These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
A race condition vulnerability exists in the Linux kernel's UDP networking stack. The flaw, described as a 'small race window' in UDP packet processing, could potentially allow an attacker to cause unexpected behavior or denial of service conditions. The vulnerability affects Siemens industrial networking products running SINEC OS, specifically the RUGGEDCOM RST2428P switch and SCALANCE X family switches [truncated]
CVE-2024-41040 is a use-after-free (UAF) vulnerability in the Linux kernel's network scheduler (net/sched) subsystem, specifically triggered when resolving a clash condition. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. Siemens has identified this CVE as affecting certain industrial networking products, including the RUGGEDCOM RST2428P and SCALANCE product families, thoug [truncated]
CVE-2024-41035 is a HIGH severity vulnerability (CVSS 7.1) in the USB core subsystem, specifically a duplicate endpoint bug. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. Siemens has identified this vulnerability as affecting their RUGGEDCOM RST2428P (6GK6242-6PA00) product, as documented in CISA advisory ICSA-25-226-07. The advisory has undergone multiple revisions, with [truncated]
CVE-2024-41034 describes a kernel bug in the nilfs2 filesystem triggered during rename operations on broken directories. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. Siemens has assessed this CVE as **Misinformed** for affected products, indicating the vulnerability does not actually impact the listed Siemens industrial networking products (RUGGEDCOM RST2428P, SCALANCE XC [truncated]
A signedness vulnerability in the Linux kernel's AMDGPU DRM driver, specifically within the `sdma_v4_0_process_trap_irq()` function, has been identified in third-party components used by Siemens industrial networking products. The flaw involves incorrect handling of signed values that may lead to processing errors. While the underlying vulnerability exists in the Linux kernel's graphics driver subsystem, [truncated]
CVE-2024-41020 is a race condition vulnerability in the filelock component, specifically between fcntl and close operations, which can lead to issues in the recovery compatibility path. The vulnerability was published on August 12, 2025, and last modified on February 25, 2026. It affects Siemens industrial networking products including the RUGGEDCOM RST2428P and SCALANCE X-family switches running SINEC OS [truncated]
CVE-2024-41017 is a vulnerability in the Journaled File System (jfs) involving out-of-bounds memory access beyond the end of ealist, which can lead to undefined behavior or crashes. The vulnerability was published on August 12, 2025, and most recently modified on February 25, 2026. Siemens ProductCERT issued advisory SSA-355557 addressing this issue, which CISA subsequently republished as ICSA-25-226-07. [truncated]
CVE-2024-41015 addresses a missing bounds check in the OCFS2 (Oracle Cluster File System version 2) Linux kernel module. The vulnerability exists in the ocfs2_check_dir_entry() function, which lacked proper validation to ensure that ocfs2_dir_entry structure members remain within valid memory boundaries. Without these sanity checks, malformed directory entries could potentially cause out-of-bounds memory [truncated]
A race condition in the Linux kernel's file locking mechanism (fcntl_setlk) can lead to unreliable lock removal when racing with close(), potentially causing use-after-free conditions. Siemens ProductCERT has assessed this vulnerability as 'Misinformed' for affected industrial networking products, indicating the reported impact does not apply to their specific implementation or configuration.
CVE-2024-41009 is a MEDIUM severity vulnerability (CVSS 5.5) in the Linux kernel's BPF (Berkeley Packet Filter) subsystem, specifically affecting the ring buffer (ringbuf) implementation. The flaw involves overrunning reservations in the ringbuf, which could lead to resource exhaustion or denial-of-service conditions. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. Siemens h [truncated]
CVE-2024-41007 is a LOW-severity vulnerability (CVSS 3.3) in the Linux kernel's TCP implementation. The issue occurs when a TCP socket uses TCP_USER_TIMEOUT, potentially causing excessive retransmit packets. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. Siemens has identified this CVE as affecting their RUGGEDCOM RST2428P (6GK6242-6PA00) and other industrial networking pro [truncated]
CVE-2024-41006 is a memory leak vulnerability in the Linux kernel's NET/ROM amateur packet radio protocol implementation, specifically within the `nr_heartbeat_expiry()` function. The vulnerability was published on August 12, 2025, and last modified on February 25, 2026. Siemens ProductCERT issued advisory SSA-355557 addressing third-party components in SINEC OS, which includes this kernel-level issue. CI [truncated]
CVE-2024-41005 is a race condition vulnerability in the Linux kernel's netpoll subsystem, specifically in the netpoll_owner_active function. The vulnerability was detected by the Kernel Concurrency Sanitizer (KCSAN), which identified a race condition in netpoll. This flaw could potentially lead to undefined behavior or system instability when netpoll is active. The vulnerability has been assigned a CVSS s [truncated]
CVE-2024-41000 is a signed integer overflow vulnerability in the Linux kernel's block/ioctl subsystem, discovered through syzkaller fuzzing with the reintroduced signed integer overflow sanitizer. The vulnerability stems from insufficient overflow checking in block device ioctl operations. Siemens has assessed this CVE as 'Misinformed' for its affected industrial networking products, indicating the vulner [truncated]
CVE-2024-40990 is a medium-severity integer overflow vulnerability in the Linux kernel's PTP (Precision Time Protocol) subsystem, specifically within the `max_vclocks_store` function. The vulnerability was published on August 12, 2025, and last modified on February 25, 2026. Siemens has identified this CVE as affecting certain industrial networking products running SINEC OS, including the RUGGEDCOM RST242 [truncated]
