Patch Day month
August 2026 vulnerabilities
A server-rendered hunting trail for August 2026: 1,834 returned patch records across 4 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.
1,834all patches
57critical
0exploitation detected
1in CISA KEV
293tracked here
Microsoft 1,222Red Hat 581Cisco 30Android 1
Page 9 of 10 · records 1,601–1,800 of 1,834
Microsoft Security Response Center
CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-8734 ↗2025-09-03azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-band—GNU Bison scan-code.c code_free double free
CVE-2024-40969 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—f2fs: don't set RO when shutting down f2fs
CVE-2024-49971 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Increase array size of dummy_boolean
CVE-2025-8733 ↗2025-09-03azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-band—GNU Bison obprintf.c __obstack_vprintf_internal assertion
CVE-2025-38232 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—NFSD: fix race between nfsd registration and exports_proc
CVE-2024-26853 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—igc: avoid returning frame twice in XDP_REDIRECT
CVE-2025-21768 ↗2025-09-03azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-band—net: ipv6: fix dst ref loops in rpl, seg6 and ioam6 lwtunnels
CVE-2025-22113 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—ext4: avoid journaling sb update on error if journal is destroying
CVE-2024-49945 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—net/ncsi: Disable the ncsi work before freeing the associated structure
CVE-2024-26830 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—i40e: Do not allow untrusted VF to remove administratively set MAC
CVE-2025-38660 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—[ceph] parse_longname(): strrchr() expects NUL-terminated string
CVE-2025-38234 ↗2025-09-03azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-band—sched/rt: Fix race in push_rt_task
CVE-2025-21825 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—bpf: Cancel the running bpf_timer through kworker for PREEMPT_RT
CVE-2024-46870 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Disable DMCUB timeout for DCN35
CVE-2024-40977 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—wifi: mt76: mt7921s: fix potential hung tasks during chip recovery
CVE-2024-41008 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amdgpu: change vm->task_info handling
CVE-2025-38408 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—genirq/irq_sim: Initialize work context pointers properly
CVE-2025-22109 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—ax25: Remove broken autobind
CVE-2025-21870 ↗2025-09-03azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-band—ASoC: SOF: ipc4-topology: Harden loops for looking up ALH copiers
CVE-2024-49972 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Deallocate DML memory if allocation fails
CVE-2024-35862 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—smb: client: fix potential UAF in smb2_is_network_name_deleted()
CVE-2024-50177 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: fix a UBSAN warning in DML2.1
CVE-2025-21888 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—RDMA/mlx5: Fix a WARN during dereg_mr for DM type
CVE-2025-45582 ↗2025-09-03azl3 tar 1.35-2 on Azure Linux 3.0ModerateOut-of-band—GNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with a certain two-step process. First, the victim must extract an archive that contains a ../ symlink to a critical directory. Second, the victim must extract an archive that contains a critical file, specified via a relative pathname that begins with the symlink name and ends with that critical file's name. Here, the extraction follows the symlink and overwrites the critical file. This bypasses the protection mechanism of "Member name contains '..'" that would occur for a single TAR archive that attempted to specify the critical file via a ../ approach. For example, the first archive can contain "x -> ../../../../../home/victim/.ssh" and the second archive can contain x/authorized_keys. This can affect server applications that automatically extract any number of user-supplied TAR archives, and were relying on the blocking of traversal. This can also affect software installation processes in wh
CVE-2024-42151 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—bpf: mark bpf_dummy_struct_ops.test_1 parameter as nullable
CVE-2025-21696 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—mm: clear uffd-wp PTE/PMD state on mremap()
CVE-2024-56738 ↗2025-09-03cbl2 grub2 2.06-14 on CBL Mariner 2.0ModerateOut-of-band—GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel attacks.
