ID

VAR-202406-2783


CVE

CVE-2024-38619


TITLE

Linux  of  Linux Kernel  Vulnerability in using uninitialized resources in

Trust: 0.8

sources: JVNDB: JVNDB-2024-028578

DESCRIPTION

In the Linux kernel, the following vulnerability has been resolved: usb-storage: alauda: Check whether the media is initialized The member "uzonesize" of struct alauda_info will remain 0 if alauda_init_media() fails, potentially causing divide errors in alauda_read_data() and alauda_write_lba(). - Add a member "media_initialized" to struct alauda_info. - Change a condition in alauda_check_media() to ensure the first initialization. - Add an error check for the return value of alauda_init_media(). Linux of Linux Kernel Exists in the use of uninitialized resources.Service operation interruption (DoS) It may be in a state. The RUGGEDCOM RST2428P is a Layer 2 Ethernet switch based on SINEC OS with up to 28 non-blocking interfaces. SCALANCE X switches are used to connect industrial components such as programmable logic controllers (PLCs) and human-machine interfaces (HMIs). Multiple vulnerabilities exist in third-party components prior to SIEMENS SINEC OS V3.2. These vulnerabilities could be exploited to corrupt values, leading to undefined behavior or security issues. ========================================================================== Ubuntu Security Notice USN-7003-2 September 12, 2024 linux-aws-5.4, linux-azure-5.4, linux-gcp-5.4, linux-hwe-5.4, linux-ibm-5.4, linux-oracle-5.4, linux-raspi-5.4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws-5.4: Linux kernel for Amazon Web Services (AWS) systems - linux-azure-5.4: Linux kernel for Microsoft Azure cloud systems - linux-gcp-5.4: Linux kernel for Google Cloud Platform (GCP) systems - linux-hwe-5.4: Linux hardware enablement (HWE) kernel - linux-ibm-5.4: Linux kernel for IBM cloud systems - linux-oracle-5.4: Linux kernel for Oracle Cloud systems - linux-raspi-5.4: Linux kernel for Raspberry Pi systems Details: It was discovered that the JFS file system contained an out-of-bounds read vulnerability when printing xattr debug information. A local attacker could use this to cause a denial of service (system crash). (CVE-2024-40902) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - MIPS architecture; - PowerPC architecture; - x86 architecture; - ACPI drivers; - Serial ATA and Parallel ATA drivers; - Drivers core; - GPIO subsystem; - GPU drivers; - Greybus drivers; - HID subsystem; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Media drivers; - VMware VMCI Driver; - Network drivers; - Pin controllers subsystem; - S/390 drivers; - SCSI drivers; - USB subsystem; - JFFS2 file system; - JFS file system; - File systems infrastructure; - NILFS2 file system; - IOMMU subsystem; - Sun RPC protocol; - Netfilter; - Memory management; - B.A.T.M.A.N. meshing protocol; - CAN network layer; - Ceph Core library; - Networking core; - IPv4 networking; - IPv6 networking; - IUCV driver; - MAC80211 subsystem; - NET/ROM layer; - Network traffic control; - SoC Audio for Freescale CPUs