PatchSiren

Linux CVE debriefs · Page 118

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Linux CVE published 2025-08-12

CVE-2024-40995

CVE-2024-40995 describes a possible infinite loop condition in the Linux kernel's network traffic control subsystem, specifically within the `tcf_idr_check_alloc()` function in `net/sched/act_api.c`. This vulnerability resides in the kernel's traffic classifier action API, which is used to manage packet filtering and traffic shaping rules. An infinite loop in this context could lead to a denial-of-service [truncated]

Review Linux CVE published 2025-08-12

CVE-2024-40987

This CVE describes a UBSAN (Undefined Behavior Sanitizer) warning in the Linux kernel's AMDGPU driver, specifically in the kv_dpm.c file related to dynamic power management for Kabini/Temash APUs. The source advisory (ICSA-25-226-07) marks this vulnerability as 'Misinformed' for the listed Siemens products, indicating the CVE was initially thought to affect these products but was later determined not to b [truncated]

HIGH Linux CVE published 2025-08-12

CVE-2024-36894

This CVE addresses a race condition vulnerability in the Linux kernel's USB gadget subsystem, specifically within the Function Filesystem (f_fs) driver. The vulnerability involves a race between `aio_cancel()` and AIO request completion operations. According to the source advisory, this vulnerability has been assessed as **Misinformed** for the Siemens products listed, indicating that the products are not [truncated]

HIGH Linux CVE published 2025-08-12

CVE-2024-36886

A use-after-free (UAF) vulnerability exists in the Linux kernel's Transparent Inter-Process Communication (TIPC) protocol implementation, specifically within the `tipc_buf_append()` error path. The vulnerability was reported by Sam Page (sam4k) working with Trend Micro Zero Day Initiative. The issue occurs when handling socket buffer (skb) operations during error conditions, where improper memory manageme [truncated]

MEDIUM Linux CVE published 2025-08-12

CVE-2024-33621

A vulnerability in the Linux kernel's IPvlan network driver could allow a local, privileged attacker to cause a denial of service (DoS) condition. The flaw exists in the `ipvlan_process_v4_outbound` and `ipvlan_process_v6_outbound` functions, which improperly use `skb->sk` (socket buffer socket pointer) during packet processing. This can lead to a NULL pointer dereference or use-after-free condition, resu [truncated]

Review Linux CVE published 2025-08-12

CVE-2024-26790

A vulnerability in the Linux kernel's Freescale QDMA engine driver (fsl-qdma) could cause System-on-Chip (SoC) hangs when performing 16-byte unaligned memory reads. The issue was resolved in the Linux kernel. Siemens has assessed this CVE as 'Misinformed' for its affected industrial networking products, indicating the vulnerability does not apply to these specific product configurations.

MEDIUM Linux CVE published 2025-08-12

CVE-2024-26671

A race condition in the Linux kernel's block multi-queue (blk-mq) subsystem can cause I/O operations to hang indefinitely. The vulnerability stems from a synchronization issue in the sbitmap (sparse bitmap) wakeup mechanism used for managing I/O request tags. When the race condition triggers, pending I/O requests may never be processed, leading to system unavailability or degraded performance in storage-d [truncated]

HIGH Linux CVE published 2025-08-12

CVE-2023-52654

This CVE addresses a vulnerability in the Linux kernel's io_uring subsystem related to AF_UNIX sockets. The fix disables the ability to send io_uring file descriptors over Unix domain sockets, which could potentially be exploited to manipulate or corrupt kernel memory structures. The vulnerability was resolved by preventing this specific capability in the kernel's networking code. Siemens has assessed thi [truncated]

Review Linux CVE published 2025-08-12

CVE-2023-52475

A use-after-free vulnerability in the Linux kernel's Griffin PowerMate USB input driver (powermate) was resolved via a code fix. The flaw existed in the powermate_config_complete callback function. Siemens has assessed this CVE as not affecting its RUGGEDCOM RST2428P and SCALANCE X-family industrial networking products, reclassifying them from affected to known not affected in subsequent advisory revision [truncated]

CRITICAL Linux CVE published 2025-08-12

CVE-2022-48829

CVE-2022-48829 is a Linux kernel NFSD issue in NFSv3 SETATTR and CREATE handling for large file sizes. The bug can corrupt or silently alter incoming size values when they exceed the signed 64-bit range, which is unexpected behavior for clients and can affect NFS server availability and correctness. NVD rates the issue as medium severity, with local, low-privilege conditions required.

