CYBERSECURITYTRACKER
TRACKING8,104 stories in this site build1,791 vulnerability news stories in this site build
Vulnerabilities

August 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 1 vulnerability with exploitation detected in the wild this month. This defender-focused view covers 6,966 vulnerabilities across 19,043 returned patch records from 5 vendors. Filter the complete month, or browse the static page trail without JavaScript.

19,043all patch recordsClear filters2,469criticalShow these records1Microsoft exploitation detectedShow these records3Microsoft in the Known Exploited Vulnerabilities catalogShow these records15,939tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 91 of 96 · records 18,001 to 18,200 of 19,043

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-21838 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: core: flush gadget workqueue after device removal
CVE-2025-21831 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePCI: Avoid putting some root ports into D3 on TUXEDO Sirius Gen1
CVE-2025-21738 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableata: libata-sff: Ensure that we cannot write outside the allocated buffer
CVE-2023-52981 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/i915: Fix request ref counting during error capture & debugfs dump
CVE-2024-58053 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Fix handling of received connection abort
CVE-2024-46716 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledmaengine: altera-msgdma: properly free descriptor in msgdma_free_descriptor
CVE-2025-21712 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd/md-bitmap: Synchronize bitmap_get_stats() with bitmap lifetime
CVE-2025-62813 ↗cbl2 lz4 1.9.4-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLZ4 through 1.10.0 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact when the application processes untrusted LZ4 frames. For example, LZ4F_createCDict_advanced in lib/lz4frame.c mishandles NULL checks.
CVE-2022-49562 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: x86: Use __try_cmpxchg_user() to update guest PTE A/D bits
CVE-2024-38564 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforcement in BPF_LINK_CREATE
CVE-2025-21629 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets
CVE-2024-56709 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableio_uring: check if iowq is killed before queuing
CVE-2024-49568 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg
CVE-2020-8130 ↗azl3 ruby 3.3.5-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableThere is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character `|`.
CVE-2025-37727 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableElasticsearch Insertion of sensitive information in log file
CVE-2025-11413 ↗cbl2 binutils 2.37-16 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU Binutils Linker elflink.c elf_link_add_object_symbols out-of-bounds
CVE-2024-46717 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/mlx5e: SHAMPO, Fix incorrect page release
CVE-2024-41079 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvmet: always initialize cqe.result
CVE-2024-56641 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/smc: initialize close_work early to avoid warning
CVE-2022-48816 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableSUNRPC: lock against ->sock changing during sysfs read
CVE-2022-50502 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm: /proc/pid/smaps_rollup: fix no vma's null-deref
CVE-2025-39940 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledm-stripe: fix a possible integer overflow
CVE-2025-39932 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesmb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work)
CVE-2024-39508 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableio_uring/io-wq: Use set_bit() and test_bit() at worker->flags
CVE-2025-55554 ↗cbl2 pytorch 2.0.0-9 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long().
CVE-2024-36922 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: iwlwifi: read txq->read_ptr under lock
CVE-2025-39927 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableceph: fix race condition validating r_parent before applying state
CVE-2024-36911 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablehv_netvsc: Don't free decrypted memory
CVE-2024-36909 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableDrivers: hv: vmbus: Don't free ring buffers that couldn't be re-encrypted
CVE-2025-46150 ↗azl3 pytorch 2.2.2-7 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn PyTorch before 2.7.0, when torch.compile is used, FractionalMaxPool2d has inconsistent results.
CVE-2025-46149 ↗cbl2 pytorch 2.0.0-9 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn PyTorch before 2.7.0, when inductor is used, nn.Fold has an assertion error.
CVE-2025-46153 ↗azl3 pytorch 2.2.2-7 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePyTorch before 3.7.0 has a bernoulli_p decompose function in decompositions.py even though it lacks full consistency with the eager CPU implementation, negatively affecting nn.Dropout1d, nn.Dropout2d, and nn.Dropout3d for fallback_random=True.
CVE-2025-11083 ↗azl3 binutils 2.41-7 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU Binutils Linker elfcode.h elf_swap_shdr heap-based overflow
CVE-2024-49214 ↗cbl2 haproxy 2.4.24-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableQUIC in HAProxy 3.1.x before 3.1-dev7, 3.0.x before 3.0.5, and 2.9.x before 2.9.11 allows opening a 0-RTT session with a spoofed IP address. This can bypass the IP allow/block list functionality.