drivers; (CVE-2024-40941, CVE-2024-42086, CVE-2024-41097, CVE-2024-40958, CVE-2024-41089, CVE-2024-40942, CVE-2024-40968, CVE-2024-40934, CVE-2024-40902, CVE-2024-42124, CVE-2023-52887, CVE-2024-42115, CVE-2024-41041, CVE-2024-39501, CVE-2024-40932, CVE-2024-42102, CVE-2024-40960, CVE-2024-39487, CVE-2024-39503, CVE-2024-40945, CVE-2024-40959, CVE-2024-40987, CVE-2024-40995, CVE-2024-40988, CVE-2024-42084, CVE-2024-40943, CVE-2024-42070, CVE-2024-40904, CVE-2024-41049, CVE-2024-41046, CVE-2024-39502, CVE-2024-42097, CVE-2024-42090, CVE-2024-42236, CVE-2024-42223, CVE-2024-42094, CVE-2024-41007, CVE-2024-42105, CVE-2024-41035, CVE-2024-41087, CVE-2024-42157, CVE-2024-39495, CVE-2024-36894, CVE-2024-40916, CVE-2024-39469, CVE-2024-40974, CVE-2024-42153, CVE-2024-36974, CVE-2024-42096, CVE-2024-42232, CVE-2024-40980, CVE-2024-41034, CVE-2024-42087, CVE-2024-42093, CVE-2024-41095, CVE-2024-42145, CVE-2024-42148, CVE-2023-52803, CVE-2024-39499, CVE-2024-42104, CVE-2024-42224, CVE-2024-37078, CVE-2024-42092, CVE-2024-39505, CVE-2024-38619, CVE-2024-42106, CVE-2024-40978, CVE-2024-41044, CVE-2024-42089, CVE-2024-40981, CVE-2024-42154, CVE-2024-36978, CVE-2024-42076, CVE-2024-40984, CVE-2024-42127, CVE-2024-42119, CVE-2024-40961, CVE-2024-39509, CVE-2024-42101, CVE-2024-40901, CVE-2024-40963, CVE-2024-40905, CVE-2024-39506, CVE-2024-40912, CVE-2024-41006) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS linux-image-5.4.0-1079-ibm 5.4.0-1079.84~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1115-raspi 5.4.0-1115.127~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1131-oracle 5.4.0-1131.140~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1132-aws 5.4.0-1132.142~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1136-gcp 5.4.0-1136.145~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1137-azure 5.4.0-1137.144~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-195-generic 5.4.0-195.215~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-195-lowlatency 5.4.0-195.215~18.04.1 Available with Ubuntu Pro linux-image-aws 5.4.0.1132.142~18.04.1 Available with Ubuntu Pro linux-image-azure 5.4.0.1137.144~18.04.1 Available with Ubuntu Pro linux-image-gcp 5.4.0.1136.145~18.04.1 Available with Ubuntu Pro linux-image-generic-hwe-18.04 5.4.0.195.215~18.04.1 Available with Ubuntu Pro linux-image-ibm 5.4.0.1079.84~18.04.1 Available with Ubuntu Pro linux-image-lowlatency-hwe-18.04 5.4.0.195.215~18.04.1 Available with Ubuntu Pro linux-image-oem 5.4.0.195.215~18.04.1 Available with Ubuntu Pro linux-image-oem-osp1 5.4.0.195.215~18.04.1 Available with Ubuntu Pro linux-image-oracle 5.4.0.1131.140~18.04.1 Available with Ubuntu Pro linux-image-raspi-hwe-18.04 5.4.0.1115.127~18.04.1 Available with Ubuntu Pro linux-image-snapdragon-hwe-18.04 5.4.0.195.215~18.04.1 Available with Ubuntu Pro linux-image-virtual-hwe-18.04 5.4.0.195.215~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7003-2 https://ubuntu.com/security/notices/USN-7003-1 CVE-2023-52803, CVE-2023-52887, CVE-2024-36894, CVE-2024-36974, CVE-2024-36978, CVE-2024-37078, CVE-2024-38619, CVE-2024-39469, CVE-2024-39487, CVE-2024-39495, CVE-2024-39499, CVE-2024-39501, CVE-2024-39502, CVE-2024-39503, CVE-2024-39505, CVE-2024-39506, CVE-2024-39509, CVE-2024-40901, CVE-2024-40902, CVE-2024-40904, CVE-2024-40905, CVE-2024-40912, CVE-2024-40916, CVE-2024-40932, CVE-2024-40934, CVE-2024-40941, CVE-2024-40942, CVE-2024-40943, CVE-2024-40945, CVE-2024-40958, CVE-2024-40959, CVE-2024-40960, CVE-2024-40961, CVE-2024-40963, CVE-2024-40968, CVE-2024-40974, CVE-2024-40978, CVE-2024-40980, CVE-2024-40981, CVE-2024-40984, CVE-2024-40987, CVE-2024-40988, CVE-2024-40995, CVE-2024-41006, CVE-2024-41007, CVE-2024-41034, CVE-2024-41035, CVE-2024-41041, CVE-2024-41044, CVE-2024-41046