Marek Marczykowski-Górecki discovered that the Xen event channel
infrastructure implementation in the Linux kernel contained a race
condition. An attacker in a guest VM could possibly use this to cause a
denial of service (paravirtualized device unavailability). (CVE-2023-34324)
Zheng Wang discovered a use-after-free in the Renesas Ethernet AVB driver
in the Linux kernel during device removal. A privileged attacker could use
this to cause a denial of service (system crash). (CVE-2023-35827)
It was discovered that a race condition existed in the Linux kernel when
performing operations with kernel objects, leading to an out-of-bounds
write. A local attacker could use this to cause a denial of service (system
crash) or execute arbitrary code. (CVE-2023-45863)
黄思聪 discovered that the NFC Controller Interface (NCI) implementation in
the Linux kernel did not properly handle certain memory allocation failure
conditions, leading to a null pointer dereference vulnerability. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2023-46343)
More Stories
trunk-0.21.13-1.fc42
FEDORA-2025-3854530fd9 Packages in this update: trunk-0.21.13-1.fc42 Update description: Update Trunk to v0.21.13 Read More
USN-7424-1: Expat vulnerability
It was discovered that Expat could crash due to stack overflow when processing XML documents with deeply nested entity references....
mod_auth_openidc-2.4.16.11-1.fc41
FEDORA-2025-7d661758bd Packages in this update: mod_auth_openidc-2.4.16.11-1.fc41 Update description: REbase mod_auth_openidc-2.4.16.11 resolves CVE-2025-31492 - mod_auth_openidc allows OIDCProviderAuthRequestMethod POSTs to leak protected...
mod_auth_openidc-2.4.16.11-1.fc40
FEDORA-2025-80600b51c5 Packages in this update: mod_auth_openidc-2.4.16.11-1.fc40 Update description: REbase mod_auth_openidc-2.4.16.11 resolves CVE-2025-31492 - mod_auth_openidc allows OIDCProviderAuthRequestMethod POSTs to leak protected...
USN-7423-1: GNU binutils vulnerabilities
It was discovered that GNU binutils incorrectly handled certain inputs. An attacker could possibly use this issue to cause a...
USN-7406-6: Linux kernel (NVIDIA Tegra IGX) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This...