frame() | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23152 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: correctly decode TTLM with default l | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23154 | linux-libc-dev | MEDIUM | kernel: net: fix segmentation of forwarding fraglist GRO | 6.1.38-4 | 6.1.170-1 | dagster |
| CVE-2026-23157 | linux-libc-dev | MEDIUM | kernel: btrfs: do not strictly require dirty metadata thresh | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23164 | linux-libc-dev | MEDIUM | kernel: Kernel: Memory leak in rocker component leads to den | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23167 | linux-libc-dev | MEDIUM | kernel: nfc: nci: Fix race between rfkill and nci_unregister | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23168 | linux-libc-dev | MEDIUM | kernel: flex_proportions: make fprop_new_period() hardirq sa | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23169 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in MPTCP due to a ra | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23170 | linux-libc-dev | MEDIUM | kernel: drm/imx/tve: fix probe device leak | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23172 | linux-libc-dev | MEDIUM | kernel: net: wwan: t7xx: fix potential skb->frags overflow i | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23176 | linux-libc-dev | MEDIUM | kernel: platform/x86: toshiba_haps: Fix memory leaks in add/ | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23178 | linux-libc-dev | MEDIUM | kernel: HID: i2c-hid: fix potential buffer overflow in i2c_h | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23180 | linux-libc-dev | MEDIUM | kernel: Linux kernel (dpaa2-switch): Out-of-bounds read in I | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23182 | linux-libc-dev | MEDIUM | kernel: spi: tegra: Fix a memory leak in tegra_slink_probe() | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23190 | linux-libc-dev | MEDIUM | kernel: ASoC: amd: fix memory leak in acp3x pdm dma ops | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23198 | linux-libc-dev | MEDIUM | kernel: KVM: Don't clobber irqfd routing type when deassigni | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23202 | linux-libc-dev | MEDIUM | kernel: spi: tegra210-quad: Protect curr_xfer in tegra_qspi_ | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23205 | linux-libc-dev | MEDIUM | kernel: smb/client: fix memory leak in smb2_open_file() | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23206 | linux-libc-dev | MEDIUM | kernel: dpaa2-switch: prevent ZERO_SIZE_PTR dereference when | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23207 | linux-libc-dev | MEDIUM | kernel: spi: tegra210-quad: Protect curr_xfer check in IRQ h | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23210 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in ice driver due to | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23212 | linux-libc-dev | MEDIUM | kernel: bonding: annotate data-races around slave->last_rx | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23213 | linux-libc-dev | MEDIUM | kernel: drm/amd/pm: Disable MMIO access during SMU Mode 1 re | 6.1.38-4 | no fix | dagster |
| CVE-2026-23214 | linux-libc-dev | MEDIUM | kernel: btrfs: reject new transactions if the fs is fully re | 6.1.38-4 | no fix | dagster |
| CVE-2026-23217 | linux-libc-dev | MEDIUM | kernel: riscv: trace: fix snapshot deadlock with sbi ecall | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23220 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23222 | linux-libc-dev | MEDIUM | kernel: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatt | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23228 | linux-libc-dev | MEDIUM | kernel: smb: server: fix leak of active_num_conn in ksmbd_tc | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23229 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service in virtio-crypto due to mi | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23230 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in SMB client due to | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23236 | linux-libc-dev | MEDIUM | kernel: fbdev: smscufx: properly copy ioctl memory to kernel | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23237 | linux-libc-dev | MEDIUM | kernel: platform/x86: classmate-laptop: Add missing NULL poi | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23238 | linux-libc-dev | MEDIUM | kernel: romfs: check sb_set_blocksize() return value | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23239 | linux-libc-dev | MEDIUM | kernel: Kernel: Race condition in espintcp can lead to denia | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23240 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of service due to a race condit | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23242 | linux-libc-dev | MEDIUM | kernel: RDMA/siw: Fix potential NULL pointer dereference in | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23244 | linux-libc-dev | MEDIUM | kernel: nvme: fix memory allocation in nvme_pr_read_keys() | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23245 | linux-libc-dev | MEDIUM | kernel: net/sched: act_gate: snapshot parameters with RCU on | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23246 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in mac80211 Wi-Fi du | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23247 | linux-libc-dev | MEDIUM | kernel: tcp: secure_seq: add back ports to TS offset | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23249 | linux-libc-dev | MEDIUM | kernel: xfs: check for deleted cursors when revalidating two | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23250 | linux-libc-dev | MEDIUM | kernel: xfs: check return value of xchk_scrub_create_subord | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23251 | linux-libc-dev | MEDIUM | kernel: xfs: only call xf{array,blob}_destroy if we have a v | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23252 | linux-libc-dev | MEDIUM | kernel: xfs: get rid of the xchk_xfile_*_descr calls | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23253 | linux-libc-dev | MEDIUM | kernel: Kernel: Denial of Service via DVB DVR ringbuffer rei | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23255 | linux-libc-dev | MEDIUM | kernel: net: add proper RCU protection to /proc/net/ptype | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23259 | linux-libc-dev | MEDIUM | kernel: io_uring/rw: free potentially allocated iovec on cac | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23262 | linux-libc-dev | MEDIUM | kernel: gve: Fix stats report corruption on queue count chan | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23264 | linux-libc-dev | MEDIUM | kernel: Revert "drm/amd: Check if ASPM is enabled from PCIe | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23265 | linux-libc-dev | MEDIUM | kernel: f2fs: fix to do sanity check on node footer in {read | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23266 | linux-libc-dev | MEDIUM | kernel: fbdev: rivafb: fix divide error in nv3_arb() | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23267 | linux-libc-dev | MEDIUM | kernel: f2fs: fix IS_CHECKPOINTED flag inconsistency issue c | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23269 | linux-libc-dev | MEDIUM | kernel: apparmor: validate DFA start states are in bounds in | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23271 | linux-libc-dev | MEDIUM | kernel: perf: Fix __perf_event_overflow() vs perf_remove_fro | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23272 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: unconditionally bump set->nele | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23273 | linux-libc-dev | MEDIUM | kernel: macvlan: observe an RCU grace period in macvlan_comm | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23274 | linux-libc-dev | MEDIUM | kernel: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23276 | linux-libc-dev | MEDIUM | kernel: net: add xmit recursion limit to tunnel xmit functio | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23277 | linux-libc-dev | MEDIUM | kernel: net/sched: teql: fix NULL pointer dereference in ipt | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23278 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: always walk all pending catcha | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23279 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: fix NULL pointer dereference in mesh | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23281 | linux-libc-dev | MEDIUM | kernel: wifi: libertas: fix use-after-free in lbs_free_adapt | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23284 | linux-libc-dev | MEDIUM | kernel: net: ethernet: mtk_eth_soc: Reset prog ptr to old_pr | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23285 | linux-libc-dev | MEDIUM | kernel: drbd: fix null-pointer dereference on local read err | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23286 | linux-libc-dev | MEDIUM | kernel: atm: lec: fix null-ptr-deref in lec_arp_clear_vccs | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23287 | linux-libc-dev | MEDIUM | kernel: irqchip/sifive-plic: Fix frozen interrupt due to aff | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23289 | linux-libc-dev | MEDIUM | kernel: IB/mthca: Add missed mthca_unmap_user_db() for mthca | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23290 | linux-libc-dev | MEDIUM | kernel: net: usb: pegasus: validate USB endpoints | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23291 | linux-libc-dev | MEDIUM | kernel: nfc: pn533: properly drop the usb interface referenc | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23292 | linux-libc-dev | MEDIUM | kernel: scsi: target: Fix recursive locking in __configfs_op | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23293 | linux-libc-dev | MEDIUM | kernel: net: vxlan: fix nd_tbl NULL dereference when IPv6 is | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23296 | linux-libc-dev | MEDIUM | kernel: scsi: core: Fix refcount leak for tagset_refcnt | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23297 | linux-libc-dev | MEDIUM | kernel: nfsd: Fix cred ref leak in nfsd_nl_threads_set_doit( | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23298 | linux-libc-dev | MEDIUM | kernel: can: ucan: Fix infinite loop from zero-length messag | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23300 | linux-libc-dev | MEDIUM | kernel: net: ipv6: fix panic when IPv4 route references loop | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23303 | linux-libc-dev | MEDIUM | kernel: smb: client: Don't log plaintext credentials in cifs | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23304 | linux-libc-dev | MEDIUM | kernel: ipv6: fix NULL pointer deref in ip6_rt_get_dev_rcu() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23306 | linux-libc-dev | MEDIUM | kernel: scsi: pm8001: Fix use-after-free in pm8001_queue_com | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23307 | linux-libc-dev | MEDIUM | kernel: can: ems_usb: ems_usb_read_bulk_callback(): check th | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23308 | linux-libc-dev | MEDIUM | kernel: pinctrl: equilibrium: fix warning trace on load | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23310 | linux-libc-dev | MEDIUM | kernel: bpf/bonding: reject vlan+srcmac xmit_hash_policy cha | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23312 | linux-libc-dev | MEDIUM | kernel: net: usb: kaweth: validate USB endpoints | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23313 | linux-libc-dev | MEDIUM | kernel: i40e: Fix preempt count leak in napi poll tracepoint | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23316 | linux-libc-dev | MEDIUM | kernel: net: ipv4: fix ARM64 alignment fault in multipath ha | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23317 | linux-libc-dev | MEDIUM | kernel: drm/vmwgfx: Return the correct value in vmw_translat | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23321 | linux-libc-dev | MEDIUM | kernel: mptcp: pm: in-kernel: always mark signal+subflow end | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23324 | linux-libc-dev | MEDIUM | kernel: can: usb: etas_es58x: correctly anchor the urb in th | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23330 | linux-libc-dev | MEDIUM | kernel: nfc: nci: complete pending data exchange on device c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23334 | linux-libc-dev | MEDIUM | kernel: can: usb: f81604: handle short interrupt urb message | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23335 | linux-libc-dev | MEDIUM | kernel: RDMA/irdma: Fix kernel stack leak in irdma_create_us | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23336 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: cancel rfkill_block work in wiphy_un | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23339 | linux-libc-dev | MEDIUM | kernel: nfc: nci: free skb on nci_transceive early error pat | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23340 | linux-libc-dev | MEDIUM | kernel: net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23346 | linux-libc-dev | MEDIUM | kernel: arm64: io: Extract user memory type in ioremap_prot( | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23347 | linux-libc-dev | MEDIUM | kernel: can: usb: f81604: correctly anchor the urb in the re | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23348 | linux-libc-dev | MEDIUM | kernel: cxl: Fix race of nvdimm_bus object when creating nvd | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23351 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_set_pipapo: split gc into unlink and | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23352 | linux-libc-dev | MEDIUM | kernel: x86/efi: defer freeing of boot services memory | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23356 | linux-libc-dev | MEDIUM | kernel: drbd: fix "LOGIC BUG" in drbd_al_begin_io_nonblock() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23357 | linux-libc-dev | MEDIUM | kernel: can: mcp251x: fix deadlock in error path of mcp251x_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23360 | linux-libc-dev | MEDIUM | kernel: nvme: fix admin queue leak on controller reset | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23362 | linux-libc-dev | MEDIUM | kernel: can: bcm: fix locking for bcm_op runtime updates | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23364 | linux-libc-dev | MEDIUM | kernel: ksmbd: Compare MACs in constant time | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23365 | linux-libc-dev | MEDIUM | kernel: net: usb: kalmia: validate USB endpoints | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23367 | linux-libc-dev | MEDIUM | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23368 | linux-libc-dev | MEDIUM | kernel: net: phy: register phy led_triggers during probe to | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23369 | linux-libc-dev | MEDIUM | kernel: i2c: i801: Revert "i2c: i801: replace acpi_lock with | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23370 | linux-libc-dev | MEDIUM | kernel: platform/x86: dell-wmi-sysman: Don't hex dump plaint | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23371 | linux-libc-dev | MEDIUM | kernel: sched/deadline: Fix missing ENQUEUE_REPLENISH during | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23372 | linux-libc-dev | MEDIUM | kernel: nfc: rawsock: cancel tx_work before socket teardown | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23373 | linux-libc-dev | MEDIUM | kernel: wifi: rsi: Don't default to -EOPNOTSUPP in rsi_mac80 | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23374 | linux-libc-dev | MEDIUM | kernel: blktrace: fix __this_cpu_read/write in preemptible c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23375 | linux-libc-dev | MEDIUM | kernel: mm: thp: deny THP for files on anonymous inodes | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23377 | linux-libc-dev | MEDIUM | kernel: ice: change XDP RxQ frag_size from DMA write length | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23379 | linux-libc-dev | MEDIUM | kernel: net/sched: ets: fix divide by zero in the offload pa | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23380 | linux-libc-dev | MEDIUM | kernel: tracing: Fix WARN_ON in tracing_buffers_mmap_close | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23381 | linux-libc-dev | MEDIUM | kernel: net: bridge: fix nd_tbl NULL dereference when IPv6 i | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23382 | linux-libc-dev | MEDIUM | kernel: HID: Add HID_CLAIMED_INPUT guards in raw_event callb | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23383 | linux-libc-dev | MEDIUM | kernel: bpf, arm64: Force 8-byte alignment for JIT buffer to | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23385 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: clone set on flush only | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23386 | linux-libc-dev | MEDIUM | kernel: gve: fix incorrect buffer cleanup in gve_tx_clean_pe | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23389 | linux-libc-dev | MEDIUM | kernel: ice: Fix memory leak in ice_set_ringparam() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23391 | linux-libc-dev | MEDIUM | kernel: netfilter: xt_CT: drop pending enqueued packets on t | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23393 | linux-libc-dev | MEDIUM | kernel: bridge: cfm: Fix race condition in peer_mep deletion | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23394 | linux-libc-dev | MEDIUM | kernel: af_unix: Give up GC if MSG_PEEK intervened | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23396 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: fix NULL deref in mesh_matches_local | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23398 | linux-libc-dev | MEDIUM | kernel: icmp: fix NULL pointer dereference in icmp_tag_valid | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23399 | linux-libc-dev | MEDIUM | kernel: nf_tables: nft_dynset: fix possible stateful express | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23401 | linux-libc-dev | MEDIUM | kernel: Linux kernel KVM: Privilege escalation or denial of | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23403 | linux-libc-dev | MEDIUM | kernel: apparmor: fix memory leak in verify_header | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23404 | linux-libc-dev | MEDIUM | kernel: apparmor: replace recursive profile removal with ite | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23405 | linux-libc-dev | MEDIUM | kernel: apparmor: fix: limit the number of levels of policy | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23406 | linux-libc-dev | MEDIUM | kernel: apparmor: fix side-effect bug in match_char() macro | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23407 | linux-libc-dev | MEDIUM | kernel: apparmor: fix missing bounds check on DEFAULT table | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23409 | linux-libc-dev | MEDIUM | kernel: apparmor: fix differential encoding verification | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23414 | linux-libc-dev | MEDIUM | kernel: tls: Purge async_hold in