CVE-2022-43410 ↗azl3 mercurial 6.5.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableJenkins Mercurial Plugin 1251.va_b_121f184902 and earlier provides information about which jobs were triggered or scheduled for polling through its webhook endpoint, including jobs the user has no permission to access.
CVE-2022-40896 ↗azl3 python-pygments 2.4.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableA ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.
CVE-2007-3205 ↗cbl2 php 8.1.32-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableThe parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, when called without a second parameter, might allow remote attackers to overwrite arbitrary variables by specifying variable names and values in the string to be parsed. NOTE: it is not clear whether this is a design limitation of the function or a bug in PHP, although it is likely to be regarded as a bug in Hardened-PHP and Suhosin.
CVE-2025-10911 ↗cbl2 libxslt 1.1.34-8 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibxslt: use-after-free with key data stored cross-rvt
CVE-2024-57893 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: seq: oss: Fix races at processing SysEx messages
CVE-2024-57843 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevirtio-net: fix overflow inside virtnet_rq_alloc
CVE-2024-35971 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: ks8851: Handle softirqs at the end of IRQ thread to fix hang
CVE-2024-35951 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/panfrost: Fix the error path in panfrost_mmu_map_fault_addr()
CVE-2024-35839 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: bridge: replace physindev with physinif in nf_bridge_info
CVE-2023-52732 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableceph: blocklist the kclient when receiving corrupted snap trace
CVE-2023-52676 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Guard stack limits against 32bit overflow
CVE-2025-39789 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: x86/aegis - Add missing error checks
CVE-2025-39747 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/msm: Add error handling for krealloc in metadata setup
CVE-2025-39762 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: add null check
CVE-2025-39754 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/smaps: fix race between smaps_hugetlb_range and migration
CVE-2025-39779 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: subpage: keep TOWRITE tag until folio is cleaned
CVE-2025-9901 ↗azl3 libsoup 3.4.4-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibsoup: improper handling of http vary header in libsoup caching
CVE-2025-39716 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableparisc: Revise __get_user() to probe user read access
CVE-2025-39707 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: check if hubbub is NULL in debugfs/amdgpu_dm_capabilities
CVE-2025-39706 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: Destroy KFD debugfs after destroy KFD wq
CVE-2025-39677 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/sched: Fix backlog accounting in qdisc_dequeue_internal
CVE-2025-39705 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: fix a Null pointer dereference vulnerability
CVE-2025-38717 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: kcm: Fix race condition in kcm_unattach()
CVE-2025-38705 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/pm: fix null pointer access
CVE-2025-38709 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableloop: Avoid updating block size under exclusive owner
CVE-2025-37842 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablespi: fsl-qspi: use devm function instead of driver remove
CVE-2025-38611 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevmci: Prevent the dispatching of uninitialized payloads
CVE-2025-38590 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/mlx5e: Remove skb secpath if xfrm state is not found
CVE-2024-36024 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Disable idle reallow as part of command/gpint execution
CVE-2025-38591 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Reject narrower access to pointer ctx fields
CVE-2025-38272 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: dsa: b53: do not enable EEE on bcm63xx
CVE-2025-38029 ↗azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablekasan: avoid sleepable page allocation from atomic context
CVE-2025-38520 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: Don't call mmput from MMU notifier callback
CVE-2025-38269 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: exit after state insertion failure at btrfs_convert_extent_bit()
CVE-2025-8197 ↗cbl2 libsoup 3.0.4-9 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRejected reason: Maintainers have included reasons at https://gitlab.gnome.org/GNOME/libsoup/-/issues/465
CVE-2025-40325 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd/raid10: wait barrier before returning discard request with REQ_NOWAIT
CVE-2024-58006 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePCI: dwc: ep: Prevent changing BAR size/flags in pci_epc_set_bar()
CVE-2025-38303 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: eir: Fix possible crashes on eir_create_adv_data
CVE-2025-37856 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: harden block_group::bg_list against list_del() races
CVE-2025-2309 ↗cbl2 hdf5 1.14.4-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 Type Conversion Logic H5T__bit_copy heap-based overflow
CVE-2025-38524 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Fix recv-recv race of completed call
CVE-2025-2308 ↗azl3 hdf5 1.14.4.3-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 Scale-Offset Filter H5Z__scaleoffset_decompress_one_byte heap-based overflow
CVE-2025-38064 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevirtio: break and reset virtio devices on device_shutdown()
CVE-2024-42317 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/huge_memory: avoid PMD-size page cache if needed
CVE-2025-38678 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nf_tables: reject duplicate device on updates
CVE-2024-47794 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Prevent tailcall infinite loop caused by freplace
CVE-2024-57898 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: cfg80211: clear link ID from bitmap during link delete after clean up
CVE-2024-26759 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/swap: fix race when skipping swapcache
CVE-2024-41067 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: scrub: handle RST lookup error correctly
CVE-2025-22115 ↗azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: fix block group refcount race in btrfs_create_pending_block_groups()
CVE-2025-37745 ↗azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePM: hibernate: Avoid deadlock in hibernate_compressor_param_set()
CVE-2025-23167 ↗azl3 nodejs 20.14.0-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableA flaw in Node.js 20's HTTP parser allows improper termination of HTTP/1 headers using `\r\n\rX` instead of the required `\r\n\r\n`. This inconsistency enables request smuggling, allowing attackers to bypass proxy-based access controls and submit unauthorized requests. The issue was resolved by upgrading `llhttp` to version 9, which enforces correct header termination. Impact: * This vulnerability affects only Node.js 20.x users prior to the `llhttp` v9 upgrade.