, CVE-2024-41049, CVE-2024-41087, CVE-2024-41089, CVE-2024-41095, CVE-2024-41097, CVE-2024-42070, CVE-2024-42076, CVE-2024-42084, CVE-2024-42086, CVE-2024-42087, CVE-2024-42089, CVE-2024-42090, CVE-2024-42092, CVE-2024-42093, CVE-2024-42094, CVE-2024-42096, CVE-2024-42097, CVE-2024-42101, CVE-2024-42102, CVE-2024-42104, CVE-2024-42105, CVE-2024-42106, CVE-2024-42115, CVE-2024-42119, CVE-2024-42124, CVE-2024-42127, CVE-2024-42145, CVE-2024-42148, CVE-2024-42153, CVE-2024-42154, CVE-2024-42157, CVE-2024-42223, CVE-2024-42224, CVE-2024-42232, CVE-2024-42236 . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5731-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso July 16, 2024 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : linux CVE ID : CVE-2023-52760 CVE-2024-25741 CVE-2024-27397 CVE-2024-36894 CVE-2024-36973 CVE-2024-36978 CVE-2024-37078 CVE-2024-38619 CVE-2024-39298 CVE-2024-39371 CVE-2024-39469 CVE-2024-39474 CVE-2024-39484 CVE-2024-39487 CVE-2024-39494 CVE-2024-39495 CVE-2024-39496 CVE-2024-39499 CVE-2024-39500 CVE-2024-39501 CVE-2024-39502 CVE-2024-39503 CVE-2024-39505 CVE-2024-39506 CVE-2024-39507 CVE-2024-39509 CVE-2024-39510 CVE-2024-40899 CVE-2024-40900 CVE-2024-40901 CVE-2024-40902 CVE-2024-40903 CVE-2024-40904 CVE-2024-40905 CVE-2024-40906 CVE-2024-40908 CVE-2024-40910 CVE-2024-40911 CVE-2024-40912 CVE-2024-40913 CVE-2024-40914 CVE-2024-40915 CVE-2024-40916 CVE-2024-40919 CVE-2024-40920 CVE-2024-40921 CVE-2024-40924 CVE-2024-40927 CVE-2024-40929 CVE-2024-40931 CVE-2024-40932 CVE-2024-40934 CVE-2024-40935 CVE-2024-40937 CVE-2024-40938 CVE-2024-40939 CVE-2024-40940 CVE-2024-40941 CVE-2024-40942 CVE-2024-40943 CVE-2024-40947 CVE-2024-40948 CVE-2024-40953 CVE-2024-40954 CVE-2024-40956 CVE-2024-40957 CVE-2024-40958 CVE-2024-40959 CVE-2024-40960 CVE-2024-40961 CVE-2024-40963 CVE-2024-40966 CVE-2024-40967 CVE-2024-40968 CVE-2024-40970 CVE-2024-40971 CVE-2024-40974 CVE-2024-40976 CVE-2024-40977 CVE-2024-40978 CVE-2024-40980 CVE-2024-40981 CVE-2024-40983 CVE-2024-40984 CVE-2024-40987 CVE-2024-40988 CVE-2024-40989 CVE-2024-40990 CVE-2024-40993 CVE-2024-40994 CVE-2024-40995 CVE-2024-40996 CVE-2024-41000 CVE-2024-41001 CVE-2024-41002 CVE-2024-41004 CVE-2024-41005 CVE-2024-41006 Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. For the stable distribution (bookworm), these problems have been fixed in version 6.1.99-1. We recommend that you upgrade your linux packages. For the detailed security status of linux please refer to its security tracker page at: https://security-tracker.debian.org/tracker/linux Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmaWylhfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND z0SMThAAiAanrQH+A4sTcRMZgwj521PKppx6+06c3jbqktG8XwQeOmaRrA1tgeyV ABahFSib/84PJtdqpW8+EHSJvGvxm9TKND98pPV6SjId2Ly7D+ARnfm6vIZzW/Sv WOZx0IU/So8qbZ7OjvKTfT+869yJ+MfRnYhdfuFTSJaZYehMyeizUMM5fjBX3dSf BBKcxR9w/RI2OgxiN45Q9+FrCCMS26RBTzRcb3pskw8741gzDyEostjjG+k5B8XJ /gEu10O3dGKtRV/1Uhkd5R4ACkcXHovox9EmA2vizGNfhf981cTeBT2ZIPIzstIY +/vkd4uUPi/OgIEBlkvcQx0UUaYctqDOnpvRqrLU9hwBkhlk0ueHxaHiBl9tf6L2 CDYb1BROY2A0eDSqCFugYMjzZDIbihFUS1Ly1TKDqea5xDTfiZcWa1u7bFp/LR2C 075lTh79e3GMdFceWfJk9SiPrFZnpCiokTmvbg4c0U7ac8ruXbAcV4i79exMTgwe VtUBFRufnLesmMmolGnqWSDA4Mf+w04MXJj3tU9N4MfC0bG0Y46IlNrabDOhUlns VdHvDLQOIMcFOl8rfKjFs+wTuUkRZUSFNQotG1WDiTezcQqbMS2eodVCB6Cq/51W L6oukVbbmncmYgYY3BGLTfn7ZxHUK3nhu/WmxtmwI4KsViLd8+Q= =KPq+ -----END PGP SIGNATURE-----

