ID

VAR-202406-1246


CVE

CVE-2024-36978


TITLE

Linux  of  Linux Kernel  Out-of-bounds write vulnerability in

Trust: 0.8

sources: JVNDB: JVNDB-2024-006039

DESCRIPTION

In the Linux kernel, the following vulnerability has been resolved: net: sched: sch_multiq: fix possible OOB write in multiq_tune() q->bands will be assigned to qopt->bands to execute subsequent code logic after kmalloc. So the old q->bands should not be used in kmalloc. Otherwise, an out-of-bounds write will occur. Linux of Linux Kernel Exists in an out-of-bounds write vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The RUGGEDCOM RST2428P is a Layer 2 Ethernet switch based on SINEC OS with up to 28 non-blocking interfaces. SCALANCE X switches are used to connect industrial components such as programmable logic controllers (PLCs) and human-machine interfaces (HMIs). Multiple vulnerabilities exist in third-party components prior to SIEMENS SINEC OS V3.2. These vulnerabilities could be exploited to corrupt values, leading to undefined behavior or security issues. ========================================================================== Ubuntu Security Notice USN-7006-1 September 12, 2024 linux-iot vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-iot: Linux kernel for IoT platforms Details: It was discovered that a race condition existed in the Bluetooth subsystem in the Linux kernel, leading to a null pointer dereference vulnerability. A privileged local attacker could use this to possibly cause a denial of service (system crash). (CVE-2024-24860) It was discovered that the JFS file system contained an out-of-bounds read vulnerability when printing xattr debug information. A local attacker could use this to cause a denial of service (system crash). (CVE-2024-40902) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - MIPS architecture; - PowerPC architecture; - SuperH RISC architecture; - x86 architecture; - ACPI drivers; - Serial ATA and Parallel ATA drivers; - Drivers core; - GPIO subsystem; - GPU drivers; - Greybus drivers; - HID subsystem; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Media drivers; - VMware VMCI Driver; - MMC subsystem; - Network drivers; - Pin controllers subsystem; - S/390 drivers; - SCSI drivers; - USB subsystem; - GFS2 file system; - JFFS2 file system; - JFS file system; - File systems infrastructure; - NILFS2 file system; - IOMMU subsystem; - Sun RPC protocol; - Netfilter; - Memory management; - B.A.T.M.A.N. meshing protocol; - CAN network layer; - Ceph Core library; - Networking core; - IPv4 networking; - IPv6 networking; - IUCV driver; - MAC80211 subsystem; - NET/ROM layer; - Network traffic control; - HD-audio driver; - SoC Audio for Freescale CPUs drivers; (CVE-2024-42154, CVE-2024-42093, CVE-2024-42096, CVE-2024-40984, CVE-2024-39502, CVE-2024-36901, CVE-2024-41044, CVE-2024-40961, CVE-2024-40981, CVE-2024-42236, CVE-2024-42232, CVE-2024-41041, CVE-2024-40958, CVE-2024-40905, CVE-2024-42084, CVE-2024-40934, CVE-2024-42124, CVE-2024-39505, CVE-2024-39506, CVE-2024-39501, CVE-2021-46926, CVE-2024-40941, CVE-2024-42145, CVE-2024-41089, CVE-2024-40932, CVE-2024-42224, CVE-2024-41097, CVE-2024-40959, CVE-2024-42157, CVE-2024-39469, CVE-2024-39499, CVE-2024-40974, CVE-2024-42094, CVE-2024-36894, CVE-2024-42087, CVE-2024-42104, CVE-2023-52803, CVE-2024-41034, CVE-2024-40995, CVE-2023-52629, CVE-2024-40912, CVE-2024-39484, CVE-2024-41006, CVE-2023-52760, CVE-2024-41095, CVE-2024-41046, CVE-2024-42070, CVE-2023-52887, CVE-2024-40960, CVE-2024-41007, CVE-2024-40901, CVE-2024-42119, CVE-2024-40987, CVE-2024-42148, CVE-2024-41049, CVE-2024-40963, CVE-2024-41087, CVE-2024-42223, CVE-2024-42090, CVE-2024-42105, CVE-2024-42089, CVE-2024-40916, CVE-2024-40942, CVE-2024-40978, CVE-2024-40902, CVE-2024-26921, CVE-2024-39495, CVE-2024-40943, CVE-2024-36978, CVE-2024-26929, CVE-2024-40988, CVE-2024-39503, CVE-2024-42101, CVE-2024-40904, CVE-2024-42086, CVE-2024-42106, CVE-2024-26830, CVE-2024-41035, CVE-2024-42153, CVE-2024-39509, CVE-2024-37078, CVE-2024-42076, CVE-2024-36974, CVE-2024-40980, CVE-2024-40945, CVE-2024-39487, CVE-2024-42092, CVE-2024-38619, CVE-2024-42127, CVE-2024-40968, CVE-2024-42115, CVE-2024-42102, CVE-2024-42097) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS linux-image-5.4.0-1043-iot 5.4.0-1043.44 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7006-1 