tls_decrypt_async_wait() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23417 | linux-libc-dev | MEDIUM | kernel: bpf: Fix constant blinding for PROBE_MEM32 stores | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23419 | linux-libc-dev | MEDIUM | kernel: net/rds: Fix circular locking dependency in rds_tcp_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23420 | linux-libc-dev | MEDIUM | kernel: wifi: wlcore: Fix a locking bug | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23426 | linux-libc-dev | MEDIUM | kernel: drm/logicvc: Fix device node reference leak in logic | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23434 | linux-libc-dev | MEDIUM | kernel: mtd: rawnand: serialize lock/unlock against other NA | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23438 | linux-libc-dev | MEDIUM | kernel: net: mvpp2: guard flow control update with global_tx | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23439 | linux-libc-dev | MEDIUM | kernel: udp_tunnel: fix NULL deref caused by udp_sock_create | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23440 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Fix race condition during IPSec ESN updat | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23441 | linux-libc-dev | MEDIUM | kernel: net/mlx5e: Prevent concurrent access to IPSec ASO co | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23442 | linux-libc-dev | MEDIUM | kernel: ipv6: add NULL checks for idev in SRv6 paths | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23444 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: always free skb on ieee80211_tx_prep | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23445 | linux-libc-dev | MEDIUM | kernel: igc: fix page fault in XDP TX timestamps handling | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23446 | linux-libc-dev | MEDIUM | kernel: net: usb: aqc111: Do not perform PM inside suspend c | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23448 | linux-libc-dev | MEDIUM | kernel: net: usb: cdc_ncm: add ndpoffset to NDP16 nframes bo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23449 | linux-libc-dev | MEDIUM | kernel: net/sched: teql: Fix double-free in teql_master_xmit | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23450 | linux-libc-dev | MEDIUM | kernel: net/smc: fix NULL dereference and UAF in smc_tcp_syn | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23452 | linux-libc-dev | MEDIUM | kernel: PM: runtime: Fix a race condition related to device | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23454 | linux-libc-dev | MEDIUM | kernel: net: mana: fix use-after-free in mana_hwc_destroy_ch | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23456 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conntrack_h323: fix OOB read in decode | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23457 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conntrack_sip: fix Content-Length u32 | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23458 | linux-libc-dev | MEDIUM | kernel: netfilter: ctnetlink: fix use-after-free in ctnetlin | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23460 | linux-libc-dev | MEDIUM | kernel: net/rose: fix NULL pointer dereference in rose_trans | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23461 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Fix use-after-free in l2cap_unregi | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23462 | linux-libc-dev | MEDIUM | kernel: Bluetooth: HIDP: Fix possible UAF | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23463 | linux-libc-dev | MEDIUM | kernel: soc: fsl: qbman: fix race condition in qman_destroy_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23464 | linux-libc-dev | MEDIUM | kernel: soc: microchip: mpfs: Fix memory leak in mpfs_sys_co | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23465 | linux-libc-dev | MEDIUM | kernel: btrfs: log new dentries when logging parent dir of a | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23466 | linux-libc-dev | MEDIUM | kernel: drm/xe: Open-code GGTT MMIO access protection | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23468 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: Limit BO list entry count to prevent res | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23469 | linux-libc-dev | MEDIUM | kernel: drm/imagination: Synchronize interrupts before suspe | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-23470 | linux-libc-dev | MEDIUM | kernel: drm/imagination: Fix deadlock in soft reset sequence | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-23472 | linux-libc-dev | MEDIUM | kernel: serial: core: fix infinite loop in handle_tx() for P | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-23474 | linux-libc-dev | MEDIUM | kernel: mtd: Avoid boot crash in RedBoot partition table par | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-23475 | linux-libc-dev | MEDIUM | kernel: spi: fix statistics allocation | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-25645 | requests | MEDIUM | requests: Requests: Security bypass due to predictable tempo | 2.31.0 | 2.33.0 | dagster, slack-rqd-api |
| CVE-2026-27142 | stdlib | MEDIUM | html/template: URLs in meta content attribute actions are no | v1.22.4 | 1.25.8, 1.26.1 | dagster |
| CVE-2026-27171 | zlib1g | MEDIUM | zlib: zlib: Denial of Service via infinite loop in CRC32 com | 1:1.2.13.dfsg-1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | bsdutils | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 1:2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | libblkid1 | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | libmount1 | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | libsmartcols1 | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | libuuid1 | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | mount | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | util-linux | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-27456 | util-linux-extra | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2026-27456 | liblastlog2-2 | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 2.41-5 | no fix | slack-rqd-api |
| CVE-2026-27456 | login | MEDIUM | util-linux: TOCTOU in the mount program when setting up loop | 1:4.16.0-2+really2.41-5 | no fix | slack-rqd-api |
| CVE-2026-28684 | python-dotenv | MEDIUM | python-dotenv: python-dotenv: Arbitrary file overwrite via s | 1.0.1 | 1.2.2 | dagster, slack-rqd-api |
| CVE-2026-31389 | linux-libc-dev | MEDIUM | kernel: spi: fix use-after-free on controller registration f | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31391 | linux-libc-dev | MEDIUM | kernel: crypto: atmel-sha204a - Fix OOM ->tfm_count leak | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31392 | linux-libc-dev | MEDIUM | kernel: smb: client: fix krb5 mount with username option | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31393 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Validate L2CAP_INFO_RSP payload le | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31394 | linux-libc-dev | MEDIUM | kernel: mac80211: fix crash in ieee80211_chan_bw_change for | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31396 | linux-libc-dev | MEDIUM | kernel: net: macb: fix use-after-free access to PTP clock | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31399 | linux-libc-dev | MEDIUM | kernel: nvdimm/bus: Fix potential use after free in asynchro | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31400 | linux-libc-dev | MEDIUM | kernel: sunrpc: fix cache_request leak in cache_release | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31401 | linux-libc-dev | MEDIUM | kernel: HID: bpf: prevent buffer overflow in hid_hw_request | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31403 | linux-libc-dev | MEDIUM | kernel: NFSD: Hold net reference for the lifetime of /proc/f | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31405 | linux-libc-dev | MEDIUM | kernel: media: dvb-net: fix OOB access in ULE extension head | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31406 | linux-libc-dev | MEDIUM | kernel: xfrm: Fix work re-schedule after cancel in xfrm_nat_ | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31407 | linux-libc-dev | MEDIUM | kernel: netfilter: conntrack: add missing netlink policy val | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31409 | linux-libc-dev | MEDIUM | kernel: ksmbd: unset conn->binding on failed binding request | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31410 | linux-libc-dev | MEDIUM | kernel: ksmbd: use volume UUID in FS_OBJECT_ID_INFORMATION | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31412 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_mass_storage: Fix potential integer o | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31414 | linux-libc-dev | MEDIUM | kernel: Linux kernel (netfilter): Denial of Service via unsa | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31415 | linux-libc-dev | MEDIUM | kernel: ipv6: avoid overflows in ip6_datagram_send_ctl() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31416 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Netfilter Denial of Service due to net | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31417 | linux-libc-dev | MEDIUM | kernel: net/x25: Fix overflow when accumulating packets | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31418 | linux-libc-dev | MEDIUM | kernel: netfilter: ipset: drop logically empty buckets in mt | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31420 | linux-libc-dev | MEDIUM | kernel: bridge: mrp: reject zero test interval to avoid OOM | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31421 | linux-libc-dev | MEDIUM | kernel: net/sched: cls_fw: fix NULL pointer dereference on s | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31422 | linux-libc-dev | MEDIUM | kernel: net/sched: cls_flow: fix NULL pointer dereference on | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31423 | linux-libc-dev | MEDIUM | kernel: net/sched: sch_hfsc: fix divide-by-zero in rtsc_min( | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31424 | linux-libc-dev | MEDIUM | kernel: netfilter: x_tables: restrict xt_check_match/xt_chec | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31425 | linux-libc-dev | MEDIUM | kernel: rds: ib: reject FRMR registration before IB connecti | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31426 | linux-libc-dev | MEDIUM | kernel: ACPI: EC: clean up handlers on probe failure in acpi | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31427 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conntrack_sip: fix use of uninitialize | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31428 | linux-libc-dev | MEDIUM | kernel: netfilter: nfnetlink_log: fix uninitialized padding | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31429 | linux-libc-dev | MEDIUM | kernel: net: skb: fix cross-cache free of KFENCE-allocated s | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31430 | linux-libc-dev | MEDIUM | kernel: X.509: Fix out-of-bounds access when parsing extensi | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31432 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix OOB write in QUERY_INFO for compound requ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31433 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix potencial OOB in get_file_all_info() for | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31434 | linux-libc-dev | MEDIUM | kernel: btrfs: fix leak of kobject name for sub-group space_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31435 | linux-libc-dev | MEDIUM | kernel: netfs: Fix read abandonment during retry | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31436 | linux-libc-dev | MEDIUM | kernel: dmaengine: idxd: fix possible wrong descriptor compl | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31438 | linux-libc-dev | MEDIUM | kernel: netfs: Fix kernel BUG in netfs_limit_iter() for ITER | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31439 | linux-libc-dev | MEDIUM | kernel: dmaengine: xilinx: xdma: Fix regmap init error handl | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31440 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service due to event log mem | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31441 | linux-libc-dev | MEDIUM | kernel: dmaengine: idxd: Fix memory leak when a wq is reset | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31446 | linux-libc-dev | MEDIUM | kernel: ext4: fix use-after-free in update_super_work when r | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31447 | linux-libc-dev | MEDIUM | kernel: ext4: reject mount if bigalloc with s_first_data_blo | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31448 | linux-libc-dev | MEDIUM | kernel: ext4: avoid infinite loops caused by residual data | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31449 | linux-libc-dev | MEDIUM | kernel: ext4: validate p_idx bounds in ext4_ext_correct_inde | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31450 | linux-libc-dev | MEDIUM | kernel: ext4: publish jinode after initialization | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31451 | linux-libc-dev | MEDIUM | kernel: ext4: replace BUG_ON with proper error handling in e | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31452 | linux-libc-dev | MEDIUM | kernel: ext4: convert inline data to extents when truncate e | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31453 | linux-libc-dev | MEDIUM | kernel: xfs: avoid dereferencing log items after push callba | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31454 | linux-libc-dev | MEDIUM | kernel: xfs: save ailp before dropping the AIL lock in push | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31455 | linux-libc-dev | MEDIUM | kernel: xfs: stop reclaim before pushing AIL during unmount | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31456 | linux-libc-dev | MEDIUM | kernel: mm/pagewalk: fix race between concurrent split and r | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31458 | linux-libc-dev | MEDIUM | kernel: mm/damon/sysfs: check contexts->nr before accessing | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31462 | linux-libc-dev | MEDIUM | kernel: drm/amdgpu: prevent immediate PASID reuse case | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31464 | linux-libc-dev | MEDIUM | kernel: scsi: ibmvfc: Fix OOB access in ibmvfc_discover_targ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31466 | linux-libc-dev | MEDIUM | kernel: mm/huge_memory: fix folio isn't locked in softleaf_t | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31467 | linux-libc-dev | MEDIUM | kernel: Linux kernel: Denial of Service in erofs filesystem | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31469 | linux-libc-dev | MEDIUM | kernel: virtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_REL | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31470 | linux-libc-dev | MEDIUM | kernel: virt: tdx-guest: Fix handling of host controlled 'qu | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31473 | linux-libc-dev | MEDIUM | kernel: media: mc, v4l2: serialize REINIT and REQBUFS with r | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31474 | linux-libc-dev | MEDIUM | kernel: can: isotp: fix tx.buf use-after-free in isotp_sendm | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31476 | linux-libc-dev | MEDIUM | kernel: ksmbd: do not expire session on binding failure | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31477 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix memory leaks and NULL deref in smb2_lock( | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31478 | linux-libc-dev | MEDIUM | kernel: ksmbd: replace hardcoded hdr2_len with offsetof() in | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31479 | linux-libc-dev | MEDIUM | kernel: drm/xe: always keep track of remap prev/next | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31480 | linux-libc-dev | MEDIUM | kernel: tracing: Fix potential deadlock in cpu hotplug with | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31482 | linux-libc-dev | MEDIUM | kernel: s390/entry: Scrub r12 register on kernel entry | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31483 | linux-libc-dev | MEDIUM | kernel: s390/syscalls: Add spectre boundary for syscall disp | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31486 | linux-libc-dev | MEDIUM | kernel: hwmon: (pmbus/core) Protect regulator operations wit | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31487 | linux-libc-dev | MEDIUM | kernel: spi: use generic driver_override infrastructure | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31488 | linux-libc-dev | MEDIUM | kernel: drm/amd/display: Do not skip unrelated mode changes | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31492 | linux-libc-dev | MEDIUM | kernel: RDMA/irdma: Initialize free_qp completion before usi | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31494 | linux-libc-dev | MEDIUM | kernel: net: macb: use the current queue number for stats | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31495 | linux-libc-dev | MEDIUM | kernel: netfilter: ctnetlink: use netlink policy range check | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31496 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_conntrack_expect: skip expectations in | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31497 | linux-libc-dev | MEDIUM | kernel: Bluetooth: btusb: clamp SCO altsetting table indices | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31498 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Fix ERTM re-init and zero pdu_len | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31499 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Fix deadlock in l2cap_conn_del() | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31502 | linux-libc-dev | MEDIUM | kernel: team: fix header_ops type confusion with non-Etherne | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31503 | linux-libc-dev | MEDIUM | kernel: udp: Fix wildcard bind conflict check when using has | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31504 | linux-libc-dev | MEDIUM | kernel: net: fix fanout UAF in packet_release() via NETDEV_U | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31505 | linux-libc-dev | MEDIUM | kernel: iavf: fix out-of-bounds writes in iavf_get_ethtool_s | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31507 | linux-libc-dev | MEDIUM | kernel: net/smc: fix double-free of smc_spd_priv when tee() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31509 | linux-libc-dev | MEDIUM | kernel: nfc: nci: fix circular locking dependency in nci_clo | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31510 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Fix null-ptr-deref on l2cap_sock_r | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31511 | linux-libc-dev | MEDIUM | kernel: Bluetooth: MGMT: Fix dangling pointer on mgmt_add_ad | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31512 | linux-libc-dev | MEDIUM | kernel: Bluetooth: L2CAP: Validate PDU length before reading | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31515 | linux-libc-dev | MEDIUM | kernel: af_key: validate families in pfkey_send_migrate() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31516 | linux-libc-dev | MEDIUM | kernel: xfrm: prevent policy_hthresh.work from racing with n | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31518 | linux-libc-dev | MEDIUM | kernel: esp: fix skb leak with espintcp and async crypto | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31519 | linux-libc-dev | MEDIUM | kernel: btrfs: set BTRFS_ROOT_ORPHAN_CLEANUP during subvol c | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31520 | linux-libc-dev | MEDIUM | kernel: HID: apple: avoid memory leak in apple_report_fixup( | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31521 | linux-libc-dev | MEDIUM | kernel: module: Fix kernel panic when a symbol st_shndx is o | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31522 | linux-libc-dev | MEDIUM | kernel: HID: magicmouse: avoid memory leak in magicmouse_rep | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31523 | linux-libc-dev | MEDIUM | kernel: nvme-pci: ensure we're polling a polled queue | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31524 | linux-libc-dev | MEDIUM | kernel: HID: asus: avoid memory leak in asus_report_fixup() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31525 | linux-libc-dev | MEDIUM | kernel: bpf: Fix undefined behavior in interpreter sdiv/smod | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31526 | linux-libc-dev | MEDIUM | kernel: bpf: Fix exception exit lock checking for subprogs | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31528 | linux-libc-dev | MEDIUM | kernel: perf: Make sure to use pmu_ctx->pmu for groups | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31531 | linux-libc-dev | MEDIUM | kernel: ipv4: nexthop: allocate skb dynamically in rtm_get_n | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31533 | linux-libc-dev | MEDIUM | kernel: net/tls: fix use-after-free in -EBUSY error path of | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31536 | linux-libc-dev | MEDIUM | kernel: smb: server: let send_done handle a completion witho | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31537 | linux-libc-dev | MEDIUM | kernel: smb: server: make use of smbdirect_socket.send_io.bc | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31540 | linux-libc-dev | MEDIUM | kernel: drm/i915/gt: Check set_default_submission() before d | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31542 | linux-libc-dev | MEDIUM | kernel: x86/platform/uv: Handle deconfigured sockets | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31545 | linux-libc-dev | MEDIUM | kernel: NFC: nxp-nci: allow GPIOs to sleep | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31546 | linux-libc-dev | MEDIUM | kernel: net: bonding: fix NULL deref in bond_debug_rlb_hash_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31548 | linux-libc-dev | MEDIUM | kernel: wifi: cfg80211: cancel pmsr_free_wk in cfg80211_pmsr | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31549 | linux-libc-dev | MEDIUM | kernel: i2c: cp2615: fix serial string NULL-deref at probe | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31550 | linux-libc-dev | MEDIUM | kernel: pmdomain: bcm: bcm2835-power: Increase ASB control t | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31551 | linux-libc-dev | MEDIUM | kernel: wifi: mac80211: Fix static_branch_dec() underflow fo | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31552 | linux-libc-dev | MEDIUM | kernel: wifi: wlcore: Return -ENOMEM instead of -EAGAIN if t | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31554 | linux-libc-dev | MEDIUM | kernel: futex: Require sys_futex_requeue() to have identical | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31555 | linux-libc-dev | MEDIUM | kernel: futex: Clear stale exiting pointer in futex_lock_pi( | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31556 | linux-libc-dev | MEDIUM | kernel: xfs: scrub: unlock dquot before early return in quot | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31557 | linux-libc-dev | MEDIUM | kernel: nvmet: move async event work off nvmet-wq | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31559 | linux-libc-dev | MEDIUM | kernel: LoongArch: Fix missing NULL checks for kstrdup() | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31560 | linux-libc-dev | MEDIUM | kernel: spi: spi-dw-dma: fix print error log when wait finis | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31561 | linux-libc-dev | MEDIUM | kernel: x86/cpu: Remove X86_CR4_FRED from the CR4 pinned bit | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31562 | linux-libc-dev | MEDIUM | kernel: drm/mediatek: dsi: Store driver data before invoking | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31563 | linux-libc-dev | MEDIUM | kernel: net: macb: Use dev_consume_skb_any() to free TX SKBs | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31565 | linux-libc-dev | MEDIUM | kernel: RDMA/irdma: Fix deadlock during netdev reset with ac | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31570 | linux-libc-dev | MEDIUM | kernel: can: gw: fix OOB heap access in cgw_csum_crc8_rel() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31575 | linux-libc-dev | MEDIUM | kernel: mm/userfaultfd: fix hugetlb fault mutex hash calcula | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31577 | linux-libc-dev | MEDIUM | kernel: nilfs2: fix NULL i_assoc_inode dereference in nilfs_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31579 | linux-libc-dev | MEDIUM | kernel: wireguard: device: use exit_rtnl callback instead of | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31584 | linux-libc-dev | MEDIUM | kernel: media: mediatek: vcodec: fix use-after-free in encod | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31585 | linux-libc-dev | MEDIUM | kernel: media: vidtv: fix nfeeds state corruption on start_s | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31587 | linux-libc-dev | MEDIUM | kernel: ASoC: qcom: q6apm: move component registration to un | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31588 | linux-libc-dev | MEDIUM | kernel: KVM: x86: Use scratch field in MMIO fragment to hold | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31590 | linux-libc-dev | MEDIUM | kernel: KVM: SEV: Drop WARN on large size for KVM_MEMORY_ENC | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31591 | linux-libc-dev | MEDIUM | kernel: KVM: SEV: Lock all vCPUs when synchronzing VMSAs for | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31592 | linux-libc-dev | MEDIUM | kernel: KVM: SEV: Protect *all* of sev_mem_enc_register_regi | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31593 | linux-libc-dev | MEDIUM | kernel: KVM: SEV: Reject attempts to sync VMSA of an already | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31594 | linux-libc-dev | MEDIUM | kernel: PCI: endpoint: pci-epf-vntb: Remove duplicate resour | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31595 | linux-libc-dev | MEDIUM | kernel: PCI: endpoint: pci-epf-vntb: Stop cmd_handler work i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31596 | linux-libc-dev | MEDIUM | kernel: ocfs2: handle invalid dinode in ocfs2_group_extend | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31597 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix use-after-free in ocfs2_fault() when VM_F | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31598 | linux-libc-dev | MEDIUM | kernel: ocfs2: fix possible deadlock between unlink and dio_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31599 | linux-libc-dev | MEDIUM | kernel: media: vidtv: fix NULL pointer dereference in vidtv_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31602 | linux-libc-dev | MEDIUM | kernel: ALSA: ctxfi: Limit PTP to a single page | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31603 | linux-libc-dev | MEDIUM | kernel: staging: sm750fb: fix division by zero in ps_to_hz() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31604 | linux-libc-dev | MEDIUM | kernel: wifi: rtw88: fix device leak on probe failure | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31605 | linux-libc-dev | MEDIUM | kernel: fbdev: udlfb: avoid divide-by-zero on FBIOPUT_VSCREE | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31606 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_hid: don't call cdev_init while cdev | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31610 | linux-libc-dev | MEDIUM | kernel: ksmbd: fix mechToken leak when SPNEGO decode fails a | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31611 | linux-libc-dev | MEDIUM | kernel: ksmbd: require 3 sub-authorities before reading sub_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31612 | linux-libc-dev | MEDIUM | kernel: ksmbd: validate EaNameLength in smb2_get_ea() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31615 | linux-libc-dev | MEDIUM | kernel: usb: gadget: renesas_usb3: validate endpoint index i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31616 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_phonet: fix skb frags[] overflow in p | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31617 | linux-libc-dev | MEDIUM | kernel: usb: gadget: f_ncm: validate minimum block_len in nc | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31618 | linux-libc-dev | MEDIUM | kernel: fbdev: tdfxfb: avoid divide-by-zero on FBIOPUT_VSCRE | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31619 | linux-libc-dev | MEDIUM | kernel: ALSA: fireworks: bound device-supplied status before | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31622 | linux-libc-dev | MEDIUM | kernel: NFC: digital: Bounds check NFC-A cascade depth in SD | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31623 | linux-libc-dev | MEDIUM | kernel: net: usb: cdc-phonet: fix skb frags[] overflow in rx | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31624 | linux-libc-dev | MEDIUM | kernel: HID: core: clamp report_size in s32ton() to avoid un | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31625 | linux-libc-dev | MEDIUM | kernel: HID: alps: fix NULL pointer dereference in alps_raw_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31626 | linux-libc-dev | MEDIUM | kernel: staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_v | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31627 | linux-libc-dev | MEDIUM | kernel: i2c: s3c24xx: check the size of the SMBUS message be | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31628 | linux-libc-dev | MEDIUM | kernel: x86/CPU: Fix FPDSS on Zen1 | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31629 | linux-libc-dev | MEDIUM | kernel: nfc: llcp: add missing return after LLCP_CLOSED chec | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31630 | linux-libc-dev | MEDIUM | kernel: rxrpc: proc: size address buffers for %pISpc output | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31634 | linux-libc-dev | MEDIUM | kernel: rxrpc: fix reference count leak in rxrpc_server_keyr | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31637 | linux-libc-dev | MEDIUM | kernel: rxrpc: reject undecryptable rxkad response tickets | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31638 | linux-libc-dev | MEDIUM | kernel: rxrpc: Only put the call ref if one was acquired | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31639 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix key reference count leak from call->key | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31642 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix call removal to use RCU safe deletion | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31644 | linux-libc-dev | MEDIUM | kernel: net: lan966x: fix use-after-free and leak in lan966x | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31645 | linux-libc-dev | MEDIUM | kernel: net: lan966x: fix page pool leak in error paths | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31646 | linux-libc-dev | MEDIUM | kernel: net: lan966x: fix page_pool error handling in lan966 | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31647 | linux-libc-dev | MEDIUM | kernel: idpf: fix PREEMPT_RT raw/bh spinlock nesting for asy | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31648 | linux-libc-dev | MEDIUM | kernel: mm: filemap: fix nr_pages calculation overflow in fi | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31649 | linux-libc-dev | MEDIUM | kernel: net: stmmac: fix integer underflow in chain mode | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31651 | linux-libc-dev | MEDIUM | kernel: mmc: vub300: fix NULL-deref on disconnect | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31655 | linux-libc-dev | MEDIUM | kernel: pmdomain: imx8mp-blk-ctrl: Keep the NOC_HDCP clock e | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31656 | linux-libc-dev | MEDIUM | kernel: drm/i915/gt: fix refcount underflow in intel_engine_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31657 | linux-libc-dev | MEDIUM | kernel: batman-adv: hold claim backbone gateways by referenc | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31658 | linux-libc-dev | MEDIUM | kernel: net: altera-tse: fix skb leak on DMA mapping error i | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31659 | linux-libc-dev | MEDIUM | kernel: batman-adv: reject oversized global TT response buff | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31660 | linux-libc-dev | MEDIUM | kernel: nfc: pn533: allocate rx skb before consuming bytes | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31661 | linux-libc-dev | MEDIUM | kernel: wifi: brcmsmac: Fix dma_free_coherent() size | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31662 | linux-libc-dev | MEDIUM | kernel: tipc: fix bc_ackers underflow on duplicate GRP_ACK_M | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31664 | linux-libc-dev | MEDIUM | kernel: xfrm: clear trailing padding in build_polexpire() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31665 | linux-libc-dev | MEDIUM | kernel: netfilter: nft_ct: fix use-after-free in timeout obj | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31666 | linux-libc-dev | MEDIUM | kernel: btrfs: fix incorrect return value after changing lea | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31667 | linux-libc-dev | MEDIUM | kernel: Input: uinput - fix circular locking dependency with | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31670 | linux-libc-dev | MEDIUM | kernel: net: rfkill: prevent unlimited numbers of rfkill eve | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31671 | linux-libc-dev | MEDIUM | kernel: xfrm_user: fix info leak in build_report() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31672 | linux-libc-dev | MEDIUM | kernel: wifi: rt2x00usb: fix devres lifetime | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31673 | linux-libc-dev | MEDIUM | kernel: af_unix: read UNIX_DIAG_VFS data under unix_state_lo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31674 | linux-libc-dev | MEDIUM | kernel: netfilter: ip6t_rt: reject oversized addrnr in rt_mt | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31675 | linux-libc-dev | MEDIUM | kernel: net/sched: sch_netem: fix out-of-bounds access in pa | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31676 | linux-libc-dev | MEDIUM | kernel: rxrpc: only handle RESPONSE during service challenge | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31677 | linux-libc-dev | MEDIUM | kernel: crypto: af_alg - limit RX SG extraction by receive b | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31678 | linux-libc-dev | MEDIUM | kernel: openvswitch: defer tunnel netdev_put to RCU release | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31679 | linux-libc-dev | MEDIUM | kernel: openvswitch: validate MPLS set/set_masked payload le | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31680 | linux-libc-dev | MEDIUM | kernel: net: ipv6: flowlabel: defer exclusive option free un | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31681 | linux-libc-dev | MEDIUM | kernel: netfilter: xt_multiport: validate range encoding in | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31682 | linux-libc-dev | MEDIUM | kernel: bridge: br_nd_send: linearize skb before parsing ND | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31683 | linux-libc-dev | MEDIUM | kernel: batman-adv: avoid OGM aggregation when skb tailroom | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31686 | linux-libc-dev | MEDIUM | kernel: mm/kasan: fix double free for kasan pXds | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31687 | linux-libc-dev | MEDIUM | kernel: gpio: omap: do not register driver in probe() | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-31688 | linux-libc-dev | MEDIUM | kernel: driver core: enforce device_lock for driver_match_de | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31689 | linux-libc-dev | MEDIUM | kernel: EDAC/mc: Fix error path ordering in edac_mc_alloc() | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31696 | linux-libc-dev | MEDIUM | kernel: rxrpc: Fix missing validation of ticket length in no | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31707 | linux-libc-dev | MEDIUM | kernel: ksmbd: validate response sizes in ipc_validate_msg() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31728 | linux-libc-dev | MEDIUM | kernel: usb: gadget: u_ether: Fix race between gether_discon | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31732 | linux-libc-dev | MEDIUM | kernel: gpio: Fix resource leaks on errors in gpiochip_add_d | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31739 | linux-libc-dev | MEDIUM | kernel: crypto: tegra - Add missing CRYPTO_ALG_ASYNC | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31755 | linux-libc-dev | MEDIUM | kernel: usb: cdns3: gadget: fix NULL pointer dereference in | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31779 | linux-libc-dev | MEDIUM | kernel: wifi: iwlwifi: mvm: fix potential out-of-bounds read | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31790 | libssl3t64 | MEDIUM | openssl: openssl: Information Disclosure from Uninitialized | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-31790 | openssl | MEDIUM | openssl: openssl: Information Disclosure from Uninitialized | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-31790 | openssl-provider-legacy | MEDIUM | openssl: openssl: Information Disclosure from Uninitialized | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-3184 | bsdutils | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 1:2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | libblkid1 | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | libmount1 | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | libsmartcols1 | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | libuuid1 | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | mount | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | util-linux | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-3184 | util-linux-extra | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2026-3184 | liblastlog2-2 | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 2.41-5 | no fix | slack-rqd-api |
| CVE-2026-3184 | login | MEDIUM | util-linux: util-linux: Access control bypass due to imprope | 1:4.16.0-2+really2.41-5 | no fix | slack-rqd-api |
| CVE-2026-3219 | pip | MEDIUM | pip: pip: Incorrect file installation due to improper archiv | 23.0.1 | no fix | dagster, slack-rqd-api |