CVE-2024-40988 describes a UBSAN (Undefined Behavior Sanitizer) warning in the Linux kernel's drm/radeon driver, specifically in kv_dpm.c. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. CISA's ICS advisory ICSA-25-226-07, which was republished on 2026-02-25 based on Siemens ProductCERT advisory SSA-355557, identifies this CVE as affecting Siemens industrial networking produ [truncated]
CVE-2024-40984 is a medium-severity vulnerability (CVSS 5.5) affecting the ACPICA (ACPI Component Architecture) component, specifically related to a reverted change concerning mapping multiple Base Address Registers (BARs). The vulnerability description indicates this was a revert of a previous ACPICA commit that attempted to avoid an informational message about mapping multiple BARs with the reassurance [truncated]
A vulnerability in the Transparent Inter-Process Communication (TIPC) protocol implementation could allow a crash to occur before decryption is performed. This affects Siemens industrial networking products running SINEC OS, specifically the RUGGEDCOM RST2428P and SCALANCE X family switches. The vulnerability has a CVSS score of 5.5 (MEDIUM severity). CISA published this advisory on August 12, 2025, with [truncated]
CVE-2024-40981 is a vulnerability in the batman-adv (Better Approach To Mobile Ad-hoc Networking Advanced) kernel module, specifically within the `batadv_purge_orig_ref()` function. The issue involves empty buckets that can lead to soft lockups, causing system instability or denial of service conditions. The vulnerability was published on August 12, 2025, and last modified on February 25, 2026. Siemens ha [truncated]
CVE-2024-40980 is a MEDIUM severity vulnerability (CVSS 5.9) affecting the Linux kernel's drop_monitor component. The issue stems from trace_drop_common() being called with preemption disabled while acquiring a spin_lock, which causes problems on Real-Time (RT) kernels where spin_locks become sleeping locks. This configuration can trigger kernel warnings (splat) and potential system instability. The vulne [truncated]
CVE-2024-40978 describes a crash condition in the Linux kernel's qedi SCSI driver. The vulnerability exists in the qedi_dbg_do_not_recover_cmd_read() function, which incorrectly invokes sprintf() directly on a __user pointer. This improper memory access can trigger a kernel crash when reading the associated debugfs attribute. The issue was published on 2025-08-12 and last modified on 2026-02-25. Siemens h [truncated]
CVE-2024-40976 describes a race condition in the Linux kernel's drm/lima GPU driver. A rendering job may trigger the DRM scheduler job timeout handler yet complete before the hard reset occurs, leading to unexpected race conditions. In specific circumstances, this can cause a reference count imbalance in lima_pm_idle, resulting in a stack dump. The vulnerability was published on 2025-08-12 and last modifi [truncated]
CVE-2024-40974 describes a stack corruption vulnerability in the Linux kernel's powerpc/pseries subsystem, specifically within the `plpar_hcall9()` function. The flaw occurs when this function stores results past the end of an array, leading to potential runtime stack corruption. This vulnerability affects Siemens industrial networking products that incorporate the vulnerable Linux kernel component, inclu [truncated]
A race condition in the Linux kernel's F2FS filesystem during remount operations can cause files created or opened during a brief window to bypass inline encryption, potentially leading to data corruption when wrappedkey_v0 is enabled. The vulnerability stems from the SB_INLINECRYPT flag being temporarily cleared and re-set in f2fs_remount. Siemens has assessed this vulnerability as not affecting their li [truncated]
CVE-2024-40963 describes a kernel panic condition in the MIPS BMIPS BCM6358 platform where certain devices have their CBR (Configuration Base Register) address set to 0. When the function `arch_sync_dma_for_cpu_all` is called on affected systems, this null CBR address triggers a kernel panic. The vulnerability resides in the Linux kernel's MIPS architecture support code for Broadcom BMIPS processors, spec [truncated]
CVE-2024-40961 is a NULL pointer dereference vulnerability in the Linux kernel's IPv6 networking subsystem, specifically within the fib6_nh_init() function. The issue arises because in6_dev_get() can return NULL, which was not being checked before dereference. This vulnerability was identified through syzbot automated fuzzing. The vulnerability has a CVSS score of 5.5 (MEDIUM severity). According to the C [truncated]
A NULL pointer dereference vulnerability exists in the Linux kernel's IPv6 routing subsystem, specifically within the rt6_probe() function. The flaw occurs when __in6_dev_get() returns NULL, which is not properly handled, leading to a potential kernel crash. This vulnerability was identified by syzbot, Google's kernel fuzzing infrastructure. The issue affects Siemens industrial networking products that in [truncated]
This CVE addresses a missing null pointer check in the Linux kernel's IPv6 IPsec (xfrm6) implementation. Specifically, the function `xfrm6_get_saddr()` failed to validate the return value of `ip6_dst_idev()`, which can return NULL under certain error conditions. Without this check, a NULL pointer dereference could occur, potentially leading to a kernel crash or denial of service condition. The vulnerabili [truncated]
A use-after-free vulnerability in the Linux kernel's network namespace (netns) subsystem, specifically in the get_net_ns() function, affects Siemens industrial networking products. The vulnerability stems from improper handling of zero refcount network namespace objects, which can lead to memory corruption when refcount_t operations are performed on freed memory. Siemens has assessed this vulnerability as [truncated]
CVE-2024-40947 is a MEDIUM severity vulnerability (CVSS 5.5) in the Linux kernel's Integrity Measurement Architecture (IMA). The issue involves a blocking operation occurring within an RCU (Read-Copy-Update) read-side critical section in the `ima_match_policy` function, which can lead to a kernel panic. This vulnerability affects Siemens industrial networking products running SINEC OS, specifically the RU [truncated]