CVE-2024-26672 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()'
CVE-2024-49885 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—mm, slub: avoid zeroing kmalloc redzone
CVE-2024-41045 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—bpf: Defer work in bpf_timer_cancel_and_free
CVE-2024-42081 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—drm/xe/xe_devcoredump: Check NULL before assignments
CVE-2023-52586 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—drm/msm/dpu: Add mutex lock in control vblank irq
CVE-2024-35864 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—smb: client: fix potential UAF in smb2_is_valid_lease_break()
CVE-2025-21976 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—fbdev: hyperv_fb: Allow graceful removal of framebuffer
CVE-2025-37907 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—accel/ivpu: Fix locking order in ivpu_job_submit
CVE-2025-38311 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—iavf: get rid of the crit lock
CVE-2024-44951 ↗2025-09-03azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ModerateOut-of-band—serial: sc16is7xx: fix TX fifo corruption
CVE-2025-37861 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue
CVE-2024-53201 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Fix null check for pipe_ctx->plane_state in dcn20_program_pipe
CVE-2024-49932 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—btrfs: don't readahead the relocation inode on RST
CVE-2024-47736 ↗2025-09-03azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-band—erofs: handle overlapped pclusters out of crafted images properly
CVE-2024-6531 ↗2025-09-03cbl2 opa 0.63.0-4 on CBL Mariner 2.0ModerateOut-of-band—Rejected reason: This was not a security issue in Bootstrap. Bootstrap’s JavaScript is not intended to sanitize unsafe or intentionally dangerous HTML. As such, the reported behavior fell outside the scope of Bootstrap’s security model, and the associated CVE has been rescinded.
CVE-2024-46834 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—ethtool: fail closed if we can't get max channel used in indirection tables
CVE-2025-2912 ↗2025-09-03cbl2 hdf5 1.14.4-1 on CBL Mariner 2.0LowOut-of-band—HDF5 H5Omessage.c H5O_msg_flush heap-based overflow
CVE-2024-42065 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/xe: Add a NULL check in xe_ttm_stolen_mgr_init
CVE-2023-52485 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Wake DMCUB before sending a command
CVE-2024-30896 ↗2025-09-03cbl2 influxdb 2.6.1-22 on CBL Mariner 2.0CriticalOut-of-band—InfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not affected. NOTE: The researcher states that InfluxDB allows allAccess administrators to retrieve all raw tokens via an "influx auth ls" command. The supplier indicates that the organizations feature is operating as intended and that users may choose to add users to non-default organizations. A future release of InfluxDB 2.x will remove the ability to retrieve tokens from the API.
CVE-2024-49940 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—l2tp: prevent possible tunnel refcount underflow
CVE-2024-53089 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—LoongArch: KVM: Mark hrtimer to expire in hard interrupt context
CVE-2025-2923 ↗2025-09-03azl3 hdf5 1.14.4.3-1 on Azure Linux 3.0LowOut-of-band—HDF5 H5Fint.c H5F_addr_encode_len heap-based overflow
CVE-2024-47662 ↗2025-09-03azl3 kernel 6.6.104.2-4 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Remove register from DCN35 DMCUB diagnostic collection
CVE-2024-53090 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—afs: Fix lock recursion
CVE-2024-49888 ↗2025-09-03azl3 kernel 6.6.104.2-4 on Azure Linux 3.0N/AOut-of-band—bpf: Fix a sdiv overflow issue
CVE-2024-49934 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—fs/inode: Prevent dump_mapping() accessing invalid dentry.d_name.name
CVE-2024-43886 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—drm/amd/display: Add null check in resource_log_pipe_topology_update
CVE-2025-21682 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—eth: bnxt: always recalculate features after XDP clearing, fix null-deref
CVE-2024-47702 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—bpf: Fail verification for sign-extension of packet data/data_end/data_meta
CVE-2024-38608 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net/mlx5e: Fix netif state handling
CVE-2024-50613 ↗2025-09-03azl3 libsndfile 1.2.2-3 on Azure Linux 3.0ModerateOut-of-band—libsndfile through 1.2.2 has a reachable assertion, that may lead to application exit, in mpeg_l3_encode.c mpeg_l3_encoder_close.
