Vulnerabilities > Linux > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-08 CVE-2023-1032 Double Free vulnerability in multiple products
The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c.
local
low complexity
linux canonical CWE-415
5.5
2024-01-05 CVE-2023-34324 Resource Exhaustion vulnerability in multiple products
Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed in parallel to an unrelated Xen console action and the handling of a Xen console interrupt in an unprivileged guest. The closing of an event channel is e.g.
network
low complexity
xen linux CWE-400
4.9
2024-01-02 CVE-2023-7192 Memory Leak vulnerability in multiple products
A memory leak problem was found in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c in the Linux Kernel.
local
low complexity
linux redhat CWE-401
4.4
2024-01-02 CVE-2024-0193 Use After Free vulnerability in multiple products
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel.
local
low complexity
linux redhat CWE-416
6.7
2023-12-21 CVE-2023-7042 NULL Pointer Dereference vulnerability in Linux Kernel
A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel.
local
low complexity
linux CWE-476
5.5
2023-12-11 CVE-2023-6679 NULL Pointer Dereference vulnerability in multiple products
A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c in the Digital Phase Locked Loop (DPLL) subsystem in the Linux kernel.
local
low complexity
linux fedoraproject redhat CWE-476
5.5
2023-12-09 CVE-2023-50431 Unspecified vulnerability in Linux Kernel
sec_attest_info in drivers/accel/habanalabs/common/habanalabs_ioctl.c in the Linux kernel through 6.6.5 allows an information leak to user space because info->pad0 is not initialized.
local
low complexity
linux
5.5
2023-12-09 CVE-2023-6560 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linux Kernel
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel.
local
low complexity
linux CWE-119
5.5
2023-12-08 CVE-2023-6622 NULL Pointer Dereference vulnerability in multiple products
A null pointer dereference vulnerability was found in nft_dynset_init() in net/netfilter/nft_dynset.c in nf_tables in the Linux kernel.
local
low complexity
linux redhat CWE-476
5.5
2023-11-21 CVE-2023-6238 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel.
local
low complexity
linux fedoraproject CWE-120
6.7