CVE-2021-46926, CVE-2023-52629, CVE-2023-52760, CVE-2023-52803, CVE-2023-52887, CVE-2024-24860, CVE-2024-26830, CVE-2024-26921, CVE-2024-26929, CVE-2024-36894, CVE-2024-36901, CVE-2024-36974, CVE-2024-36978, CVE-2024-37078, CVE-2024-38619, CVE-2024-39469, CVE-2024-39484, CVE-2024-39487, CVE-2024-39495, CVE-2024-39499, CVE-2024-39501, CVE-2024-39502, CVE-2024-39503, CVE-2024-39505, CVE-2024-39506, CVE-2024-39509, CVE-2024-40901, CVE-2024-40902, CVE-2024-40904, CVE-2024-40905, CVE-2024-40912, CVE-2024-40916, CVE-2024-40932, CVE-2024-40934, CVE-2024-40941, CVE-2024-40942, CVE-2024-40943, CVE-2024-40945, CVE-2024-40958, CVE-2024-40959, CVE-2024-40960, CVE-2024-40961, CVE-2024-40963, CVE-2024-40968, CVE-2024-40974, CVE-2024-40978, CVE-2024-40980, CVE-2024-40981, CVE-2024-40984, CVE-2024-40987, CVE-2024-40988, CVE-2024-40995, CVE-2024-41006, CVE-2024-41007, CVE-2024-41034, CVE-2024-41035, CVE-2024-41041, CVE-2024-41044, CVE-2024-41046, CVE-2024-41049, CVE-2024-41087, CVE-2024-41089, CVE-2024-41095, CVE-2024-41097, CVE-2024-42070, CVE-2024-42076, CVE-2024-42084, CVE-2024-42086, CVE-2024-42087, CVE-2024-42089, CVE-2024-42090, CVE-2024-42092, CVE-2024-42093, CVE-2024-42094, CVE-2024-42096, CVE-2024-42097, CVE-2024-42101, CVE-2024-42102, CVE-2024-42104, CVE-2024-42105, CVE-2024-42106, CVE-2024-42115, CVE-2024-42119, CVE-2024-42124, CVE-2024-42127, CVE-2024-42145, CVE-2024-42148, CVE-2024-42153, CVE-2024-42154, CVE-2024-42157, CVE-2024-42223, CVE-2024-42224, CVE-2024-42232, CVE-2024-42236 Package Information: https://launchpad.net/ubuntu/+source/linux-iot/5.4.0-1043.44 . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5731-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso July 16, 2024 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : linux CVE ID : CVE-2023-52760 CVE-2024-25741 CVE-2024-27397 CVE-2024-36894 CVE-2024-36973 CVE-2024-36978 CVE-2024-37078 CVE-2024-38619 CVE-2024-39298 CVE-2024-39371 CVE-2024-39469 CVE-2024-39474 CVE-2024-39484 CVE-2024-39487 CVE-2024-39494 CVE-2024-39495 CVE-2024-39496 CVE-2024-39499 CVE-2024-39500 CVE-2024-39501 CVE-2024-39502 CVE-2024-39503 CVE-2024-39505 CVE-2024-39506 CVE-2024-39507 CVE-2024-39509 CVE-2024-39510 CVE-2024-40899 CVE-2024-40900 CVE-2024-40901 CVE-2024-40902 CVE-2024-40903 CVE-2024-40904 CVE-2024-40905 CVE-2024-40906 CVE-2024-40908 CVE-2024-40910 CVE-2024-40911 CVE-2024-40912 CVE-2024-40913 CVE-2024-40914 CVE-2024-40915 CVE-2024-40916 CVE-2024-40919 CVE-2024-40920 CVE-2024-40921 CVE-2024-40924 CVE-2024-40927 CVE-2024-40929 CVE-2024-40931 CVE-2024-40932 CVE-2024-40934 CVE-2024-40935 CVE-2024-40937 CVE-2024-40938 CVE-2024-40939 CVE-2024-40940 CVE-2024-40941 CVE-2024-40942 CVE-2024-40943 CVE-2024-40947 CVE-2024-40948 CVE-2024-40953 CVE-2024-40954 CVE-2024-40956 CVE-2024-40957 CVE-2024-40958 CVE-2024-40959 CVE-2024-40960 CVE-2024-40961 CVE-2024-40963 CVE-2024-40966 CVE-2024-40967 CVE-2024-40968 CVE-2024-40970 CVE-2024-40971 CVE-2024-40974 CVE-2024-40976 CVE-2024-40977 CVE-2024-40978 CVE-2024-40980 CVE-2024-40981 CVE-2024-40983 CVE-2024-40984 CVE-2024-40987 CVE-2024-40988 CVE-2024-40989 CVE-2024-40990 CVE-2024-40993 CVE-2024-40994 CVE-2024-40995 CVE-2024-40996 CVE-2024-41000 CVE-2024-41001 CVE-2024-41002 CVE-2024-41004 CVE-2024-41005 CVE-2024-41006 Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. For the stable distribution (bookworm), these problems have been fixed in version 6.1.99-1. We recommend that you upgrade your linux packages. For the detailed security status of linux please refer to its security tracker page at: https://security-tracker.debian.org/tracker/linux Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmaWylhfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND z0SMThAAiAanrQH+A4sTcRMZgwj521PKppx6+06c3jbqktG8XwQeOmaRrA1tgeyV ABahFSib/84PJtdqpW8+EHSJvGvxm9TKND98pPV6SjId2Ly7D+ARnfm6vIZzW/Sv WOZx0IU/So8qbZ7OjvKTfT+869yJ+MfRnYhdfuFTSJaZYehMyeizUMM5fjBX3dSf BBKcxR9w/RI2OgxiN45Q9+FrCCMS26RBTzRcb3pskw8741gzDyEostjjG+k5B8XJ /gEu10O3dGKtRV/1Uhkd5R4ACkcXHovox9EmA2vizGNfhf981cTeBT2ZIPIzstIY +/vkd4uUPi/OgIEBlkvcQx0UUaYctqDOnpvRqrLU9hwBkhlk0ueHxaHiBl9tf6L2 CDYb1BROY2A0eDSqCFugYMjzZDIbihFUS1Ly1TKDqea5xDTfiZcWa1u7bFp/LR2C 075lTh79e3GMdFceWfJk9SiPrFZnpCiokTmvbg4c0U7ac8ruXbAcV4i79exMTgwe VtUBFRufnLesmMmolGnqWSDA4Mf+w04MXJj3tU9N4MfC0bG0Y46IlNrabDOhUlns VdHvDLQOIMcFOl8rfKjFs+wTuUkRZUSFNQotG1WDiTezcQqbMS2eodVCB6Cq/51W L6oukVbbmncmYgYY3BGLTfn7ZxHUK3nhu/WmxtmwI4KsViLd8+Q= =KPq+ -----END PGP SIGNATURE-----