CVE-2025-2913 ↗2025-09-03cbl2 hdf5 1.14.4-1LowOut-of-band—HDF5 H5FL.c H5FL__blk_gc_list use after free
CVE-2024-57872 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—scsi: ufs: pltfrm: Dellocate HBA during ufshcd_pltfrm_remove()
CVE-2024-53050 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/i915/hdcp: Add encoder check in hdcp2_get_capability
CVE-2024-49926 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—rcu-tasks: Fix access non-existent percpu rtpcp variable in rcu_tasks_need_gpcb()
CVE-2024-42253 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—gpio: pca953x: fix pca953x_irq_bus_sync_unlock race
CVE-2024-50614 ↗2025-09-03cbl2 tinyxml2 9.0.0-2 on CBL Mariner 2.0ModerateOut-of-band—TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
CVE-2024-42107 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—ice: Don't process extts if PTP is disabled
CVE-2024-43901 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Fix NULL pointer dereference for DTN log in DCN401
CVE-2024-57982 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—xfrm: state: fix out-of-bounds read during lookup
CVE-2022-48887 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—drm/vmwgfx: Remove rcu locks from user resources
CVE-2024-50090 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—drm/xe/oa: Fix overflow in oa batch buffer
CVE-2025-31181 ↗2025-09-03cbl2 gnuplot 5.4.3-1 on CBL Mariner 2.0ModerateOut-of-band—Gnuplot: gnuplot segmentation fault on x11_graphics
CVE-2024-42227 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—drm/amd/display: Fix overlapping copy within dml_core_mode_programming
CVE-2023-1386 ↗2025-09-03azl3 qemu 8.2.0-17 on Azure Linux 3.0ModerateOut-of-band—Qemu: 9pfs: suid/sgid bits not dropped on file write
CVE-2024-46842 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—scsi: lpfc: Handle mailbox timeouts in lpfc_get_sfp_info
CVE-2024-44956 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/xe/preempt_fence: enlarge the fence critical section
CVE-2024-50091 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—dm vdo: don't refer to dedupe_context after releasing it
CVE-2024-26962 ↗2025-09-03azl3 kernel 6.6.104.2-4 on Azure Linux 3.0N/AOut-of-band—dm-raid456, md/raid456: fix a deadlock for dm-raid456 while io concurrent with reshape
CVE-2025-31179 ↗2025-09-03cbl2 gnuplot 5.4.3-1 on CBL Mariner 2.0ModerateOut-of-band—Gnuplot: gnuplot segmentation fault on xstrftime
CVE-2024-52559 ↗2025-09-03azl3 kernel 6.6.82.1-1 on Azure Linux 3.0ModerateOut-of-band—drm/msm/gem: prevent integer overflow in msm_ioctl_gem_submit()
CVE-2024-53051 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—drm/i915/hdcp: Add encoder check in intel_hdcp_get_capability
CVE-2024-27010 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—net/sched: Fix mirred deadlock on device recursion
CVE-2025-21723 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—scsi: mpi3mr: Fix possible crash when setting up bsg fails
CVE-2024-53224 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0N/AOut-of-band—RDMA/mlx5: Move events notifier registration to be after device registration
CVE-2024-49970 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Implement bounds check for stream encoder creation in DCN401
CVE-2024-47703 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—bpf, lsm: Add check for BPF LSM return value
CVE-2024-50102 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—x86: fix user address masking non-canonical speculation issue
CVE-2024-37021 ↗2025-09-03cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0N/AOut-of-band—fpga: manager: add owner module and take its refcount
CVE-2025-31176 ↗2025-09-03azl3 gnuplot 5.4.8-1 on Azure Linux 3.0ModerateOut-of-band—Gnuplot: gnuplot segmentation fault on plot3d_points
CVE-2024-50067 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ImportantOut-of-band—uprobe: avoid out-of-bounds memory access of fetching args
CVE-2024-56702 ↗2025-09-03azl3 kernel 6.6.112.1-2 on Azure Linux 3.0N/AOut-of-band—bpf: Mark raw_tp arguments with PTR_MAYBE_NULL
CVE-2025-21672 ↗2025-09-03azl3 kernel 6.6.112.1-2 on Azure Linux 3.0N/AOut-of-band—afs: Fix merge preference rule failure condition
CVE-2024-42123 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amdgpu: fix double free err_addr pointer warnings
CVE-2024-53056 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/mediatek: Fix potential NULL dereference in mtk_crtc_destroy()
CVE-2024-42155 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0LowOut-of-band—s390/pkey: Wipe copies of protected- and secure-keys
CVE-2024-58012 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—ASoC: SOF: Intel: hda-dai: Ensure DAI widget is valid during params
CVE-2024-46823 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0N/AOut-of-band—kunit/overflow: Fix UB in overflow_allocation_test
CVE-2024-41085 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—cxl/mem: Fix no cxl_nvd during pmem region auto-assembling
CVE-2024-53084 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/imagination: Break an object reference loop
CVE-2024-49990 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/xe/hdcp: Check GSC structure validity
CVE-2024-49917 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Add NULL check for clk_mgr and clk_mgr->funcs in dcn30_init_hw
CVE-2019-20633 ↗2025-09-03azl3 patch 2.7.6-9 on Azure Linux 3.0ModerateOut-of-band—GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file. NOTE: this issue exists because of an incomplete fix for CVE-2018-6952.