| CVE-2026-32282 | stdlib | MEDIUM | golang: internal/syscall/unix: Root.Chmod can follow symlink | v1.22.4 | 1.25.9, 1.26.2 | dagster |
| CVE-2026-32288 | stdlib | MEDIUM | archive/tar: golang: Go's archive/tar package: Denial of Ser | v1.22.4 | 1.25.9, 1.26.2 | dagster |
| CVE-2026-32289 | stdlib | MEDIUM | html/template: golang: html/template: Cross-Site Scripting ( | v1.22.4 | 1.25.9, 1.26.2 | dagster |
| CVE-2026-32776 | libexpat1 | MEDIUM | libexpat: libexpat: Denial of Service due to NULL pointer de | 2.5.0-1 | no fix | dagster |
| CVE-2026-32777 | libexpat1 | MEDIUM | libexpat: libexpat: Denial of Service via infinite loop in D | 2.5.0-1 | no fix | dagster |
| CVE-2026-32778 | libexpat1 | MEDIUM | libexpat: libexpat: Denial of Service via NULL pointer deref | 2.5.0-1 | no fix | dagster |
| CVE-2026-34515 | aiohttp | MEDIUM | aiohttp: AIOHTTP: Information disclosure via static resource | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34516 | aiohttp | MEDIUM | aiohttp: AIOHTTP: Denial of Service via excessive multipart | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34525 | aiohttp | MEDIUM | aiohttp: aiohttp: Security bypass via multiple Host headers | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34743 | liblzma5 | MEDIUM | xz: XZ Utils: Denial of Service via buffer overflow in index | 5.4.1-0.2 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-34743 | xz-utils | MEDIUM | xz: XZ Utils: Denial of Service via buffer overflow in index | 5.8.1-1 | no fix | slack-rqd-api |
| CVE-2026-35387 | openssh-client | MEDIUM | OpenSSH: OpenSSH: Information disclosure due to unintended c | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2026-3783 | libcurl3-gnutls | MEDIUM | curl: curl: Information disclosure via OAuth2 bearer token l | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-3784 | libcurl3-gnutls | MEDIUM | curl: curl: Unauthorized access due to improper HTTP proxy c | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-3833 | libgnutls30 | MEDIUM | gnutls: GnuTLS: Policy bypass due to case-sensitive nameCons | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2026-40182 | OpenTelemetry.Exporter.OpenTelemetryProtocol | MEDIUM | OpenTelemetry dotnet: OTLP exporter reads unbounded HTTP res | 1.13.1 | 1.15.2 | rds-iam-mvp-app |
| CVE-2026-40225 | libsystemd0 | MEDIUM | systemd: udev in systemd: Privilege escalation via malicious | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-40225 | libudev1 | MEDIUM | systemd: udev in systemd: Privilege escalation via malicious | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-40226 | libsystemd0 | MEDIUM | systemd: systemd nspawn: Escape-to-host action via crafted c | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-40226 | libudev1 | MEDIUM | systemd: systemd nspawn: Escape-to-host action via crafted c | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-40355 | libgssapi-krb5-2 | MEDIUM | krb5: MIT Kerberos 5: Denial of Service via NULL pointer der | 1.20.1-2 | no fix | dagster |
| CVE-2026-40355 | libk5crypto3 | MEDIUM | krb5: MIT Kerberos 5: Denial of Service via NULL pointer der | 1.20.1-2 | no fix | dagster |
| CVE-2026-40355 | libkrb5-3 | MEDIUM | krb5: MIT Kerberos 5: Denial of Service via NULL pointer der | 1.20.1-2 | no fix | dagster |
| CVE-2026-40355 | libkrb5support0 | MEDIUM | krb5: MIT Kerberos 5: Denial of Service via NULL pointer der | 1.20.1-2 | no fix | dagster |
| CVE-2026-40356 | libgssapi-krb5-2 | MEDIUM | krb5: MIT Kerberos 5 (krb5): Denial of Service via integer u | 1.20.1-2 | no fix | dagster |
| CVE-2026-40356 | libk5crypto3 | MEDIUM | krb5: MIT Kerberos 5 (krb5): Denial of Service via integer u | 1.20.1-2 | no fix | dagster |
| CVE-2026-40356 | libkrb5-3 | MEDIUM | krb5: MIT Kerberos 5 (krb5): Denial of Service via integer u | 1.20.1-2 | no fix | dagster |
| CVE-2026-40356 | libkrb5support0 | MEDIUM | krb5: MIT Kerberos 5 (krb5): Denial of Service via integer u | 1.20.1-2 | no fix | dagster |
| CVE-2026-4046 | libc-bin | MEDIUM | glibc: glibc: Denial of Service via iconv() function with sp | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4046 | libc-dev-bin | MEDIUM | glibc: glibc: Denial of Service via iconv() function with sp | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-4046 | libc6 | MEDIUM | glibc: glibc: Denial of Service via iconv() function with sp | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4046 | libc6-dev | MEDIUM | glibc: glibc: Denial of Service via iconv() function with sp | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-40891 | OpenTelemetry.Exporter.OpenTelemetryProtocol | MEDIUM | OpenTelemetry dotnet: Unbounded `grpc-status-details-bin` pa | 1.13.1 | 1.15.3 | rds-iam-mvp-app |
| CVE-2026-40894 | OpenTelemetry.Api | MEDIUM | OpenTelemetry dotnet: Excessive memory allocation when parsi | 1.13.1 | 1.15.3 | rds-iam-mvp-app |
| CVE-2026-4105 | libsystemd0 | MEDIUM | systemd: systemd: Privilege escalation via improper access c | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4105 | libudev1 | MEDIUM | systemd: systemd: Privilege escalation via improper access c | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-43007 | linux-libc-dev | MEDIUM | kernel: accel/qaic: Handle DBC deactivation if the owner wen | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-43010 | linux-libc-dev | MEDIUM | kernel: bpf: Reject sleepable kprobe_multi programs at attac | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43012 | linux-libc-dev | MEDIUM | kernel: net/mlx5: Fix switchdev mode rollback in case of fai | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-43013 | linux-libc-dev | MEDIUM | kernel: net/mlx5: lag: Check for LAG device before creating | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43022 | linux-libc-dev | MEDIUM | kernel: Bluetooth: hci_sync: hci_cmd_sync_queue_once() retur | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43024 | linux-libc-dev | MEDIUM | kernel: netfilter: nf_tables: reject immediate NF_QUEUE verd | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43026 | linux-libc-dev | MEDIUM | kernel: netfilter: ctnetlink: zero expect NAT fields when CT | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43028 | linux-libc-dev | MEDIUM | kernel: netfilter: x_tables: ensure names are nul-terminated | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43030 | linux-libc-dev | MEDIUM | kernel: bpf: Fix regsafe() for pointers to packet | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43033 | linux-libc-dev | MEDIUM | kernel: crypto: authencesn - Do not place hiseq at end of ds | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43034 | linux-libc-dev | MEDIUM | kernel: bnxt_en: set backing store type from query type | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-43035 | linux-libc-dev | MEDIUM | kernel: net: sched: cls_api: fix tc_chain_fill_node to initi | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43036 | linux-libc-dev | MEDIUM | kernel: net: use skb_header_pointer() for TCPv4 GSO frag_off | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43041 | linux-libc-dev | MEDIUM | kernel: net: qrtr: replace qrtr_tx_flow radix_tree with xarr | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43043 | linux-libc-dev | MEDIUM | kernel: crypto: af-alg - fix NULL pointer dereference in sca | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43053 | linux-libc-dev | MEDIUM | kernel: xfs: close crash window in attr dabtree inactivation | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-43057 | linux-libc-dev | MEDIUM | kernel: net: correctly handle tunneled traffic on IPV6_CSUM | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-4437 | libc-bin | MEDIUM | glibc: glibc: Incorrect DNS response parsing via crafted DNS | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4437 | libc-dev-bin | MEDIUM | glibc: glibc: Incorrect DNS response parsing via crafted DNS | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-4437 | libc6 | MEDIUM | glibc: glibc: Incorrect DNS response parsing via crafted DNS | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4437 | libc6-dev | MEDIUM | glibc: glibc: Incorrect DNS response parsing via crafted DNS | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-4438 | libc-bin | MEDIUM | glibc: glibc: Invalid DNS hostname returned via gethostbyadd | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4438 | libc-dev-bin | MEDIUM | glibc: glibc: Invalid DNS hostname returned via gethostbyadd | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-4438 | libc6 | MEDIUM | glibc: glibc: Invalid DNS hostname returned via gethostbyadd | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-4438 | libc6-dev | MEDIUM | glibc: glibc: Invalid DNS hostname returned via gethostbyadd | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-4873 | libcurl3-gnutls | MEDIUM | curl: curl: Information disclosure due to incorrect TLS conn | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-5435 | libc-bin | MEDIUM | glibc: glibc: Out-of-bounds write via TSIG record processing | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5435 | libc-dev-bin | MEDIUM | glibc: glibc: Out-of-bounds write via TSIG record processing | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-5435 | libc6 | MEDIUM | glibc: glibc: Out-of-bounds write via TSIG record processing | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5435 | libc6-dev | MEDIUM | glibc: glibc: Out-of-bounds write via TSIG record processing | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-5450 | libc-bin | MEDIUM | glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` for | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5450 | libc-dev-bin | MEDIUM | glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` for | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-5450 | libc6 | MEDIUM | glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` for | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5450 | libc6-dev | MEDIUM | glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` for | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-5545 | libcurl3-gnutls | MEDIUM | curl: libcurl: Authentication bypass due to incorrect HTTP N | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-5704 | tar | MEDIUM | tar: tar: Hidden file injection via crafted archives | 1.34+dfsg-1.2 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5773 | libcurl3-gnutls | MEDIUM | curl: libcurl: Wrong file transfer due to incorrect SMB conn | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-5928 | libc-bin | MEDIUM | glibc: glibc: Information disclosure or denial of service vi | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5928 | libc-dev-bin | MEDIUM | glibc: glibc: Information disclosure or denial of service vi | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-5928 | libc6 | MEDIUM | glibc: glibc: Information disclosure or denial of service vi | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-5928 | libc6-dev | MEDIUM | glibc: glibc: Information disclosure or denial of service vi | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-6253 | libcurl3-gnutls | MEDIUM | curl: curl: Proxy credential disclosure via redirects to una | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-6429 | libcurl3-gnutls | MEDIUM | curl: libcurl: Credential leak via reused proxy connection d | 7.88.1-10+deb12u14 | no fix | dagster |
| GHSA-h4gh-qq45-vh27 | cryptography | MEDIUM | pyca/cryptography has a vulnerable OpenSSL included in crypt | 41.0.5 | 43.0.1 | dagster |
| GHSA-pjjw-qhg8-p2p9 | aiohttp | MEDIUM | aiohttp has vulnerable dependency that is vulnerable to requ | 3.8.5 | 3.8.6 | dagster |
| CVE-2004-0230 | linux-libc-dev | LOW | TCP, when using a large Window Size, makes it easier for rem | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2005-2541 | tar | LOW | tar: does not properly warn the user when extracting setuid | 1.34+dfsg-1.2 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2005-3660 | linux-libc-dev | LOW | Linux kernel 2.4 and 2.6 allows attackers to cause a denial | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2007-2243 | openssh-client | LOW | OpenSSH 4.6 and earlier, when ChallengeResponseAuthenticatio | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2007-2768 | openssh-client | LOW | OpenSSH, when using OPIE (One-Time Passwords in Everything) | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2007-3719 | linux-libc-dev | LOW | kernel: secretly Monopolizing the CPU Without Superuser Priv | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2007-5686 | login | LOW | initscripts in rPath Linux 1 sets insecure permissions for t | 1:4.13+dfsg1-1+b1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2007-5686 | passwd | LOW | initscripts in rPath Linux 1 sets insecure permissions for t | 1:4.13+dfsg1-1+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2007-5686 | login.defs | LOW | initscripts in rPath Linux 1 sets insecure permissions for t | 1:4.17.4-2 | no fix | slack-rqd-api |
| CVE-2008-2544 | linux-libc-dev | LOW | kernel: mounting proc readonly on a different mount point si | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2008-3234 | openssh-client | LOW | sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 Open | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2008-4609 | linux-libc-dev | LOW | kernel: TCP protocol vulnerabilities from Outpost24 | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2010-4563 | linux-libc-dev | LOW | kernel: ipv6: sniffer detection | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2010-4651 | patch | LOW | patch: directory traversal flaw allows for arbitrary file cr | 2.7.6-7 | no fix | dagster, slack-rqd-api |
| CVE-2010-4756 | libc-bin | LOW | glibc: glob implementation can cause excessive CPU and memor | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2010-4756 | libc-dev-bin | LOW | glibc: glob implementation can cause excessive CPU and memor | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2010-4756 | libc6 | LOW | glibc: glob implementation can cause excessive CPU and memor | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2010-4756 | libc6-dev | LOW | glibc: glob implementation can cause excessive CPU and memor | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2010-5321 | linux-libc-dev | LOW | kernel: v4l: videobuf: hotfix a bug on multiple calls to mma | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2011-3374 | apt | LOW | It was found that apt-key in apt, all versions, do not corre | 2.6.1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2011-3374 | libapt-pkg6.0 | LOW | It was found that apt-key in apt, all versions, do not corre | 2.6.1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2011-3374 | libapt-pkg7.0 | LOW | It was found that apt-key in apt, all versions, do not corre | 3.0.3 | no fix | slack-rqd-api |
| CVE-2011-3389 | libgnutls30 | LOW | HTTPS: block-wise chosen-plaintext attack against SSL/TLS (B | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2011-4116 | libperl5.36 | LOW | perl: File:: Temp insecure temporary file handling | 5.36.0-7+deb12u3 | no fix | dagster |
| CVE-2011-4116 | perl | LOW | perl: File:: Temp insecure temporary file handling | 5.36.0-7+deb12u3 | no fix | dagster, slack-rqd-api |
| CVE-2011-4116 | perl-base | LOW | perl: File:: Temp insecure temporary file handling | 5.36.0-7+deb12u3 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2011-4116 | perl-modules-5.36 | LOW | perl: File:: Temp insecure temporary file handling | 5.36.0-7+deb12u3 | no fix | dagster |
| CVE-2011-4116 | libperl5.40 | LOW | perl: File:: Temp insecure temporary file handling | 5.40.1-6 | no fix | slack-rqd-api |
| CVE-2011-4116 | perl-modules-5.40 | LOW | perl: File:: Temp insecure temporary file handling | 5.40.1-6 | no fix | slack-rqd-api |
| CVE-2011-4915 | linux-libc-dev | LOW | fs/proc/base.c in the Linux kernel through 3.1 allows local | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2011-4916 | linux-libc-dev | LOW | Linux kernel through 3.1 allows local users to obtain sensit | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2011-4917 | linux-libc-dev | LOW | In the Linux kernel through 3.1 there is an information disc | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2012-4542 | linux-libc-dev | LOW | kernel: block: default SCSI command filter does not accomoda | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2013-4392 | libsystemd0 | LOW | systemd: TOCTOU race condition when updating file permission | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2013-4392 | libudev1 | LOW | systemd: TOCTOU race condition when updating file permission | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2014-9892 | linux-libc-dev | LOW | The snd_compr_tstamp function in sound/core/compress_offload | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2014-9900 | linux-libc-dev | LOW | kernel: Info leak in uninitialized structure ethtool_wolinfo | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2015-2877 | linux-libc-dev | LOW | Kernel: Cross-VM ASL INtrospection (CAIN) | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2015-3276 | libldap-2.5-0 | LOW | openldap: incorrect multi-keyword mode cipherstring parsing | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2015-3276 | libldap-common | LOW | openldap: incorrect multi-keyword mode cipherstring parsing | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2016-10723 | linux-libc-dev | LOW | An issue was discovered in the Linux kernel through 4.17.2. | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2016-20012 | openssh-client | LOW | openssh: Public key information leak | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2016-2781 | coreutils | LOW | coreutils: Non-privileged session can escape to the parent s | 9.1-1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2016-8660 | linux-libc-dev | LOW | kernel: xfs: local DoS due to a page lock order bug in the X | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2017-0630 | linux-libc-dev | LOW | kernel: Information disclosure vulnerability in kernel trace | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2017-13693 | linux-libc-dev | LOW | kernel: ACPI operand cache leak in dsutils.c | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2017-13694 | linux-libc-dev | LOW | kernel: ACPI node and node_ext cache leak | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | binutils | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | binutils-common | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | binutils-x86-64-linux-gnu | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | libbinutils | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | libctf-nobfd0 | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | libctf0 | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | libgprofng0 | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2017-13716 | libsframe1 | LOW | binutils: Memory leak with the C++ symbol demangler routine | 2.44-3 | no fix | slack-rqd-api |
| CVE-2017-14159 | libldap-2.5-0 | LOW | openldap: Privilege escalation via PID file manipulation | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2017-14159 | libldap-common | LOW | openldap: Privilege escalation via PID file manipulation | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2017-17740 | libldap-2.5-0 | LOW | openldap: contrib/slapd-modules/nops/nops.c attempts to free | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2017-17740 | libldap-common | LOW | openldap: contrib/slapd-modules/nops/nops.c attempts to free | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2017-18018 | coreutils | LOW | coreutils: race condition vulnerability in chown and chgrp | 9.1-1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2018-1000021 | git | LOW | git: client prints server-sent ANSI escape codes to the term | 1:2.39.5-0+deb12u3 | no fix | dagster |