CVE-2025-21885 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/bnxt_re: Fix the page details for the srq created by kernel consumers
CVE-2024-57804 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablescsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs
CVE-2025-21892 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/mlx5: Fix the recovery flow of the UMR QP
CVE-2025-55199 ↗cbl2 helm 3.14.2-7 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHelm Charts with Specific JSON Schema Values Can Cause Memory Exhaustion
CVE-2024-26756 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd: Don't register sync_thread for reshape directly
CVE-2025-21732 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/mlx5: Fix a race for an ODP MR which leads to CQE with error
CVE-2022-49531 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableloop: implement ->free_disk
CVE-2024-41932 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesched: fix warning in sched_setaffinity
CVE-2024-44939 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablejfs: fix null ptr deref in dtInsertEntry
CVE-2024-57875 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableblock: RCU protect disk->conv_zones_bitmap
CVE-2025-6856 ↗cbl2 hdf5 1.14.4-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 H5FL.c H5FL__reg_gc_list use after free
CVE-2025-38380 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablei2c/designware: Fix an initialization issue
CVE-2024-56591 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_conn: Use disable_delayed_work_sync
CVE-2024-26706 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableparisc: Fix random data corruption from exception handler
CVE-2025-6817 ↗cbl2 hdf5 1.14.4-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 H5Centry.c H5C__load_entry resource consumption
CVE-2024-57976 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: do proper folio cleanup when cow_file_range() failed
CVE-2025-37826 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablescsi: ufs: core: Add NULL check in ufshcd_mcq_compl_pending_transfer()
CVE-2025-37877 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableiommu: Clear iommu-dma ops on cleanup
CVE-2024-58089 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: fix double accounting race when btrfs_run_delalloc_range() failed
CVE-2024-35865 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesmb: client: fix potential UAF in smb2_is_valid_oplock_break()
CVE-2025-38643 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: cfg80211: Add missing lock in cfg80211_check_and_end_cac()
CVE-2024-46754 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Remove tst_run from lwt_seg6local_prog_ops.
CVE-2025-21801 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: ravb: Fix missing rtnl lock in suspend/resume path
CVE-2024-43819 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablekvm: s390: Reject memory region operations for ucontrol VMs
CVE-2024-35931 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: Skip do PCI error slot reset during RAS recovery
CVE-2024-50009 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecpufreq: amd-pstate: add check for cpufreq_cpu_get's return value
CVE-2024-43872 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/hns: Fix soft lockup under heavy CEQE load
CVE-2025-37920 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexsk: Fix race condition in AF_XDP generic RX path
CVE-2024-40999 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: ena: Add validation for completion descriptors consistency
CVE-2024-49897 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Check phantom_stream before it is used
CVE-2025-37870 ↗azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: prevent hang on link training fail
CVE-2023-51580 ↗azl3 bluez 5.63-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBlueZ Audio Profile AVRCP avrcp_parse_attribute_list Out-Of-Bounds Read Information Disclosure Vulnerability
CVE-2025-37834 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/vmscan: don't try to reclaim hwpoison folio
CVE-2023-51589 ↗cbl2 bluez 5.63-6 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBlueZ Audio Profile AVRCP parse_media_element Out-Of-Bounds Read Information Disclosure Vulnerability
CVE-2024-46727 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add otg_master NULL check within resource_log_pipe_topology_update
CVE-2024-53426 ↗cbl2 ntopng 5.2.1-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableA heap-buffer-overflow vulnerability has been identified in ntopng 6.2 in the Flow::dissectMDNS function.