CRITICAL Linux CVE published 2025-08-12

CVE-2022-48828

CVE-2022-48828 is a Linux kernel NFSD bug where an NFS file-size value can be copied into a signed 64-bit iattr::ia_size field without first checking whether the unsigned value exceeds S64_MAX. The result is an underflow in nfsd_setattr(), with availability impact only per the CVSS vector. The NVD record and linked kernel patches describe the issue as fixed in the common setattr path used by NFSv3 and NFSv4 handling.

HIGH Linux CVE published 2025-08-12

CVE-2022-48827

CVE-2022-48827 is a Linux kernel NFS server bug where a READ request near OFFSET_MAX can overflow internal offset handling, leading the server to return EINVAL and the client to retry indefinitely. The fix changes out-of-range READ behavior to complete as a short read with EOF and ensures wire offsets are converted safely to loff_t before kernel checks.

HIGH Linux CVE published 2025-08-12

CVE-2021-47316

CVE-2021-47316 is a Linux kernel nfsd NULL dereference issue in the nfs3svc_encode_getaclres XDR encoder. The NVD record lists Linux kernel versions 5.13 through before 5.13.4 as affected. The supplied description says that in error cases the dentry may be NULL, and that the encoder previously performed extra checks before later simplification. The published CVSS vector indicates a local, low-privilege pa [truncated]

Known exploited Linux CVE published 2025-06-17

CVE-2023-0386

CVE-2023-0386 is a Linux kernel vulnerability described as an improper ownership management issue. CISA added it to the Known Exploited Vulnerabilities catalog on 2025-06-17, which means it is considered known to be exploited and should be prioritized for remediation. The supplied corpus does not include deeper technical detail, so this debrief stays at a high level and focuses on defensive response.

MEDIUM Linux CVE published 2025-06-10

CVE-2024-26596

CVE-2024-26596 is a Linux kernel availability issue in DSA netdevice event handling. The vulnerability was published on 2024-02-23 and describes a case where code dereferenced netdev_priv() before confirming the device was actually a DSA user device. On netdevices with zero private data size, such as the dummy interface, this can produce an out-of-bounds read and a kernel oops during NETDEV_PRECHANGEUPPER [truncated]

MEDIUM Linux CVE published 2025-06-10

CVE-2024-24855

CVE-2024-24855 is a Linux kernel vulnerability published on 2024-02-05 and later modified on 2026-05-12 in NVD. The issue is a race condition in lpfc_unregister_fcf_rescan() that can lead to a null pointer dereference, with possible impact ranging from a kernel crash to denial of service. NVD classifies the issue as medium severity, and the supplied vector indicates local access, low privileges, and user [truncated]

Known exploited Linux CVE published 2025-04-09

CVE-2024-53197

CVE-2024-53197 is a Linux kernel out-of-bounds access vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2025-04-09. Because it is on the KEV list, defenders should treat it as actively exploited or otherwise significant enough to require prompt mitigation, even though the provided corpus does not include a CVSS score or detailed impact analysis. The most important action is t [truncated]

Known exploited Linux CVE published 2025-04-09

CVE-2024-53150

CVE-2024-53150 is a Linux Kernel out-of-bounds read vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2025-04-09. Because it is on the KEV list, organizations should treat it as a priority exposure and follow vendor guidance for any Linux-based systems and downstream products that rely on the kernel.

HIGH Linux CVE published 2025-04-07

CVE-2023-35001

CVE-2023-35001 is a Linux kernel nftables out-of-bounds read/write issue that CISA mapped to ABB M2M Gateway ARM600 and ABB M2M Gateway SW. The advisory says the flaw can lead to local user privilege escalation and assigns CVSS 7.8 (HIGH). CISA published the advisory on 2025-04-07. For defenders, the most important takeaway is that this is a high-impact local-privilege issue affecting specific ABB gateway [truncated]