| CVE-2018-1000021 | git-man | LOW | git: client prints server-sent ANSI escape codes to the term | 1:2.39.5-0+deb12u3 | no fix | dagster |
| CVE-2018-1121 | linux-libc-dev | LOW | procps: process hiding through race condition enumerating /p | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2018-12928 | linux-libc-dev | LOW | kernel: NULL pointer dereference in hfs_ext_read_extent in h | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2018-15919 | openssh-client | LOW | openssh: User enumeration via malformed packets in authentic | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2018-17977 | linux-libc-dev | LOW | kernel: Mishandled interactions among XFRM Netlink messages, | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | binutils | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | binutils-common | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | binutils-x86-64-linux-gnu | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | libbinutils | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | libctf-nobfd0 | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | libctf0 | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | libgprofng0 | LOW | libiberty: Integer overflow in demangle_template() function | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20673 | libsframe1 | LOW | libiberty: Integer overflow in demangle_template() function | 2.44-3 | no fix | slack-rqd-api |
| CVE-2018-20712 | binutils | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | binutils-common | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | binutils-x86-64-linux-gnu | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | libbinutils | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | libctf-nobfd0 | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | libctf0 | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | libgprofng0 | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-20712 | libsframe1 | LOW | libiberty: heap-based buffer over-read in d_expression_1 | 2.44-3 | no fix | slack-rqd-api |
| CVE-2018-20796 | libc-bin | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2018-20796 | libc-dev-bin | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2018-20796 | libc6 | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2018-20796 | libc6-dev | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2018-5709 | libgssapi-krb5-2 | LOW | krb5: integer overflow in dbentry->n_key_data in kadmin/dbut | 1.20.1-2 | no fix | dagster |
| CVE-2018-5709 | libk5crypto3 | LOW | krb5: integer overflow in dbentry->n_key_data in kadmin/dbut | 1.20.1-2 | no fix | dagster |
| CVE-2018-5709 | libkrb5-3 | LOW | krb5: integer overflow in dbentry->n_key_data in kadmin/dbut | 1.20.1-2 | no fix | dagster |
| CVE-2018-5709 | libkrb5support0 | LOW | krb5: integer overflow in dbentry->n_key_data in kadmin/dbut | 1.20.1-2 | no fix | dagster |
| CVE-2018-6829 | libgcrypt20 | LOW | libgcrypt: ElGamal implementation doesn't have semantic secu | 1.10.1-3 | no fix | dagster, rds-iam-mvp-app |
| CVE-2018-6951 | patch | LOW | patch: NULL pointer dereference in pch.c:intuit_diff_type() | 2.7.6-7 | no fix | dagster, slack-rqd-api |
| CVE-2018-6952 | patch | LOW | patch: Double free of memory in pch.c:another_hunk() causes | 2.7.6-7 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | binutils | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | binutils-common | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | binutils-x86-64-linux-gnu | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | libbinutils | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | libctf-nobfd0 | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | libctf0 | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | libgprofng0 | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2018-9996 | libsframe1 | LOW | binutils: Stack-overflow in libiberty/cplus-dem.c causes cra | 2.44-3 | no fix | slack-rqd-api |
| CVE-2019-1010022 | libc-bin | LOW | glibc: stack guard protection bypass | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010022 | libc-dev-bin | LOW | glibc: stack guard protection bypass | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010022 | libc6 | LOW | glibc: stack guard protection bypass | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010022 | libc6-dev | LOW | glibc: stack guard protection bypass | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010023 | libc-bin | LOW | glibc: running ldd on malicious ELF leads to code execution | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010023 | libc-dev-bin | LOW | glibc: running ldd on malicious ELF leads to code execution | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010023 | libc6 | LOW | glibc: running ldd on malicious ELF leads to code execution | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010023 | libc6-dev | LOW | glibc: running ldd on malicious ELF leads to code execution | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010024 | libc-bin | LOW | glibc: ASLR bypass using cache of thread stack and heap | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010024 | libc-dev-bin | LOW | glibc: ASLR bypass using cache of thread stack and heap | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010024 | libc6 | LOW | glibc: ASLR bypass using cache of thread stack and heap | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010024 | libc6-dev | LOW | glibc: ASLR bypass using cache of thread stack and heap | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010025 | libc-bin | LOW | glibc: information disclosure of heap addresses of pthread_c | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010025 | libc-dev-bin | LOW | glibc: information disclosure of heap addresses of pthread_c | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-1010025 | libc6 | LOW | glibc: information disclosure of heap addresses of pthread_c | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-1010025 | libc6-dev | LOW | glibc: information disclosure of heap addresses of pthread_c | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-11191 | linux-libc-dev | LOW | kernel: race condition in load_aout_binary() allows local us | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12378 | linux-libc-dev | LOW | kernel: unchecked kmalloc of new_ra in ip6_ra_control leads | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12379 | linux-libc-dev | LOW | kernel: memory leak in con_insert_unipair in drivers/tty/vt/ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12380 | linux-libc-dev | LOW | kernel: memory allocation failure in the efi subsystem leads | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12381 | linux-libc-dev | LOW | kernel: unchecked kmalloc of new_ra in ip_ra_control leads t | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12382 | linux-libc-dev | LOW | kernel: unchecked kstrdup of fwstr in drm_load_edid_firmware | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12455 | linux-libc-dev | LOW | kernel: null pointer dereference in sunxi_divs_clk_setup in | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-12456 | linux-libc-dev | LOW | kernel: double fetch in the MPT3COMMAND case in _ctl_ioctl_m | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16229 | linux-libc-dev | LOW | kernel: null pointer dereference in drivers/gpu/drm/amd/amdk | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16230 | linux-libc-dev | LOW | kernel: null pointer dereference in drivers/gpu/drm/radeon/r | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16231 | linux-libc-dev | LOW | kernel: null-pointer dereference in drivers/net/fjes/fjes_ma | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16232 | linux-libc-dev | LOW | kernel: null-pointer dereference in drivers/net/wireless/mar | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16233 | linux-libc-dev | LOW | kernel: null pointer dereference in drivers/scsi/qla2xxx/qla | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-16234 | linux-libc-dev | LOW | kernel: null pointer dereference in drivers/net/wireless/int | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-19070 | linux-libc-dev | LOW | kernel: A memory leak in the spi_gpio_probe() function in dr | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-19378 | linux-libc-dev | LOW | kernel: out-of-bounds write in index_rbio_pages in fs/btrfs/ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2019-6110 | openssh-client | LOW | openssh: Acceptance and display of arbitrary stderr allows f | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2019-9192 | libc-bin | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-9192 | libc-dev-bin | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2019-9192 | libc6 | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2019-9192 | libc6-dev | LOW | glibc: uncontrolled recursion in function check_dst_limits_c | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2020-11725 | linux-libc-dev | LOW | kernel: improper handling of private_size*count multiplicati | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2020-14145 | openssh-client | LOW | openssh: Observable discrepancy leading to an information le | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2020-15719 | libldap-2.5-0 | LOW | openldap: Certificate validation incorrectly matches name ag | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2020-15719 | libldap-common | LOW | openldap: Certificate validation incorrectly matches name ag | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2020-15778 | openssh-client | LOW | openssh: scp allows command injection when using backtick ch | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2020-35501 | linux-libc-dev | LOW | kernel: audit not logging access to syscall open_by_handle_a | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2020-36325 | libjansson4 | LOW | jansson: out-of-bounds read in json_loads() due to a parsing | 2.14-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-26934 | linux-libc-dev | LOW | An issue was discovered in the Linux kernel 4.18 through 5.1 | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | binutils | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | binutils-common | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | binutils-x86-64-linux-gnu | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | libbinutils | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | libctf-nobfd0 | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | libctf0 | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | libgprofng0 | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2021-32256 | libsframe1 | LOW | binutils: stack-overflow issue in demangle_type in rust-dema | 2.44-3 | no fix | slack-rqd-api |
| CVE-2021-3714 | linux-libc-dev | LOW | kernel: Remote Page Deduplication Attacks | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2021-45261 | patch | LOW | patch: Invalid Pointer via another_hunk function | 2.7.6-7 | no fix | dagster, slack-rqd-api |
| CVE-2021-45346 | libsqlite3-0 | LOW | sqlite: crafted SQL query allows a malicious user to obtain | 3.40.1-2 | no fix | dagster, slack-rqd-api |
| CVE-2022-0400 | linux-libc-dev | LOW | kernel: Out of bounds read in the smc protocol stack | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-0563 | bsdutils | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 1:2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | libblkid1 | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | libmount1 | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | libsmartcols1 | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | libuuid1 | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | mount | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | util-linux | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2022-0563 | util-linux-extra | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2022-0563 | liblastlog2-2 | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 2.41-5 | no fix | slack-rqd-api |
| CVE-2022-0563 | login | LOW | util-linux: partial disclosure of arbitrary files in chfn an | 1:4.16.0-2+really2.41-5 | no fix | slack-rqd-api |
| CVE-2022-1247 | linux-libc-dev | LOW | kernel: A race condition bug in rose_connect() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-24975 | git | LOW | git: The --mirror option for git leaks secret for deleted co | 1:2.39.5-0+deb12u3 | no fix | dagster |
| CVE-2022-24975 | git-man | LOW | git: The --mirror option for git leaks secret for deleted co | 1:2.39.5-0+deb12u3 | no fix | dagster |
| CVE-2022-25265 | linux-libc-dev | LOW | kernel: Executable Space Protection Bypass | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-27943 | cpp-12 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | gcc-12 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | gcc-12-base | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2022-27943 | libasan8 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libatomic1 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libcc1-0 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libgcc-12-dev | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libgcc-s1 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2022-27943 | libgomp1 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libitm1 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | liblsan0 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libquadmath0 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libstdc++6 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2022-27943 | libtsan2 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-27943 | libubsan1 | LOW | binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows s | 12.2.0-14+deb12u1 | no fix | dagster |
| CVE-2022-2961 | linux-libc-dev | LOW | kernel: race condition in rose_bind() | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-3219 | gpgv | LOW | gnupg: denial of service issue (resource consumption) using | 2.2.40-1.1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2022-3238 | linux-libc-dev | LOW | kernel: ntfs3 local privledge escalation if NTFS character s | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-41848 | linux-libc-dev | LOW | kernel: Race condition between mgslpc_ioctl and mgslpc_detac | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-44032 | linux-libc-dev | LOW | Kernel: Race between cmm_open() and cm4000_detach() result i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-44033 | linux-libc-dev | LOW | Kernel: A race condition between cm4040_open() and reader_de | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-44034 | linux-libc-dev | LOW | Kernel: A use-after-free due to race between scr24x_open() | 6.1.38-4 | no fix | dagster |
| CVE-2022-4543 | linux-libc-dev | LOW | kernel: KASLR Prefetch Bypass Breaks KPTI | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-45884 | linux-libc-dev | LOW | kernel: use-after-free due to race condition occurring in dv | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-45885 | linux-libc-dev | LOW | kernel: use-after-free due to race condition occurring in dv | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2022-48303 | tar | LOW | tar: heap buffer overflow at from_header() in list.c via spe | 1.34+dfsg-1.2 | 1.34+dfsg-1.2+deb12u1 | dagster |
| CVE-2022-48502 | linux-libc-dev | LOW | kernel: ntfs3 subsystem does not properly check for correctn | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-1972 | binutils | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-1972 | binutils-common | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-1972 | binutils-x86-64-linux-gnu | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-1972 | libbinutils | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-1972 | libctf-nobfd0 | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-1972 | libctf0 | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-1972 | libgprofng0 | LOW | binutils: Illegal memory access when accessing a zer0-length | 2.40-2 | no fix | dagster |
| CVE-2023-23039 | linux-libc-dev | LOW | kernel: tty: vcc: race condition leading to use-after-free i | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-26242 | linux-libc-dev | LOW | afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-29383 | login | LOW | shadow: Improper input validation in shadow-utils package ut | 1:4.13+dfsg1-1+b1 | 1:4.13+dfsg1-1+deb12u1 | dagster |
| CVE-2023-29383 | passwd | LOW | shadow: Improper input validation in shadow-utils package ut | 1:4.13+dfsg1-1+b1 | 1:4.13+dfsg1-1+deb12u1 | dagster |
| CVE-2023-31081 | linux-libc-dev | LOW | An issue was discovered in drivers/media/test-drivers/vidtv/ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-31085 | linux-libc-dev | LOW | kernel: divide-by-zero error in ctrl_cdev_ioctl when do_div | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-31437 | libsystemd0 | LOW | An issue was discovered in systemd 253. An attacker can modi | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-31437 | libudev1 | LOW | An issue was discovered in systemd 253. An attacker can modi | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-31438 | libsystemd0 | LOW | An issue was discovered in systemd 253. An attacker can trun | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-31438 | libudev1 | LOW | An issue was discovered in systemd 253. An attacker can trun | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-31439 | libsystemd0 | LOW | An issue was discovered in systemd 253. An attacker can modi | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-31439 | libudev1 | LOW | An issue was discovered in systemd 253. An attacker can modi | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-31486 | libperl5.36 | LOW | http-tiny: perl: insecure TLS cert default | 5.36.0-7+deb12u3 | no fix | dagster |
| CVE-2023-31486 | perl | LOW | http-tiny: perl: insecure TLS cert default | 5.36.0-7+deb12u3 | no fix | dagster |
| CVE-2023-31486 | perl-base | LOW | http-tiny: perl: insecure TLS cert default | 5.36.0-7+deb12u3 | no fix | dagster, rds-iam-mvp-app |
| CVE-2023-31486 | perl-modules-5.36 | LOW | http-tiny: perl: insecure TLS cert default | 5.36.0-7+deb12u3 | no fix | dagster |
| CVE-2023-3640 | linux-libc-dev | LOW | Kernel: x86/mm: a per-cpu entry area leak was identified thr | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2023-39191 | linux-libc-dev | LOW | kernel: eBPF: insufficient stack type checks in dynptr | 6.1.38-4 | no fix | dagster |
| CVE-2023-39804 | tar | LOW | tar: Incorrectly handled extension attributes in PAX archive | 1.34+dfsg-1.2 | 1.34+dfsg-1.2+deb12u1 | dagster |
| CVE-2023-4134 | linux-libc-dev | LOW | kernel: cyttsp4_core: use-after-free in cyttsp4_watchdog_wor | 6.1.38-4 | no fix | dagster |
| CVE-2023-45896 | linux-libc-dev | LOW | kernel: ntfs3: kernel memory read by mounting a filesystem | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2023-52426 | libexpat1 | LOW | expat: recursive XML entity expansion vulnerability | 2.5.0-1 | no fix | dagster |