CVE-2024-26758 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd: Don't ignore suspended array in md_check_recovery()
CVE-2024-47661 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Avoid overflow from uint32_t to uint8_t
CVE-2024-53219 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevirtiofs: use pages instead of pointer for kernel direct IO
CVE-2024-41066 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableibmvnic: Add tx check to prevent skb leak
CVE-2024-26757 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd: Don't ignore read-only array in md_check_recovery()
CVE-2025-38359 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailables390/mm: Fix in_atomic() handling in do_secure_storage_access()
CVE-2024-46730 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Ensure array index tg_inst won't be -1
CVE-2024-57974 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableudp: Deal with race between UDP socket address change and rehash
CVE-2023-52670 ↗cbl2 kernel 5.15.182.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerpmsg: virtio: Free driver_override when rpmsg_remove()
CVE-2025-6516 ↗cbl2 hdf5 1.14.4-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 H5Fint.c H5F_addr_decode_len heap-based overflow
CVE-2024-57809 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePCI: imx6: Fix suspend/resume support on i.MX6QDL
CVE-2024-35999 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesmb3: missing lock when picking channel
CVE-2025-22108 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebnxt_en: Mask the bd_cnt field in the TX BD properly
CVE-2024-27062 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenouveau: lock the client object tree.
CVE-2024-41082 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvme-fabrics: use reserved tag for reg read/write command
CVE-2025-8734 ↗azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU Bison scan-code.c code_free double free
CVE-2024-40969 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablef2fs: don't set RO when shutting down f2fs
CVE-2025-8733 ↗azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU Bison obprintf.c __obstack_vprintf_internal assertion
CVE-2025-38232 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableNFSD: fix race between nfsd registration and exports_proc
CVE-2024-26853 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableigc: avoid returning frame twice in XDP_REDIRECT
CVE-2025-21768 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: ipv6: fix dst ref loops in rpl, seg6 and ioam6 lwtunnels
CVE-2024-26830 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablei40e: Do not allow untrusted VF to remove administratively set MAC
CVE-2025-38234 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesched/rt: Fix race in push_rt_task
CVE-2025-21825 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Cancel the running bpf_timer through kworker for PREEMPT_RT
CVE-2024-40977 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: mt76: mt7921s: fix potential hung tasks during chip recovery
CVE-2024-41008 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: change vm->task_info handling
CVE-2025-22109 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableax25: Remove broken autobind
CVE-2025-21870 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableASoC: SOF: ipc4-topology: Harden loops for looking up ALH copiers
CVE-2024-50177 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: fix a UBSAN warning in DML2.1
CVE-2025-21888 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/mlx5: Fix a WARN during dereg_mr for DM type
CVE-2025-45582 ↗azl3 tar 1.35-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with a certain two-step process. First, the victim must extract an archive that contains a ../ symlink to a critical directory. Second, the victim must extract an archive that contains a critical file, specified via a relative pathname that begins with the symlink name and ends with that critical file's name. Here, the extraction follows the symlink and overwrites the critical file. This bypasses the protection mechanism of "Member name contains '..'" that would occur for a single TAR archive that attempted to specify the critical file via a ../ approach. For example, the first archive can contain "x -> ../../../../../home/victim/.ssh" and the second archive can contain x/authorized_keys. This can affect server applications that automatically extract any number of user-supplied TAR archives, and were relying on the blocking of traversal. This can also affect software installation processes in wh
CVE-2024-42151 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: mark bpf_dummy_struct_ops.test_1 parameter as nullable
CVE-2025-21696 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm: clear uffd-wp PTE/PMD state on mremap()
CVE-2024-56738 ↗cbl2 grub2 2.06-14 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel attacks.
CVE-2024-42081 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/xe/xe_devcoredump: Check NULL before assignments
CVE-2025-21976 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefbdev: hyperv_fb: Allow graceful removal of framebuffer
CVE-2025-37907 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableaccel/ivpu: Fix locking order in ivpu_job_submit
CVE-2024-47736 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableerofs: handle overlapped pclusters out of crafted images properly
CVE-2024-6531 ↗cbl2 opa 0.63.0-4 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRejected reason: This was not a security issue in Bootstrap. Bootstrap’s JavaScript is not intended to sanitize unsafe or intentionally dangerous HTML. As such, the reported behavior fell outside the scope of Bootstrap’s security model, and the associated CVE has been rescinded.