MEDIUM Linux CVE published 2025-04-07

CVE-2022-3564

CVE-2022-3564 is a Linux kernel Bluetooth use-after-free issue that ABB lists as affecting ARM600 and ABB M2M Gateway SW. In the ABB/CISA advisory published on 2025-04-07, the affected ranges are ARM600 firmware 4.1.2 through 5.0.3 and ABB M2M Gateway SW 5.0.1 through 5.0.3. The reported impact is potential data leakage or denial of service. The CVSS vector provided in the source is 6.8 (Medium), while th [truncated]

MEDIUM Linux CVE published 2025-03-12

CVE-2025-21845

CVE-2025-21845 is a Linux kernel availability issue in the MTD SPI-NOR SST write path. The vulnerability was introduced by a refactor in the SST write helper and can cause a warning and kernel crash when a write request is processed, because only one byte is written instead of the requested length.

Known exploited Linux CVE published 2025-03-04

CVE-2024-50302

CVE-2024-50302 is a Linux kernel use of uninitialized resource vulnerability that CISA added to the Known Exploited Vulnerabilities catalog on 2025-03-04. The KEV entry sets a remediation due date of 2025-03-25 and points defenders to vendor guidance, including the Linux kernel CVE announcement, the Android 2025-03-01 security bulletin, and NVD. Treat this as an urgent remediation item for Linux-based environments.

Known exploited Linux CVE published 2025-02-05

CVE-2024-53104

CVE-2024-53104 is a Linux Kernel out-of-bounds write vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2025-02-05. Because it is KEV-listed, defenders should treat it as a priority for patching or mitigation. CISA's record also notes that this issue affects a common open-source component used by different products, so downstream systems may need separate validation.

MEDIUM Linux CVE published 2024-12-27

CVE-2024-56647

CVE-2024-56647 is a Linux kernel networking bug where ICMP host relookup can interact badly with XFRM policy checks after an ARP/link failure, triggering ip_rt_bug and kernel warnings. The issue is primarily an availability problem: NVD rates it 5.5/Medium, with local access required and high availability impact. The supplied kernel fix skips ICMP relookup for locally generated packets, which avoids the p [truncated]

HIGH Linux CVE published 2024-11-05

CVE-2023-52920

CVE-2023-52920 is a Linux kernel BPF verifier bug in precision tracking for stack spill/fill history. NVD rates it medium severity (CVSS 5.5) and lists Linux kernel versions before 6.8 as vulnerable, with a local, low-privilege impact profile.

Known exploited Linux CVE published 2024-09-09

CVE-2017-1000253

CVE-2017-1000253 is a Linux Kernel memory-corruption issue identified by CISA as actively exploited and added to the Known Exploited Vulnerabilities catalog. CISA’s entry also marks known ransomware campaign use as "Known," which raises the operational priority for any environment running affected Linux kernel builds. The supplied source corpus does not include the full vendor advisory or NVD detail text, [truncated]

Known exploited Linux CVE published 2024-08-21

CVE-2022-0185

CVE-2022-0185 is a Linux kernel heap-based buffer overflow vulnerability that CISA has listed in the Known Exploited Vulnerabilities (KEV) catalog. That KEV listing makes it a high-priority patching issue for any environment running affected Linux kernel builds. The supplied official references point to the CVE record, NVD detail page, and an upstream kernel commit for remediation context.

HIGH Linux CVE published 2024-08-14

CVE-2024-42259

A boundary calculation error in the Linux kernel's Intel i915 graphics driver (drm/i915/gem) can cause page fault access when handling Virtual Memory mappings. The vulnerability stems from incorrect size calculation when mapping GPU memory regions, where the code used the lesser of requested versus actual size without accounting for partial mapping offsets. This local attack vector requires low privileges [truncated]

HIGH Linux CVE published 2024-07-29

CVE-2024-42097

A missed validation vulnerability in the Linux Kernel's MIDI sequencer and router support functionality could allow a local user to crash the system.

HIGH Linux CVE published 2024-07-29

CVE-2024-41016

CVE-2024-41016 is a medium-severity vulnerability (CVSS 5.5) in the OCFS2 filesystem affecting Siemens SIMATIC S7-1500 TM MFP industrial control systems with GNU/Linux subsystems. The flaw exists in the ocfs2_xattr_find_entry() function where extended attributes (xattr) may be stored as 'non-indexed' with additional requested space, creating a potential out-of-bounds memory read condition during memcmp op [truncated]