Trust: 3.06

sources: NVD: CVE-2024-38619 // JVNDB: JVNDB-2024-028578 // CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // PACKETSTORM: 181484 // PACKETSTORM: 181844 // PACKETSTORM: 181959 // PACKETSTORM: 179584

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 1.2

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350

AFFECTED PRODUCTS

vendor:linuxmodel:kernelscope:eqversion:6.10

Trust: 1.8

vendor:linuxmodel:kernelscope:gteversion:5.11

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:4.20

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.4.279

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.5

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.10.221

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:6.2

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:4.19.317

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:2.6.16

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.16

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.1.95

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.6.35

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.15.162

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:6.7

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.9.6

Trust: 1.0

vendor:linuxmodel:kernelscope:eqversion:5.5 that's all 5.10.221

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:4.20 that's all 5.4.279

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.11 that's all 5.15.162

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:6.7 that's all 6.9.6

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:6.2 that's all 6.6.35

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion: -

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:2.6.16 that's all 4.19.317

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.16 that's all 6.1.95

Trust: 0.8

vendor:siemensmodel:ruggedcom rst2428pscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xc-300/xr-300/xc-400/xr-500wg/xr-500 familyscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xcm-/xrm-/xch-/xrh-300 familyscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:ruggedcom rst2428pscope:ltversion:v3.2

Trust: 0.6

vendor:siemensmodel:scalance xc-300/xr-300/xc-400/xr-500wg/xr-500 familyscope:ltversion:v3.2

Trust: 0.6

vendor:siemensmodel:scalance xcm-/xrm-/xch-/xrh-300 familyscope:ltversion:v3.2

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // JVNDB: JVNDB-2024-028578 // NVD: CVE-2024-38619

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2024-38619
value: MEDIUM

Trust: 1.0

NVD: CVE-2024-38619
value: MEDIUM

Trust: 0.8

CNVD: CNVD-2025-19346
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-19350
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-19346
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

CNVD: CNVD-2025-19350
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

nvd@nist.gov: CVE-2024-38619
baseSeverity: MEDIUM
baseScore: 5.5
vectorString: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 3.6
version: 3.1

Trust: 1.0

NVD: CVE-2024-38619
baseSeverity: MEDIUM
baseScore: 5.5
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // JVNDB: JVNDB-2024-028578 // NVD: CVE-2024-38619

PROBLEMTYPE DATA

problemtype:CWE-908

Trust: 1.0

problemtype:Use of uninitialized resources (CWE-908) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2024-028578 // NVD: CVE-2024-38619

THREAT TYPE

local

Trust: 0.3

sources: PACKETSTORM: 181484 // PACKETSTORM: 181844 // PACKETSTORM: 181959

PATCH

title:Linux Kernel Archivesurl:https://git.kernel.org/stable/c/16637fea001ab3c8df528a8995b3211906165a30

Trust: 0.8

title:Patch for Multiple vulnerabilities in Siemens SINEC OS third-party componentsurl:https://www.cnvd.org.cn/patchInfo/show/723071

Trust: 0.6

title:Patch for Multiple vulnerabilities exist in third-party components of SIEMENS SINEC OS V3.2 and earlierurl:https://www.cnvd.org.cn/patchInfo/show/723061

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // JVNDB: JVNDB-2024-028578

EXTERNAL IDS

db:NVDid:CVE-2024-38619

Trust: 3.0

db:SIEMENSid:SSA-613116

Trust: 1.6

db:SIEMENSid:SSA-355557

Trust: 1.6

db:SIEMENSid:SSA-265688

Trust: 1.0

db:JVNid:JVNVU92169998

Trust: 0.8

db:ICS CERTid:ICSA-25-226-07

Trust: 0.8

db:JVNDBid:JVNDB-2024-028578

Trust: 0.8

db:CNVDid:CNVD-2025-19346

Trust: 0.6

db:CNVDid:CNVD-2025-19350

Trust: 0.6

db:PACKETSTORMid:181484

Trust: 0.1

db:PACKETSTORMid:181844

Trust: 0.1

db:PACKETSTORMid:181959

Trust: 0.1

db:PACKETSTORMid:179584

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // PACKETSTORM: 181484 // PACKETSTORM: 181844 // PACKETSTORM: 181959 // PACKETSTORM: 179584 // JVNDB: JVNDB-2024-028578 // NVD: CVE-2024-38619