| CVE-2023-52561 | linux-libc-dev | LOW | kernel: arm64: dts: qcom: sdm845-db845c: unreserved cont spl | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52571 | linux-libc-dev | LOW | kernel: power: supply: rk817: refcount leak in rk817_charger | 6.1.38-4 | 6.1.64-1 | dagster |
| CVE-2023-52620 | linux-libc-dev | LOW | kernel: netfilter: nf_tables: disallow timeout for anonymous | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2023-52926 | linux-libc-dev | LOW | kernel: io_uring/rw: split io_read() into a helper | 6.1.38-4 | 6.1.123-1 | dagster |
| CVE-2023-53763 | linux-libc-dev | LOW | kernel: Revert "f2fs: fix to do sanity check on extent cache | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53992 | linux-libc-dev | LOW | kernel: wifi: cfg80211: ocb: don't leave if not joined | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-53998 | linux-libc-dev | LOW | kernel: hwrng: virtio - Fix race on data_avail and actual da | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54083 | linux-libc-dev | LOW | kernel: phy: tegra: xusb: Clear the driver reference in usb- | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54127 | linux-libc-dev | LOW | kernel: fs/jfs: prevent double-free in dbUnmount() after fai | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54145 | linux-libc-dev | LOW | kernel: Linux kernel: BPF verifier log truncation via crafte | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2023-54153 | linux-libc-dev | LOW | kernel: ext4: turn quotas off if mount failed after enabling | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54171 | linux-libc-dev | LOW | kernel: tracing: Fix memory leak of iter->temp when reading | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54172 | linux-libc-dev | LOW | kernel: x86/hyperv: Disable IBT when hypercall page lacks EN | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54177 | linux-libc-dev | LOW | kernel: quota: fix warning in dqgrab() | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54194 | linux-libc-dev | LOW | kernel: exfat: use kvmalloc_array/kvfree instead of kmalloc_ | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54211 | linux-libc-dev | LOW | kernel: tracing: Fix warning in trace_buffered_event_disable | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54220 | linux-libc-dev | LOW | kernel: serial: 8250: Fix oops for port->pm on uart_change_p | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54221 | linux-libc-dev | LOW | kernel: clk: imx93: fix memory leak and missing unwind goto | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54227 | linux-libc-dev | LOW | kernel: blk-mq: fix tags leak when shrink nr_hw_queues | 6.1.38-4 | no fix | dagster |
| CVE-2023-54230 | linux-libc-dev | LOW | kernel: amba: bus: fix refcount leak | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54233 | linux-libc-dev | LOW | kernel: ASoC: SOF: avoid a NULL dereference with unsupported | 6.1.38-4 | no fix | dagster |
| CVE-2023-54235 | linux-libc-dev | LOW | kernel: PCI/DOE: Fix destroy_work_on_stack() race | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54246 | linux-libc-dev | LOW | kernel: rcuscale: Move rcu_scale_writer() schedule_timeout_u | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54267 | linux-libc-dev | LOW | kernel: powerpc/pseries: Rework lppaca_shared_proc() to avoi | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54282 | linux-libc-dev | LOW | kernel: media: tuners: qt1010: replace BUG_ON with a regular | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54283 | linux-libc-dev | LOW | kernel: bpf: Address KCSAN report on bpf_lru_list | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54312 | linux-libc-dev | LOW | kernel: samples/bpf: Fix buffer overflow in tcp_basertt | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54315 | linux-libc-dev | LOW | kernel: powerpc/powernv/sriov: perform null check on iov bef | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54316 | linux-libc-dev | LOW | kernel: refscale: Fix uninitalized use of wait_queue_head_t | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54322 | linux-libc-dev | LOW | kernel: arm64: set __exception_irq_entry with __irq_entry as | 6.1.38-4 | no fix | dagster |
| CVE-2023-6610 | linux-libc-dev | LOW | kernel: OOB Access in smb2_dump_detail | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-0564 | linux-libc-dev | LOW | kernel: max page sharing of Kernel Samepage Merging (KSM) ma | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2024-2236 | libgcrypt20 | LOW | libgcrypt: vulnerable to Marvin Attack | 1.10.1-3 | no fix | dagster, rds-iam-mvp-app |
| CVE-2024-2379 | libcurl3-gnutls | LOW | curl: QUIC certificate check bypass with wolfSSL | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2024-26458 | libgssapi-krb5-2 | LOW | krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26458 | libk5crypto3 | LOW | krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26458 | libkrb5-3 | LOW | krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26458 | libkrb5support0 | LOW | krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26461 | libgssapi-krb5-2 | LOW | krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26461 | libk5crypto3 | LOW | krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26461 | libkrb5-3 | LOW | krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26461 | libkrb5support0 | LOW | krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c | 1.20.1-2 | no fix | dagster |
| CVE-2024-26612 | linux-libc-dev | LOW | kernel: netfs, fscache: Prevent Oops in fscache_put_cache() | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26614 | linux-libc-dev | LOW | kernel: tcp: make sure init the accept_queue's spinlocks | 6.1.38-4 | 6.1.76-1 | dagster |
| CVE-2024-26764 | linux-libc-dev | LOW | kernel: fs/aio: Restrict kiocb_set_cancel_fn() to I/O submit | 6.1.38-4 | 6.1.82-1 | dagster |
| CVE-2024-26992 | linux-libc-dev | LOW | kernel: KVM: x86/pmu: Disable support for adaptive PEBS | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-28757 | libexpat1 | LOW | expat: XML Entity Expansion | 2.5.0-1 | no fix | dagster |
| CVE-2024-35935 | linux-libc-dev | LOW | kernel: btrfs: send: handle path ref underflow in header ite | 6.1.38-4 | 6.1.90-1 | dagster |
| CVE-2024-39689 | certifi | LOW | python-certifi: Remove root certificates from `GLOBALTRUST` | 2023.5.7 | 2024.7.4 | dagster |
| CVE-2024-40918 | linux-libc-dev | LOW | kernel: parisc: Try to fix random segmentation faults in pac | 6.1.38-4 | no fix | dagster |
| CVE-2024-41007 | linux-libc-dev | LOW | kernel: tcp: avoid too many retransmit packets | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-41027 | linux-libc-dev | LOW | kernel: Fix userfaultfd_api to return EINVAL as expected | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-42155 | linux-libc-dev | LOW | kernel: s390/pkey: Wipe copies of protected- and secure-keys | 6.1.38-4 | no fix | dagster |
| CVE-2024-43841 | linux-libc-dev | LOW | kernel: wifi: virt_wifi: avoid reporting connection success | 6.1.38-4 | 6.1.106-1 | dagster |
| CVE-2024-46794 | linux-libc-dev | LOW | kernel: x86/tdx: Fix data leak in mmio_read() | 6.1.38-4 | 6.1.112-1 | dagster |
| CVE-2024-47738 | linux-libc-dev | LOW | kernel: wifi: mac80211: don't use rate mask for offchann | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50044 | linux-libc-dev | LOW | kernel: Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_s | 6.1.38-4 | 6.1.115-1 | dagster |
| CVE-2024-50057 | linux-libc-dev | LOW | kernel: usb: typec: tipd: Free IRQ only if it was requested | 6.1.38-4 | no fix | dagster |
| CVE-2024-50211 | linux-libc-dev | LOW | kernel: udf: refactor inode_bmap() to handle error | 6.1.38-4 | no fix | dagster |
| CVE-2024-50280 | linux-libc-dev | LOW | kernel: dm cache: fix flushing uninitialized delayed_work on | 6.1.38-4 | 6.1.119-1 | dagster |
| CVE-2024-52005 | git | LOW | git: The sideband payload is passed unfiltered to the termin | 1:2.39.5-0+deb12u3 | no fix | dagster |
| CVE-2024-52005 | git-man | LOW | git: The sideband payload is passed unfiltered to the termin | 1:2.39.5-0+deb12u3 | no fix | dagster |
| CVE-2024-53589 | binutils | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-53589 | binutils-common | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-53589 | binutils-x86-64-linux-gnu | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-53589 | libbinutils | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-53589 | libctf-nobfd0 | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-53589 | libctf0 | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-53589 | libgprofng0 | LOW | binutils: objdump: buffer Overflow in the BFD library's hand | 2.40-2 | no fix | dagster |
| CVE-2024-56433 | login | LOW | shadow-utils: Default subordinate ID configuration in /etc/l | 1:4.13+dfsg1-1+b1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2024-56433 | passwd | LOW | shadow-utils: Default subordinate ID configuration in /etc/l | 1:4.13+dfsg1-1+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2024-56433 | login.defs | LOW | shadow-utils: Default subordinate ID configuration in /etc/l | 1:4.17.4-2 | no fix | slack-rqd-api |
| CVE-2024-57360 | binutils | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2024-57360 | binutils-common | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2024-57360 | binutils-x86-64-linux-gnu | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2024-57360 | libbinutils | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2024-57360 | libctf-nobfd0 | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2024-57360 | libctf0 | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2024-57360 | libgprofng0 | LOW | binutils: nm: potential segmentation fault when displaying s | 2.40-2 | no fix | dagster |
| CVE-2025-0725 | libcurl3-gnutls | LOW | libcurl: Buffer Overflow in libcurl via zlib Integer Overflo | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-0840 | binutils | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-0840 | binutils-common | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-0840 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-0840 | libbinutils | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-0840 | libctf-nobfd0 | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-0840 | libctf0 | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-0840 | libgprofng0 | LOW | binutils: GNU Binutils objdump.c disassemble_bytes stack-bas | 2.40-2 | no fix | dagster |
| CVE-2025-10966 | libcurl3-gnutls | LOW | curl: Curl missing SFTP host verification with wolfSSH backe | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-11081 | binutils | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | binutils-common | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | libbinutils | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | libctf-nobfd0 | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | libctf0 | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | libgprofng0 | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11081 | libsframe1 | LOW | binutils: GNU Binutils out-of-bounds read | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11082 | binutils | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | binutils-common | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | libbinutils | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | libctf0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | libgprofng0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11082 | libsframe1 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11083 | binutils | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | binutils-common | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | libbinutils | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | libctf0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | libgprofng0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11083 | libsframe1 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11412 | binutils | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | binutils-common | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | libbinutils | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | libctf0 | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | libgprofng0 | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11412 | libsframe1 | LOW | binutils: GNU Binutils Linker elflink.c bfd_elf_gc_record_vt | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11413 | binutils | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | binutils-common | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | libbinutils | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | libctf0 | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | libgprofng0 | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11413 | libsframe1 | LOW | binutils: GNU Binutils Linker elflink.c elf_link_add_object_ | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11414 | binutils | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | binutils-common | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | libbinutils | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | libctf0 | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | libgprofng0 | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11414 | libsframe1 | LOW | binutils: GNU Binutils Linker elflink.c get_link_hash_entry | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1147 | binutils | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | binutils-common | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | libbinutils | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | libctf-nobfd0 | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | libctf0 | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | libgprofng0 | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1147 | libsframe1 | LOW | binutils: GNU Binutils nm nm.c internal_strlen buffer overfl | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1148 | binutils | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | binutils-common | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | libbinutils | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | libctf0 | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | libgprofng0 | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1148 | libsframe1 | LOW | binutils: GNU Binutils ld ldelfgen.c link_order_scan memory | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1149 | binutils | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | binutils-common | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | libbinutils | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | libctf0 | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | libgprofng0 | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1149 | libsframe1 | LOW | binutils: GNU Binutils ld xmalloc.c xstrdup memory leak | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11494 | binutils | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | binutils-common | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | libbinutils | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | libctf0 | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | libgprofng0 | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11494 | libsframe1 | LOW | binutils: GNU Binutils Linker out-of-bounds read | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11495 | binutils | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | binutils-common | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | libbinutils | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | libctf-nobfd0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | libctf0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | libgprofng0 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11495 | libsframe1 | LOW | binutils: GNU Binutils Linker heap-based overflow | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1150 | binutils | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | binutils-common | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | libbinutils | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | libctf0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | libgprofng0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1150 | libsframe1 | LOW | binutils: GNU Binutils ld libbfd.c bfd_malloc memory leak | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1151 | binutils | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | binutils-common | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | libbinutils | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | libctf0 | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | libgprofng0 | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1151 | libsframe1 | LOW | binutils: GNU Binutils ld xmemdup.c xmemdup memory leak | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1152 | binutils | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | binutils-common | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | libbinutils | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | libctf0 | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | libgprofng0 | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1152 | libsframe1 | LOW | binutils: GNU Binutils ld xstrdup.c xstrdup memory leak | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1153 | binutils | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | binutils-common | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | libbinutils | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | libctf-nobfd0 | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | libctf0 | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | libgprofng0 | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1153 | libsframe1 | LOW | binutils: GNU Binutils format.c bfd_set_format memory corrup | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1176 | binutils | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | binutils-common | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | libbinutils | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | libctf0 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | libgprofng0 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1176 | libsframe1 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec he | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1178 | binutils | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | binutils-common | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | libbinutils | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | libctf0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | libgprofng0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1178 | libsframe1 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1179 | binutils | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1179 | binutils-common | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1179 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1179 | libbinutils | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1179 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1179 | libctf0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1179 | libgprofng0 | LOW | binutils: GNU Binutils ld libbfd.c bfd_putl64 memory corrupt | 2.40-2 | no fix | dagster |