CVE-2024-46787 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—userfaultfd: fix checks for huge PMDs
CVE-2024-49918 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—drm/amd/display: Add null check for head_pipe in dcn32_acquire_idle_pipe_for_head_pipe_in_layer
CVE-2022-48673 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net/smc: Fix possible access to freed memory in link clear
CVE-2024-49915 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Add NULL check for clk_mgr in dcn32_init_hw
CVE-2024-49923 ↗2025-09-03azl3 kernel 6.6.79.1-1 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Pass non-null to dcn20_validate_apply_pipe_split_flags
CVE-2024-50187 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—drm/vc4: Stop the active perfmon before being destroyed
CVE-2024-46778 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Check UnboundedRequestEnabled's value
CVE-2024-43913 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—nvme: apple: fix device reference counting
CVE-2024-35937 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—wifi: cfg80211: check A-MSDU format more carefully
CVE-2024-46775 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—drm/amd/display: Validate function returns
CVE-2024-49916 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Add NULL check for clk_mgr and clk_mgr->funcs in dcn401_init_hw
CVE-2023-4134 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0N/AOut-of-band—Kernel: cyttsp4_core: use-after-free in cyttsp4_watchdog_work()
CVE-2024-46681 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—pktgen: use cpus_read_lock() in pg_net_init()
CVE-2024-56742 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—vfio/mlx5: Fix an unwind issue in mlx5vf_add_migration_pages()
CVE-2025-21833 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—iommu/vt-d: Avoid use of NULL after WARN_ON_ONCE
CVE-2024-46705 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/xe: reset mmio mappings with devm
CVE-2024-49908 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Add null check for 'afb' in amdgpu_dm_update_cursor (v2)
CVE-2024-46701 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—libfs: fix infinite directory reads for offset dir
CVE-2024-41014 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—xfs: add bounds checking to xlog_recover_process_data
CVE-2024-44970 ↗2025-09-03cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink
CVE-2024-38625 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0N/AOut-of-band—fs/ntfs3: Check 'folio' pointer for NULL
CVE-2024-49898 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Check null-initialized variables
CVE-2024-27079 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—iommu/vt-d: Fix NULL domain on device release
CVE-2024-26775 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0N/AOut-of-band—aoe: avoid potential deadlock at set_capacity
CVE-2024-42158 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—s390/pkey: Use kfree_sensitive() to fix Coccinelle warnings
CVE-2024-49911 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Add NULL check for function pointer in dcn20_set_output_transfer_func
CVE-2024-46698 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—video/aperture: optionally match the device in sysfb_disable()
CVE-2019-11254 ↗2025-09-03azl3 packer 1.9.5-11 on Azure Linux 3.0ModerateOut-of-band—Kubernetes API Server denial of service vulnerability from malicious YAML payloads
CVE-2024-46808 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Add missing NULL pointer check within dpcd_extend_address_range
CVE-2024-49910 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: Add NULL check for function pointer in dcn401_set_output_transfer_func
CVE-2024-50225 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—btrfs: fix error propagation of split bios
CVE-2024-41023 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—sched/deadline: Fix task_struct reference leak