REFERENCES

url:https://cert-portal.siemens.com/productcert/html/ssa-613116.html

Trust: 1.6

url:https://cert-portal.siemens.com/productcert/html/ssa-355557.html

Trust: 1.6

url:https://nvd.nist.gov/vuln/detail/cve-2024-38619

Trust: 1.2

url:https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html

Trust: 1.0

url:https://git.kernel.org/stable/c/e0aab7b07a9375337847c9d74a5ec044071e01c8

Trust: 1.0

url:https://git.kernel.org/stable/c/24bff7f714bdff97c2a75a0ff6a368cdf8ad5af4

Trust: 1.0

url:https://git.kernel.org/stable/c/2cc32639ec347e3365075b130f9953ef16cb13f1

Trust: 1.0

url:https://git.kernel.org/stable/c/16637fea001ab3c8df528a8995b3211906165a30

Trust: 1.0

url:https://git.kernel.org/stable/c/e0e2eec76920a133dd49a4fbe4656d83596a1361

Trust: 1.0

url:https://cert-portal.siemens.com/productcert/html/ssa-265688.html

Trust: 1.0

url:https://git.kernel.org/stable/c/3eee13ab67f65606faa66e0c3c729e4f514838fd

Trust: 1.0

url:https://git.kernel.org/stable/c/51fe16c058acb22f847e69bc598066ed0bcd5c15

Trust: 1.0

url:https://git.kernel.org/stable/c/f68820f1256b21466ff094dd97f243b7e708f9c1

Trust: 1.0

url:https://jvn.jp/vu/jvnvu92169998/

Trust: 0.8

url:https://www.cisa.gov/news-events/ics-advisories/icsa-25-226-07

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2024-36978

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-39487

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-40902

Trust: 0.3

url:https://ubuntu.com/security/notices/usn-7003-2

Trust: 0.3

url:https://ubuntu.com/security/notices/usn-7003-1

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-39469

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-39509

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2023-52803

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-39502

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-37078

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2024-39495

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-40934

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-40905

Trust: 0.2

url:https://ubuntu.com/security/notices/usn-7003-4

Trust: 0.2

url:https://ubuntu.com/security/notices/usn-7003-3

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-39506

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-36894

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2024-40942

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39501

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-36974

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39505

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-raspi/5.4.0-1116.128

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2023-52887

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39499

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-7003-5

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-40904

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-40941

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39474

Trust: 0.1

url:https://security-tracker.debian.org/tracker/linux

Trust: 0.1

url:https://www.debian.org/security/

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-36973

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39298

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39484

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2023-52760

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-25741

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-27397

Trust: 0.1

url:https://www.debian.org/security/faq

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2024-39371

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // CNVD: CNVD-2025-19350 // PACKETSTORM: 181484 // PACKETSTORM: 181844 // PACKETSTORM: 181959 // PACKETSTORM: 179584 // JVNDB: JVNDB-2024-028578 // NVD: CVE-2024-38619

CREDITS

Ubuntu

Trust: 0.3

sources: PACKETSTORM: 181484 // PACKETSTORM: 181844 // PACKETSTORM: 181959

SOURCES

db:CNVDid:CNVD-2025-19346
db:CNVDid:CNVD-2025-19350
db:PACKETSTORMid:181484
db:PACKETSTORMid:181844
db:PACKETSTORMid:181959
db:PACKETSTORMid:179584
db:JVNDBid:JVNDB-2024-028578
db:NVDid:CVE-2024-38619

LAST UPDATE DATE

2026-06-18T19:23:14.105000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-22T00:00:00
db:CNVDid:CNVD-2025-19350date:2025-08-22T00:00:00
db:JVNDBid:JVNDB-2024-028578date:2025-10-07T08:52:00
db:NVDid:CVE-2024-38619date:2026-05-12T12:16:55.533

SOURCES RELEASE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-12T00:00:00
db:CNVDid:CNVD-2025-19350date:2025-08-12T00:00:00
db:PACKETSTORMid:181484date:2024-09-12T14:51:31
db:PACKETSTORMid:181844date:2024-09-26T15:22:04
db:PACKETSTORMid:181959date:2024-10-02T13:47:21
db:PACKETSTORMid:179584date:2024-07-17T17:30:37
db:JVNDBid:JVNDB-2024-028578date:2025-10-07T00:00:00
db:NVDid:CVE-2024-38619date:2024-06-20T07:15:41.830