| CVE-2025-1180 | binutils | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | binutils-common | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | libbinutils | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | libctf0 | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | libgprofng0 | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1180 | libsframe1 | LOW | binutils: GNU Binutils ld elf-eh-frame.c _bfd_elf_write_sect | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1181 | binutils | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | binutils-common | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | libbinutils | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | libctf0 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | libgprofng0 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1181 | libsframe1 | LOW | binutils: GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec me | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-1182 | binutils | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | binutils-common | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | libbinutils | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | libctf0 | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | libgprofng0 | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-1182 | libsframe1 | LOW | binutils: GNU Binutils ld elflink.c bfd_elf_reloc_symbol_del | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11839 | binutils | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | binutils-common | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | libbinutils | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | libctf-nobfd0 | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | libctf0 | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | libgprofng0 | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11839 | libsframe1 | LOW | binutils: GNU Binutils prdbg.c tg_tag_type return value | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-11840 | binutils | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | binutils-common | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | libbinutils | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | libctf-nobfd0 | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | libctf0 | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | libgprofng0 | LOW | binutils: GNU Binutils out-of-bounds read | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-11840 | libsframe1 | LOW | binutils: GNU Binutils out-of-bounds read | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-14017 | libcurl3-gnutls | LOW | curl: curl: Security bypass due to global TLS option changes | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-14104 | bsdutils | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 1:2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | libblkid1 | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | libmount1 | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | libsmartcols1 | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | libuuid1 | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | mount | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | util-linux | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-14104 | util-linux-extra | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.38.1-5+b1 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-14104 | liblastlog2-2 | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 2.41-5 | no fix | slack-rqd-api |
| CVE-2025-14104 | login | LOW | util-linux: util-linux: Heap buffer overread in setpwnam() w | 1:4.16.0-2+really2.41-5 | no fix | slack-rqd-api |
| CVE-2025-15079 | libcurl3-gnutls | LOW | curl: Host verification bypass during SSH transfers | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-15224 | libcurl3-gnutls | LOW | curl: libssh key passphrase bypass without agent set | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2025-27587 | libssl-dev | LOW | OpenSSL 3.0.0 through 3.3.2 on the PowerPC architecture is v | 3.0.19-1~deb12u2 | no fix | dagster |
| CVE-2025-27587 | libssl3 | LOW | OpenSSL 3.0.0 through 3.3.2 on the PowerPC architecture is v | 3.0.19-1~deb12u2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-27587 | openssl | LOW | OpenSSL 3.0.0 through 3.3.2 on the PowerPC architecture is v | 3.0.19-1~deb12u2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-29088 | libsqlite3-0 | LOW | sqlite: Denial of Service in SQLite | 3.40.1-2 | no fix | dagster |
| CVE-2025-3198 | binutils | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | binutils-common | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | libbinutils | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | libctf-nobfd0 | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | libctf0 | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | libgprofng0 | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-3198 | libsframe1 | LOW | binutils: GNU Binutils objdump bucomm.c display_info memory | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-39964 | linux-libc-dev | LOW | kernel: crypto: af_alg - Disallow concurrent writes in af_al | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40035 | linux-libc-dev | LOW | kernel: Input: uinput - zero-initialize uinput_ff_upload_com | 6.1.38-4 | 6.1.158-1 | dagster |
| CVE-2025-40113 | linux-libc-dev | LOW | kernel: remoteproc: qcom: pas: Shutdown lite ADSP DTB on X1E | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-40268 | linux-libc-dev | LOW | kernel: cifs: client: fix memory leak in smb3_fs_context_par | 6.1.38-4 | no fix | dagster |
| CVE-2025-40303 | linux-libc-dev | LOW | kernel: btrfs: ensure no dirty metadata is written back for | 6.1.38-4 | no fix | dagster |
| CVE-2025-40341 | linux-libc-dev | LOW | kernel: futex: Don't leak robust_list pointer on exec race | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-5244 | binutils | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | binutils-common | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | libbinutils | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | libctf-nobfd0 | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | libctf0 | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | libgprofng0 | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5244 | libsframe1 | LOW | binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corr | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-5245 | binutils | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | binutils-common | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | libbinutils | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | libctf-nobfd0 | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | libctf0 | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | libgprofng0 | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-5245 | libsframe1 | LOW | binutils: GNU Binutils objdump debug.c debug_type_samep memo | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-5278 | coreutils | LOW | coreutils: Heap Buffer Under-Read in GNU Coreutils sort via | 9.1-1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-53643 | aiohttp | LOW | aiohttp: AIOHTTP HTTP Request/Response Smuggling | 3.8.5 | 3.12.14 | dagster |
| CVE-2025-6141 | libncursesw6 | LOW | gnu-ncurses: ncurses Stack Buffer Overflow | 6.4-4 | no fix | dagster, slack-rqd-api |
| CVE-2025-6141 | libtinfo6 | LOW | gnu-ncurses: ncurses Stack Buffer Overflow | 6.4-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-6141 | ncurses-base | LOW | gnu-ncurses: ncurses Stack Buffer Overflow | 6.4-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-6141 | ncurses-bin | LOW | gnu-ncurses: ncurses Stack Buffer Overflow | 6.4-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2025-6297 | dpkg | LOW | It was discovered that dpkg-deb does not properly sanitize d | 1.21.22 | no fix | dagster, rds-iam-mvp-app |
| CVE-2025-66861 | binutils | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | binutils-common | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | binutils-x86-64-linux-gnu | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | libbinutils | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | libctf-nobfd0 | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | libctf0 | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | libgprofng0 | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66861 | libsframe1 | LOW | binutils: out-of-bounds read in d_unqualified_name() in cp-d | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-66862 | binutils | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | binutils-common | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | binutils-x86-64-linux-gnu | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | libbinutils | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | libctf-nobfd0 | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | libctf0 | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | libgprofng0 | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66862 | libsframe1 | LOW | binutils: heap-based buffer over-read in gnu_special() in cp | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-66863 | binutils | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | binutils-common | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | binutils-x86-64-linux-gnu | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | libbinutils | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | libctf-nobfd0 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | libctf0 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | libgprofng0 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66863 | libsframe1 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-66864 | binutils | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | binutils-common | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | binutils-x86-64-linux-gnu | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | libbinutils | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | libctf-nobfd0 | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | libctf0 | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | libgprofng0 | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66864 | libsframe1 | LOW | binutils: NULL pointer dereference in d_print_comp_inner() i | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-66865 | binutils | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | binutils-common | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | binutils-x86-64-linux-gnu | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | libbinutils | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | libctf-nobfd0 | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | libctf0 | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | libgprofng0 | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66865 | libsframe1 | LOW | binutils: stack overflow in d_print_comp_inner() in cp-deman | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-66866 | binutils | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | binutils-common | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | binutils-x86-64-linux-gnu | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | libbinutils | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | libctf-nobfd0 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | libctf0 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | libgprofng0 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-66866 | libsframe1 | LOW | binutils: BinUtils: Denial of Service via crafted PE file | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-68191 | linux-libc-dev | LOW | kernel: udp_tunnel: use netdev_warn() instead of netdev_WARN | 6.1.38-4 | 6.1.159-1 | dagster |
| CVE-2025-68740 | linux-libc-dev | LOW | kernel: ima: Handle error code returned by ima_filter_rule_m | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68746 | linux-libc-dev | LOW | kernel: spi: tegra210-quad: Fix timeout handling | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68751 | linux-libc-dev | LOW | kernel: s390/fpu: Fix false-positive kmsan report in fpu_vst | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2025-68782 | linux-libc-dev | LOW | kernel: scsi: target: Reset t_task_cdb pointer in error case | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-68788 | linux-libc-dev | LOW | kernel: fsnotify: do not generate ACCESS/MODIFY events on ch | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2025-69224 | aiohttp | LOW | aiohttp: aiohttp: Request smuggling via non-ASCII characters | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69225 | aiohttp | LOW | aiohttp: aiohttp: Request smuggling vulnerability via non-AS | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69226 | aiohttp | LOW | aiohttp: aiohttp: Information disclosure of path components | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69230 | aiohttp | LOW | aiohttp: aiohttp: Denial of Service via specially crafted in | 3.8.5 | 3.13.3 | dagster |
| CVE-2025-69644 | binutils | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | binutils-common | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | libbinutils | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | libctf-nobfd0 | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | libctf0 | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | libgprofng0 | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69644 | libsframe1 | LOW | binutils: Binutils: Denial of Service via crafted binary wit | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69645 | binutils | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | binutils-common | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | libbinutils | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | libctf-nobfd0 | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | libctf0 | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | libgprofng0 | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69645 | libsframe1 | LOW | binutils: Binutils objdump: Denial of Service via crafted DW | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69646 | binutils | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | binutils-common | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | libbinutils | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | libctf-nobfd0 | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | libctf0 | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | libgprofng0 | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69646 | libsframe1 | LOW | binutils: Binutils: Denial of Service via malformed DWARF de | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69647 | binutils | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | binutils-common | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | binutils-x86-64-linux-gnu | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | libbinutils | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | libctf-nobfd0 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | libctf0 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | libgprofng0 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69647 | libsframe1 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69648 | binutils | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | binutils-common | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | binutils-x86-64-linux-gnu | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | libbinutils | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | libctf-nobfd0 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | libctf0 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | libgprofng0 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69648 | libsframe1 | LOW | binutils: infinite loop in readelf via crafted binary with m | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69649 | binutils | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | binutils-common | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | binutils-x86-64-linux-gnu | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | libbinutils | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | libctf-nobfd0 | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | libctf0 | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | libgprofng0 | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69649 | libsframe1 | LOW | binutils: NULL pointer dereference in readelf via crafted EL | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69650 | binutils | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | binutils-common | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | binutils-x86-64-linux-gnu | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | libbinutils | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | libctf-nobfd0 | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | libctf0 | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | libgprofng0 | LOW | binutils: double free in readelf via crafted ELF binary with | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69650 | libsframe1 | LOW | binutils: double free in readelf via crafted ELF binary with | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69651 | binutils | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | binutils-common | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | libbinutils | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | libctf-nobfd0 | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | libctf0 | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | libgprofng0 | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69651 | libsframe1 | LOW | binutils: Binutils: Denial of Service via crafted ELF binary | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-69652 | binutils | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | binutils-common | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | binutils-x86-64-linux-gnu | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | libbinutils | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | libctf-nobfd0 | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | libctf0 | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | libgprofng0 | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-69652 | libsframe1 | LOW | binutils: abort in readelf via crafted ELF binary with malfo | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-70873 | libsqlite3-0 | LOW | sqlite: SQLite: Information Disclosure via Crafted ZIP File | 3.40.1-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-71224 | linux-libc-dev | LOW | kernel: wifi: mac80211: ocb: skip rx_no_sta when interface i | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-71268 | linux-libc-dev | LOW | kernel: btrfs: fix reservation leak in some error paths when | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2025-7545 | binutils | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | binutils-common | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | libbinutils | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | libctf-nobfd0 | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | libctf0 | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | libgprofng0 | LOW | binutils: Binutils: Heap Buffer Overflow | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7545 | libsframe1 | LOW | binutils: Binutils: Heap Buffer Overflow | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-7546 | binutils | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | binutils-common | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | libbinutils | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | libctf-nobfd0 | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | libctf0 | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | libgprofng0 | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-7546 | libsframe1 | LOW | binutils: Binutils: Out-of-bounds Write Vulnerability | 2.44-3 | no fix | slack-rqd-api |