CVE-2024-49909 ↗2025-09-03azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—drm/amd/display: Add NULL check for function pointer in dcn32_set_output_transfer_func
CVE-2024-50004 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—drm/amd/display: update DML2 policy EnhancedPrefetchScheduleAccelerationFinal DCN35
CVE-2025-21714 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-band—RDMA/mlx5: Fix implicit ODP use after free
CVE-2023-52920 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—bpf: support non-r10 register spill/fill to/from stack in precision tracking
CVE-2024-56557 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0N/AOut-of-band—iio: adc: ad7923: Fix buffer overflow for tx_buf and ring_xfer
CVE-2024-50178 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0N/AOut-of-band—cpufreq: loongson3: Use raw_smp_processor_id() in do_service_request()
CVE-2024-42139 ↗2025-09-03azl3 kernel 6.6.104.2-4 on Azure Linux 3.0N/AOut-of-band—ice: Fix improper extts handling
CVE-2024-47658 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0N/AOut-of-band—crypto: stm32/cryp - call finalize with bh disabled
CVE-2024-43824 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—PCI: endpoint: pci-epf-test: Make use of cached 'epc_features' in pci_epf_test_core_init()
CVE-2025-38333 ↗2025-08-21azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix to bail out in get_new_segment()
CVE-2024-50277 ↗2025-08-21azl3 kernel 6.6.96.1-1 on Azure Linux 3.0N/AOut-of-band—dm: fix a crash if blk_alloc_disk fails
CVE-2025-38080 ↗2025-08-07azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—drm/amd/display: Increase block_sequence array size
CVE-2025-38097 ↗2025-08-07azl3 kernel 6.6.92.2-2 on Azure Linux 3.0ModerateOut-of-band—espintcp: remove encap socket caching to avoid reference leak
CVE-2025-38127 ↗2025-08-07azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-band—ice: fix Tx scheduler error handling in XDP callback
CVE-2025-38192 ↗2025-08-07azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-band—net: clear the dst when changing skb protocol
CVE-2025-38334 ↗2025-08-07azl3 kernel 6.6.92.2-2 on Azure Linux 3.0ModerateOut-of-band—x86/sgx: Prevent attempts to reclaim poisoned pages
CVE-2025-4432 ↗2025-08-06azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ModerateOut-of-band—Ring: some aes functions may panic when overflow checking is enabled in ring
CVE-2025-50076 ↗2025-08-06cbl2 mysql 8.0.42-1ModerateOut-of-band—Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.0-8.0.25. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2024-49569 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—nvme-rdma: unquiesce admin_q before destroy it
CVE-2025-22057 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—net: decrease cached dst counters in dst_release
CVE-2025-37786 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ImportantOut-of-band—net: dsa: free routing table on probe failure
CVE-2025-37795 ↗2025-07-11Azure Linux 3.0 ARMImportantOut-of-band—Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-37800 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—driver core: fix potential NULL pointer dereference in dev_uevent()
CVE-2025-37801 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—spi: spi-imx: Add check for spi_imx_setupxfer()
CVE-2025-37849 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—KVM: arm64: Tear down vGIC on failed vCPU creation
CVE-2025-37852 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amdgpu: handle amdgpu_cgs_create_device() errors in amd_powerplay_create()
CVE-2025-37853 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amdkfd: debugfs hang_hws skip GPU with MES
CVE-2025-37878 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—perf/core: Fix WARN_ON(!ctx) in __free_event() for partial init
CVE-2025-37879 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ImportantOut-of-band—9p/net: fix improper handling of bogus negative read/write replies
CVE-2025-37884 ↗2025-07-11azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-band—bpf: Fix deadlock between rcu_tasks_trace and event_mutex.