Trust: 3.33

sources: NVD: CVE-2024-36978 // JVNDB: JVNDB-2024-006039 // CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // PACKETSTORM: 181490 // PACKETSTORM: 181484 // PACKETSTORM: 181483 // PACKETSTORM: 181844 // PACKETSTORM: 181512 // PACKETSTORM: 181959 // PACKETSTORM: 179584

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 1.2

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350

AFFECTED PRODUCTS

vendor:linuxmodel:kernelscope:eqversion:6.10

Trust: 1.8

vendor:linuxmodel:kernelscope:gteversion:5.11

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.4.279

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.5

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.10.221

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:6.2

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.16

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.1.95

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.6.35

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.15.162

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:6.7

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.9.6

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.4

Trust: 1.0

vendor:linuxmodel:kernelscope:eqversion:6.7 that's all 6.9.6

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:6.2 that's all 6.6.35

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.11 that's all 5.15.162

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.16 that's all 6.1.95

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.4 that's all 5.4.279

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.5 that's all 5.10.221

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion: -

Trust: 0.8

vendor:siemensmodel:ruggedcom rst2428pscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xc-300/xr-300/xc-400/xr-500wg/xr-500 familyscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xcm-/xrm-/xch-/xrh-300 familyscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:ruggedcom rst2428pscope:ltversion:v3.2