CVE-2024-46834 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableethtool: fail closed if we can't get max channel used in indirection tables
CVE-2024-42065 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/xe: Add a NULL check in xe_ttm_stolen_mgr_init
CVE-2024-49934 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefs/inode: Prevent dump_mapping() accessing invalid dentry.d_name.name
CVE-2024-43886 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add null check in resource_log_pipe_topology_update
CVE-2024-38608 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/mlx5e: Fix netif state handling
CVE-2024-50613 ↗azl3 libsndfile 1.2.2-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablelibsndfile through 1.2.2 has a reachable assertion, that may lead to application exit, in mpeg_l3_encode.c mpeg_l3_encoder_close.
CVE-2024-49926 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablercu-tasks: Fix access non-existent percpu rtpcp variable in rcu_tasks_need_gpcb()
CVE-2024-42253 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablegpio: pca953x: fix pca953x_irq_bus_sync_unlock race
CVE-2024-50614 ↗cbl2 tinyxml2 9.0.0-2 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableTinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
CVE-2024-43901 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Fix NULL pointer dereference for DTN log in DCN401
CVE-2022-48887 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/vmwgfx: Remove rcu locks from user resources
CVE-2025-31181 ↗cbl2 gnuplot 5.4.3-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGnuplot: gnuplot segmentation fault on x11_graphics
CVE-2024-42227 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Fix overlapping copy within dml_core_mode_programming
CVE-2023-1386 ↗azl3 qemu 8.2.0-17 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableQemu: 9pfs: suid/sgid bits not dropped on file write
CVE-2024-46842 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablescsi: lpfc: Handle mailbox timeouts in lpfc_get_sfp_info
CVE-2024-44956 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/xe/preempt_fence: enlarge the fence critical section
CVE-2025-31179 ↗cbl2 gnuplot 5.4.3-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGnuplot: gnuplot segmentation fault on xstrftime
CVE-2024-52559 ↗azl3 kernel 6.6.82.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/msm/gem: prevent integer overflow in msm_ioctl_gem_submit()
CVE-2025-31176 ↗azl3 gnuplot 5.4.8-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGnuplot: gnuplot segmentation fault on plot3d_points
CVE-2024-42123 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: fix double free err_addr pointer warnings
CVE-2024-41085 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecxl/mem: Fix no cxl_nvd during pmem region auto-assembling
CVE-2024-49917 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add NULL check for clk_mgr and clk_mgr->funcs in dcn30_init_hw
CVE-2019-20633 ↗azl3 patch 2.7.6-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file. NOTE: this issue exists because of an incomplete fix for CVE-2018-6952.
CVE-2022-48673 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/smc: Fix possible access to freed memory in link clear
CVE-2024-49915 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add NULL check for clk_mgr in dcn32_init_hw
CVE-2024-49923 ↗azl3 kernel 6.6.79.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Pass non-null to dcn20_validate_apply_pipe_split_flags
CVE-2024-43913 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvme: apple: fix device reference counting
CVE-2024-46681 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepktgen: use cpus_read_lock() in pg_net_init()
CVE-2024-46705 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/xe: reset mmio mappings with devm
CVE-2024-46701 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablelibfs: fix infinite directory reads for offset dir
CVE-2024-44970 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/mlx5e: SHAMPO, Fix invalid WQ linked list unlink
CVE-2024-49898 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Check null-initialized variables
CVE-2024-42158 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailables390/pkey: Use kfree_sensitive() to fix Coccinelle warnings
CVE-2024-49911 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add NULL check for function pointer in dcn20_set_output_transfer_func
CVE-2024-46698 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevideo/aperture: optionally match the device in sysfb_disable()
CVE-2019-11254 ↗azl3 packer 1.9.5-11 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKubernetes API Server denial of service vulnerability from malicious YAML payloads
CVE-2024-46808 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add missing NULL pointer check within dpcd_extend_address_range
CVE-2024-41023 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesched/deadline: Fix task_struct reference leak
CVE-2024-49909 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add NULL check for function pointer in dcn32_set_output_transfer_func

Glossary