CVE-2024-50615 ↗2025-05-05azl3 tinyxml2 9.0.0-2 on Azure Linux 3.0ModerateOut-of-band—TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/digit, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
CVE-2025-21947 ↗2025-05-05cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—ksmbd: fix type confusion via race condition when using ipc_msg_send_request
CVE-2025-21969 ↗2025-05-05cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—Bluetooth: L2CAP: Fix slab-use-after-free Read in l2cap_send_cmd
CVE-2025-21792 ↗2025-04-09cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—ax25: Fix refcount leak caused by setting SO_BINDTODEVICE sockopt
CVE-2025-29923 ↗2025-04-01azl3 telegraf 1.31.0-10 on Azure Linux 3.0LowOut-of-band—go-redis allows potential out of order responses when `CLIENT SETINFO` times out during connection establishment
CVE-2025-21667 ↗2025-03-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—iomap: avoid avoid truncating 64-bit offset to 32 bits
CVE-2025-21673 ↗2025-03-14azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-band—smb: client: fix double free of TCP_Server_Info::hostname
CVE-2024-47141 ↗2025-03-13azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-band—pinmux: Use sequential access to access desc->pinmux data
CVE-2024-47809 ↗2025-03-13azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-band—dlm: fix possible lkb_resource null dereference
CVE-2024-48875 ↗2025-03-13azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-band—btrfs: don't take dev_replace rwsem on task already holding it
CVE-2024-56665 ↗2025-03-13azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-band—bpf,perf: Fix invalid prog_array access in perf_event_detach_bpf_prog
CVE-2024-56703 ↗2025-03-13azl3 kernel 6.6.78.1-3 on Azure Linux 3.0ModerateOut-of-band—ipv6: Fix soft lockups in fib6_select_path under high next hop churn
CVE-2024-56719 ↗2025-03-13azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-band—net: stmmac: fix TSO DMA API usage causing oops
CVE-2024-57798 ↗2025-03-13azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ImportantOut-of-band—drm/dp_mst: Ensure mst_primary pointer is valid in drm_dp_mst_handle_up_req()
CVE-2024-40982 ↗2025-03-08cbl2 kernel 5.15.176.3-1ModerateOut-of-band—Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-50073 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ImportantOut-of-band—tty: n_gsm: Fix use-after-free in gsm_cleanup_mux
CVE-2024-50211 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0LowOut-of-band—udf: refactor inode_bmap() to handle error
CVE-2024-50248 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—ntfs3: Add bounds checking to mi_enum_attr()
CVE-2024-50256 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—netfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6()
CVE-2024-50284 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—ksmbd: Fix the missing xa_store error check
CVE-2024-50285 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—ksmbd: check outstanding simultaneous SMB operations
CVE-2024-53079 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—mm/thp: fix deferred split unqueue naming and locking
CVE-2024-53091 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—bpf: Add sk_is_inet and IS_ICSK check in tls_sw_has_ctx_tx/rx
CVE-2024-53093 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—nvme-multipath: defer partition scanning
CVE-2024-53094 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—RDMA/siw: Add sendpage_ok() check to disable MSG_SPLICE_PAGES
CVE-2024-53100 ↗2025-01-29azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-band—nvme: tcp: avoid race between queue_lock lock and destroy
CVE-2024-1543 ↗2024-12-07azl3 mariadb 10.11.6-3 on Azure Linux 3.0ModerateOut-of-band—AES T-Table sub-cache-line leakage
CVE-2024-1544 ↗2024-12-07azl3 mariadb 10.11.6-3 on Azure Linux 3.0ModerateOut-of-band—ECDSA nonce bias caused by truncation
CVE-2024-1545 ↗2024-12-07cbl2 mariadb 10.6.9-6ImportantOut-of-band—Fault Injection of RSA encryption in WolfCrypt
CVE-2024-2881 ↗2024-12-07azl3 mariadb 10.11.6-3 on Azure Linux 3.0ImportantOut-of-band—Fault Injection of EdDSA signature in WolfCrypt
CVE-2024-50228 ↗2024-12-07azl3 kernel 6.6.57.1-4 on Azure Linux 3.0ImportantOut-of-band—Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5288 ↗2024-12-07azl3 mariadb 10.11.6-3 on Azure Linux 3.0ModerateOut-of-band—Safe-error attack on TLS 1.3 Protocol
CVE-2024-5814 ↗2024-12-07cbl2 mariadb 10.6.9-6N/AOut-of-band—Unverifed Ciphersuite used on a client-side TLS1.3 Downgrade
CVE-2024-5991 ↗2024-12-07cbl2 mariadb 10.6.9-4 on CBL Mariner 2.0CriticalOut-of-band—Buffer overread in domain name matching
CVE-2024-49967 ↗2024-11-12azl3 kernel 6.6.51.1-5 on Azure Linux 3.0ImportantOut-of-band—Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-49978 ↗2024-11-12azl3 kernel 6.6.57.1-2 on Azure Linux 3.0ModerateOut-of-band—gso: fix udp gso fraglist segmentation after pull from frag_list
The next page could not be added in place. The ordinary page link remains available; try it again to navigate normally.