| CVE-2025-8224 | binutils | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8224 | binutils-common | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8224 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8224 | libbinutils | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8224 | libctf-nobfd0 | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8224 | libctf0 | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8224 | libgprofng0 | LOW | binutils: Binutils BFD Null Pointer Dereference | 2.40-2 | no fix | dagster |
| CVE-2025-8225 | binutils | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | binutils-common | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | libbinutils | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | libctf-nobfd0 | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | libctf0 | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | libgprofng0 | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2025-8225 | libsframe1 | LOW | binutils: Binutils DWARF Section Handler Memory Leak | 2.44-3 | no fix | slack-rqd-api |
| CVE-2026-1703 | pip | LOW | pip: pip: Information disclosure via path traversal when ins | 23.0.1 | 26.0 | dagster, slack-rqd-api |
| CVE-2026-22185 | libldap-2.5-0 | LOW | OpenLDAP: OpenLDAP LMDB: Denial of Service and Information D | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2026-22185 | libldap-common | LOW | OpenLDAP: OpenLDAP LMDB: Denial of Service and Information D | 2.5.13+dfsg-5 | no fix | dagster |
| CVE-2026-22978 | linux-libc-dev | LOW | kernel: Linux kernel (wifi): Information disclosure via unin | 6.1.38-4 | 6.1.162-1 | dagster |
| CVE-2026-23256 | linux-libc-dev | LOW | kernel: net: liquidio: Fix off-by-one error in VF setup_nic_ | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23257 | linux-libc-dev | LOW | kernel: net: liquidio: Fix off-by-one error in PF setup_nic_ | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23258 | linux-libc-dev | LOW | kernel: net: liquidio: Initialize netdev pointer before queu | 6.1.38-4 | 6.1.164-1 | dagster |
| CVE-2026-23302 | linux-libc-dev | LOW | kernel: net: annotate data-races around sk->sk_{data_ready,w | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-24515 | libexpat1 | LOW | libexpat: libexpat null pointer dereference | 2.5.0-1 | no fix | dagster |
| CVE-2026-2673 | libssl3t64 | LOW | openssl: OpenSSL TLS 1.3 server may choose unexpected key ag | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-2673 | openssl | LOW | openssl: OpenSSL TLS 1.3 server may choose unexpected key ag | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-2673 | openssl-provider-legacy | LOW | openssl: OpenSSL TLS 1.3 server may choose unexpected key ag | 3.5.4-1~deb13u2 | 3.5.5-1~deb13u2 | slack-rqd-api |
| CVE-2026-27139 | stdlib | LOW | os: FileInfo can escape from a Root in golang os module | v1.22.4 | 1.25.8, 1.26.1 | dagster |
| CVE-2026-27205 | Flask | LOW | flask: Flask: Information disclosure via improper caching of | 3.0.0 | 3.1.3 | slack-rqd-api |
| CVE-2026-27448 | pyOpenSSL | LOW | pyOpenSSL: TLS connection bypass via unhandled callback exce | 23.3.0 | 26.0.0 | dagster |
| CVE-2026-29790 | dbt-common | LOW | dbt-common's commonprefix() doesn't protect against path tra | 1.12.0 | 1.34.2, 1.37.3 | dagster |
| CVE-2026-31668 | linux-libc-dev | LOW | kernel: seg6: separate dst_cache for input and output paths | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-34073 | cryptography | LOW | python-cryptography: Cryptography: Security bypass due to im | 41.0.5 | 46.0.6 | dagster |
| CVE-2026-3441 | binutils | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | binutils-common | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | libbinutils | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | libctf-nobfd0 | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | libctf0 | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | libgprofng0 | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3441 | libsframe1 | LOW | binutils: GNU Binutils: Information disclosure via specially | 2.44-3 | no fix | slack-rqd-api |
| CVE-2026-3442 | binutils | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | binutils-common | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | binutils-x86-64-linux-gnu | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | libbinutils | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | libctf-nobfd0 | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | libctf0 | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | libgprofng0 | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-3442 | libsframe1 | LOW | binutils: GNU Binutils: Information disclosure or denial of | 2.44-3 | no fix | slack-rqd-api |
| CVE-2026-34513 | aiohttp | LOW | aiohttp: AIOHTTP: Denial of Service due to unbounded DNS cac | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34514 | aiohttp | LOW | aiohttp: AIOHTTP: Header Injection via content_type paramete | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34517 | aiohttp | LOW | aiohttp: AIOHTTP: Denial of Service via large multipart form | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34518 | aiohttp | LOW | aiohttp: AIOHTTP: Information disclosure via retained Cookie | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34519 | aiohttp | LOW | aiohttp: aiohttp: Header injection vulnerability via reason | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-34520 | aiohttp | LOW | aiohttp: AIOHTTP: Header injection vulnerability due to impr | 3.8.5 | 3.13.4 | dagster |
| CVE-2026-35388 | openssh-client | LOW | OpenSSH: OpenSSH: Low integrity impact from unconfirmed prox | 1:9.2p1-2+deb12u9 | no fix | dagster |
| CVE-2026-3832 | libgnutls30 | LOW | gnutls: gnutls: Security bypass allows acceptance of revoked | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app |
| CVE-2026-40228 | libsystemd0 | LOW | systemd: systemd-journald: Unintended output to user termina | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-40228 | libudev1 | LOW | systemd: systemd-journald: Unintended output to user termina | 252.12-1~deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-41080 | libexpat1 | LOW | libexpat: expat: libexpat: Denial of Service via hash floodi | 2.5.0-1 | no fix | dagster |
| CVE-2026-4539 | Pygments | LOW | pygments: Pygments: Denial of Service via inefficient regula | 2.19.2 | 2.20.0 | slack-rqd-api |
| CVE-2026-4647 | binutils | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | binutils-common | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | binutils-x86-64-linux-gnu | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | libbinutils | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | libctf-nobfd0 | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | libctf0 | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | libgprofng0 | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-4647 | libsframe1 | LOW | binutils: Out-of-Bounds Read in XCOFF Relocation Processing | 2.44-3 | no fix | slack-rqd-api |
| CVE-2026-5958 | sed | LOW | When sed is invoked with both -i (in-place edit) and --follo | 4.9-1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-6276 | libcurl3-gnutls | LOW | curl: libcurl: Information disclosure due to cookie leak whe | 7.88.1-10+deb12u14 | no fix | dagster |
| CVE-2026-6844 | binutils | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | binutils-common | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | libbinutils | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | libctf-nobfd0 | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | libctf0 | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | libgprofng0 | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6844 | libsframe1 | LOW | binutils: Binutils: Denial of Service vulnerabilities in rea | 2.44-3 | no fix | slack-rqd-api |
| CVE-2026-6845 | binutils | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | binutils-common | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | libbinutils | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | libctf-nobfd0 | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | libctf0 | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | libgprofng0 | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6845 | libsframe1 | LOW | binutils: Binutils: Denial of Service via crafted ELF file | 2.44-3 | no fix | slack-rqd-api |
| CVE-2026-6846 | binutils | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | binutils-common | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | binutils-x86-64-linux-gnu | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | libbinutils | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | libctf-nobfd0 | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | libctf0 | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | libgprofng0 | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.40-2 | no fix | dagster, slack-rqd-api |
| CVE-2026-6846 | libsframe1 | LOW | binutils: Binutils: Arbitrary code execution via malformed X | 2.44-3 | no fix | slack-rqd-api |
| TEMP-0000000-F7A20F | linux-libc-dev | LOW | [Kernel: Unprivileged user can freeze journald] | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| TEMP-0290435-0B57B5 | tar | LOW | [tar's rmt command may have undesired side effects] | 1.34+dfsg-1.2 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| TEMP-0517018-A83CE6 | sysvinit-utils | LOW | [sysvinit: no-root option in expert installer exposes locall | 3.06-4 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| TEMP-0628843-DBAD28 | login | LOW | [more related to CVE-2005-4890] | 1:4.13+dfsg1-1+b1 | no fix | dagster, rds-iam-mvp-app |
| TEMP-0628843-DBAD28 | passwd | LOW | [more related to CVE-2005-4890] | 1:4.13+dfsg1-1+b1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| TEMP-0628843-DBAD28 | login.defs | LOW | [more related to CVE-2005-4890] | 1:4.17.4-2 | no fix | slack-rqd-api |
| TEMP-0841856-B18BAF | bash | LOW | [Privilege escalation possible to other user than root] | 5.2.15-2+b2 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2023-53851 | linux-libc-dev | UNKNOWN | kernel: drm/msm/dp: Drop aux devices together with DP contro | 6.1.38-4 | no fix | dagster |
| CVE-2023-53864 | linux-libc-dev | UNKNOWN | kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_over | 6.1.38-4 | 6.1.55-1 | dagster |
| CVE-2023-54000 | linux-libc-dev | UNKNOWN | kernel: net: hns3: fix deadlock issue when externel_lb and r | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54027 | linux-libc-dev | UNKNOWN | kernel: iio: core: Prevent invalid memory access when there | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2023-54101 | linux-libc-dev | UNKNOWN | kernel: driver: soc: xilinx: use _safe loop iterator to avoi | 6.1.38-4 | 6.1.52-1 | dagster |
| CVE-2026-31558 | linux-libc-dev | UNKNOWN | kernel: LoongArch: KVM: Make kvm_get_vcpu_by_cpuid() more ro | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31695 | linux-libc-dev | UNKNOWN | kernel: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use- | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31702 | linux-libc-dev | UNKNOWN | kernel: f2fs: fix use-after-free of sbi in f2fs_compress_wri | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31704 | linux-libc-dev | UNKNOWN | kernel: ksmbd: use check_add_overflow() to prevent u16 DACL | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31705 | linux-libc-dev | UNKNOWN | kernel: ksmbd: fix out-of-bounds write in smb2_get_ea() EA a | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31706 | linux-libc-dev | UNKNOWN | kernel: ksmbd: validate num_aces and harden ACE walk in smb_ | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31711 | linux-libc-dev | UNKNOWN | kernel: smb: server: fix active_num_conn leak on transport a | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31712 | linux-libc-dev | UNKNOWN | kernel: ksmbd: require minimum ACE size in smb_check_perm_da | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31714 | linux-libc-dev | UNKNOWN | kernel: f2fs: fix to avoid memory leak in f2fs_rename() | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31715 | linux-libc-dev | UNKNOWN | kernel: f2fs: fix UAF caused by decrementing sbi->nr_pages[] | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31716 | linux-libc-dev | UNKNOWN | kernel: fs/ntfs3: validate rec->used in journal-replay file | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31717 | linux-libc-dev | UNKNOWN | kernel: ksmbd: validate owner of durable handle on reconnect | 6.12.74-2 | no fix | slack-rqd-api |
| CVE-2026-31718 | linux-libc-dev | UNKNOWN | kernel: ksmbd: fix use-after-free in __ksmbd_close_fd() via | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31720 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: f_uac1_legacy: validate control request | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31721 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: f_hid: move list and spinlock inits fro | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31722 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: f_rndis: Fix net_device lifecycle with | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31723 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: f_subset: Fix net_device lifecycle with | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31724 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: f_eem: Fix net_device lifecycle with de | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31725 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: f_ecm: Fix net_device lifecycle with de | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-31726 | linux-libc-dev | UNKNOWN | kernel: usb: gadget: uvc: fix NULL pointer dereference durin | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31730 | linux-libc-dev | UNKNOWN | kernel: misc: fastrpc: possible double-free of cctx->remote_ | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31733 | linux-libc-dev | UNKNOWN | kernel: sched_ext: Fix stale direct dispatch state in ddsp_d | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31736 | linux-libc-dev | UNKNOWN | kernel: net: ethernet: mtk_ppe: avoid NULL deref when gmac0 | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31737 | linux-libc-dev | UNKNOWN | kernel: net: ftgmac100: fix ring allocation unwind on open f | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31740 | linux-libc-dev | UNKNOWN | kernel: counter: rz-mtu3-cnt: do not use struct rz_mtu3_chan | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31741 | linux-libc-dev | UNKNOWN | kernel: counter: rz-mtu3-cnt: prevent counter from being tog | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31743 | linux-libc-dev | UNKNOWN | kernel: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memc | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31747 | linux-libc-dev | UNKNOWN | kernel: comedi: me4000: Fix potential overrun of firmware bu | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31748 | linux-libc-dev | UNKNOWN | kernel: comedi: me_daq: Fix potential overrun of firmware bu | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31749 | linux-libc-dev | UNKNOWN | kernel: comedi: ni_atmio16d: Fix invalid clean-up after fail | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31751 | linux-libc-dev | UNKNOWN | kernel: comedi: dt2815: add hardware detection to prevent cr | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31761 | linux-libc-dev | UNKNOWN | kernel: iio: gyro: mpu3050: Move iio_device_register() to co | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31762 | linux-libc-dev | UNKNOWN | kernel: iio: gyro: mpu3050: Fix irq resource leak | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31763 | linux-libc-dev | UNKNOWN | kernel: iio: gyro: mpu3050: Fix incorrect free_irq() variabl | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31765 | linux-libc-dev | UNKNOWN | kernel: drm/amdgpu: Change AMDGPU_VA_RESERVED_TRAP_SIZE to 6 | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-31768 | linux-libc-dev | UNKNOWN | kernel: iio: adc: ti-adc161s626: use DMA-safe memory for spi | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31770 | linux-libc-dev | UNKNOWN | kernel: hwmon: (occ) Fix division by zero in occ_show_power_ | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-31780 | linux-libc-dev | UNKNOWN | kernel: wifi: wilc1000: fix u8 overflow in SSID scan buffer | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-33846 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42009 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42010 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42011 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42012 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42013 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42014 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-42015 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-43011 | linux-libc-dev | UNKNOWN | kernel: net/x25: Fix potential double free of skb | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43014 | linux-libc-dev | UNKNOWN | kernel: net: macb: properly unregister fixed rate clocks | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43015 | linux-libc-dev | UNKNOWN | kernel: net: macb: fix clk handling on PCI glue driver remov | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43032 | linux-libc-dev | UNKNOWN | kernel: NFC: pn533: bound the UART receive buffer | 6.1.38-4 | 6.1.170-1 | dagster, slack-rqd-api |
| CVE-2026-43056 | linux-libc-dev | UNKNOWN | In the Linux kernel, the following vulnerability has been re | 6.12.74-2 | 6.12.85-1 | slack-rqd-api |
| CVE-2026-43058 | linux-libc-dev | UNKNOWN | In the Linux kernel, the following vulnerability has been re | 6.1.38-4 | no fix | dagster, slack-rqd-api |
| CVE-2026-5260 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-5419 | libgnutls30 | UNKNOWN | 3.7.9-2 | no fix | dagster, rds-iam-mvp-app | |
| CVE-2026-6238 | libc-bin | UNKNOWN | The deprecated functions ns_printrrf, ns_printrr and fp_nque | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-6238 | libc-dev-bin | UNKNOWN | The deprecated functions ns_printrrf, ns_printrr and fp_nque | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-6238 | libc6 | UNKNOWN | The deprecated functions ns_printrrf, ns_printrr and fp_nque | 2.36-9+deb12u1 | no fix | dagster, rds-iam-mvp-app, slack-rqd-api |
| CVE-2026-6238 | libc6-dev | UNKNOWN | The deprecated functions ns_printrrf, ns_printrr and fp_nque | 2.36-9+deb12u1 | no fix | dagster, slack-rqd-api |
| CVE-2026-7168 | libcurl3-gnutls | UNKNOWN | 7.88.1-10+deb12u14 | no fix | dagster | |
| CVE-2026-7598 | libssh2-1 | UNKNOWN | A security vulnerability has been detected in libssh2 up to | 1.10.0-3+b1 | no fix | dagster |
Generated nightly at 2 AM UTC by forge-sbom-audit-pipeline.yml.
Scans all ECR images with trivy image --format cyclonedx (SBOM) and
trivy image --format json --scanners vuln (CVEs).
Reports stored at s3://forge-sbom-reports/latest/ and archived daily.