Trust: 0.6

vendor:siemensmodel:scalance xc-300/xr-300/xc-400/xr-500wg/xr-500 familyscope:ltversion:v3.2

Trust: 0.6

vendor:siemensmodel:scalance xcm-/xrm-/xch-/xrh-300 familyscope:ltversion:v3.2

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // JVNDB: JVNDB-2024-006039 // NVD: CVE-2024-36978

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2024-36978
value: HIGH

Trust: 1.0

NVD: CVE-2024-36978
value: HIGH

Trust: 0.8

CNVD: CNVD-2025-19346
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-19350
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-19346
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

CNVD: CNVD-2025-19350
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

nvd@nist.gov: CVE-2024-36978
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2024-36978
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // JVNDB: JVNDB-2024-006039 // NVD: CVE-2024-36978

PROBLEMTYPE DATA

problemtype:CWE-787

Trust: 1.0

problemtype:Out-of-bounds writing (CWE-787) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2024-006039 // NVD: CVE-2024-36978

THREAT TYPE

local

Trust: 0.6

sources: PACKETSTORM: 181490 // PACKETSTORM: 181484 // PACKETSTORM: 181483 // PACKETSTORM: 181844 // PACKETSTORM: 181512 // PACKETSTORM: 181959

PATCH

title:Linux Kernel Archivesurl:https://git.kernel.org/stable/c/0f208fad86631e005754606c3ec80c0d44a11882

Trust: 0.8

title:Patch for Multiple vulnerabilities in Siemens SINEC OS third-party componentsurl:https://www.cnvd.org.cn/patchInfo/show/723071

Trust: 0.6

title:Patch for Multiple vulnerabilities exist in third-party components of SIEMENS SINEC OS V3.2 and earlierurl:https://www.cnvd.org.cn/patchInfo/show/723061

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // JVNDB: JVNDB-2024-006039

EXTERNAL IDS

db:NVDid:CVE-2024-36978

Trust: 3.3

db:SIEMENSid:SSA-613116

Trust: 1.6

db:SIEMENSid:SSA-355557

Trust: 1.6

db:SIEMENSid:SSA-265688

Trust: 1.0

db:JVNid:JVNVU92169998

Trust: 0.8

db:ICS CERTid:ICSA-25-226-07

Trust: 0.8

db:JVNDBid:JVNDB-2024-006039

Trust: 0.8

db:CNVDid:CNVD-2025-19346

Trust: 0.6

db:CNVDid:CNVD-2025-19350

Trust: 0.6

db:PACKETSTORMid:181490

Trust: 0.1

db:PACKETSTORMid:181484

Trust: 0.1

db:PACKETSTORMid:181483

Trust: 0.1

db:PACKETSTORMid:181844

Trust: 0.1

db:PACKETSTORMid:181512

Trust: 0.1

db:PACKETSTORMid:181959

Trust: 0.1

db:PACKETSTORMid:179584

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // PACKETSTORM: 181490 // PACKETSTORM: 181484 // PACKETSTORM: 181483 // PACKETSTORM: 181844 // PACKETSTORM: 181512 // PACKETSTORM: 181959 // PACKETSTORM: 179584 // JVNDB: JVNDB-2024-006039 // NVD: CVE-2024-36978

REFERENCES

url:https://cert-portal.siemens.com/productcert/html/ssa-613116.html

Trust: 1.6

url:https://cert-portal.siemens.com/productcert/html/ssa-355557.html

Trust: 1.6

url:https://nvd.nist.gov/vuln/detail/cve-2024-36978

Trust: 1.5

url:https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html

Trust: 1.0

url:https://git.kernel.org/stable/c/affc18fdc694190ca7575b9a86632a73b9fe043d

Trust: 1.0

url:https://git.kernel.org/stable/c/d5d9d241786f49ae7cbc08e7fc95a115e9d80f3d

Trust: 1.0

url:https://cert-portal.siemens.com/productcert/html/ssa-265688.html

Trust: 1.0

url:https://git.kernel.org/stable/c/598572c64287aee0b75bbba4e2881496878860f3

Trust: 1.0

url:https://git.kernel.org/stable/c/52b1aa07cda6a199cd6754d3798c7759023bc70f

Trust: 1.0

url:https://git.kernel.org/stable/c/d6fb5110e8722bc00748f22caeb650fe4672f129

Trust: 1.0

url:https://git.kernel.org/stable/c/54c2c171c11a798fe887b3ff72922aa9d1411c1e

Trust: 1.0

url:https://git.kernel.org/stable/c/0f208fad86631e005754606c3ec80c0d44a11882

Trust: 1.0

url:https://jvn.jp/vu/jvnvu92169998/index.html

Trust: 0.8

url:https://www.cisa.gov/news-events/ics-advisories/icsa-25-226-07

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2024-39487

Trust: 0.7

url:https://nvd.nist.gov/vuln/detail/cve-2023-52803

Trust: 0.6

url:https://nvd.nist.gov/vuln/detail/cve-2024-39469

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2024-40902

Trust: 0.5

url:https://ubuntu.com/security/notices/usn-7003-1

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2024-39509

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2024-39502

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2023-52887

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-37078

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-38619

Trust: 0.4

url:https://ubuntu.com/security/notices/usn-7003-2

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-40905

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-36894

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-39501

Trust: 0.3

url:https://ubuntu.com/security/notices/usn-7003-3

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-39484

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-39495

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-40934

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-39499

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-40904

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-40912

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-36974

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-39505

Trust: 0.2

url:https://ubuntu.com/security/notices/usn-7003-4

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-39506

Trust: 0.2

url:https://launchpad.net/ubuntu/+source/linux-iot/5.4.0-1043.44

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-24860

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-7006-1

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-26921

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-36901

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-26929

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-26830

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-46926

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-40942

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gkeop/5.4.0-1099.103

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-kvm/5.4.0-1120.128

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws/5.4.0-1132.142

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-ibm/5.4.0-1079.84

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp/5.4.0-1136.145

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure/5.4.0-1137.144

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux/5.4.0-195.215

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39503

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle/5.4.0-1131.140

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-bluefield/5.4.0-1092.99

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-raspi/5.4.0-1116.128

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-xilinx-zynqmp/5.4.0-1051.55

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-40916

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-40932

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-7003-5

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-40941

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39474

Trust: 0.1

url:https://security-tracker.debian.org/tracker/linux

Trust: 0.1

url:https://www.debian.org/security/

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-36973

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39298

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2023-52760

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-25741

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-27397

Trust: 0.1

url:https://www.debian.org/security/faq

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39371

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // PACKETSTORM: 181490 // PACKETSTORM: 181484 // PACKETSTORM: 181483 // PACKETSTORM: 181844 // PACKETSTORM: 181512 // PACKETSTORM: 181959 // PACKETSTORM: 179584 // JVNDB: JVNDB-2024-006039 // NVD: CVE-2024-36978

CREDITS

Ubuntu

Trust: 0.6

sources: PACKETSTORM: 181490 // PACKETSTORM: 181484 // PACKETSTORM: 181483 // PACKETSTORM: 181844 // PACKETSTORM: 181512 // PACKETSTORM: 181959

SOURCES

db:CNVDid:CNVD-2025-19346
db:CNVDid:CNVD-2025-19350
db:PACKETSTORMid:181490
db:PACKETSTORMid:181484
db:PACKETSTORMid:181483
db:PACKETSTORMid:181844
db:PACKETSTORMid:181512
db:PACKETSTORMid:181959
db:PACKETSTORMid:179584
db:JVNDBid:JVNDB-2024-006039
db:NVDid:CVE-2024-36978

LAST UPDATE DATE

2026-06-19T21:40:18.991000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-22T00:00:00
db:CNVDid:CNVD-2025-19350date:2025-08-22T00:00:00
db:JVNDBid:JVNDB-2024-006039date:2025-08-26T10:40:00
db:NVDid:CVE-2024-36978date:2026-05-12T12:16:51.273

SOURCES RELEASE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-12T00:00:00
db:CNVDid:CNVD-2025-19350date:2025-08-12T00:00:00
db:PACKETSTORMid:181490date:2024-09-12T14:54:35
db:PACKETSTORMid:181484date:2024-09-12T14:51:31
db:PACKETSTORMid:181483date:2024-09-12T14:34:12
db:PACKETSTORMid:181844date:2024-09-26T15:22:04
db:PACKETSTORMid:181512date:2024-09-13T15:50:21
db:PACKETSTORMid:181959date:2024-10-02T13:47:21
db:PACKETSTORMid:179584date:2024-07-17T17:30:37
db:JVNDBid:JVNDB-2024-006039date:2024-08-21T00:00:00
db:NVDid:CVE-2024-36978date:2024-06-19T07:15:46.437