linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities
Zheng Wang discovered that the Broadcom FullMAC WLAN driver in the Linux kernel contained a race condition during device removal, leading to a use- after-free vulnerability. A physically proximate attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-47233) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Networking core; - IPv4 networking; - MAC80211 subsystem; - Tomoyo security module; (CVE-2024-26614, CVE-2023-52530, CVE-2024-26622)
02 / AFFECTED SOFTWARE
Affected packages
98 explicit affected versions
90 explicit affected versions
86 explicit affected versions
49 explicit affected versions
90 explicit affected versions
67 explicit affected versions
55 explicit affected versions
28 explicit affected versions
85 explicit affected versions
89 explicit affected versions
78 explicit affected versions
24 explicit affected versions
77 explicit affected versions
75 explicit affected versions
79 explicit affected versions
87 explicit affected versions
48 explicit affected versions
78 explicit affected versions
74 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Zheng Wang discovered that the Broadcom FullMAC WLAN driver in the Linux kernel contained a race condition during device removal, leading to a use- after-free vulnerability. A physically proximate attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-47233) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Networking core; - IPv4 networking; - MAC80211 subsystem; - Tomoyo security module; (CVE-2024-26614, CVE-2023-52530, CVE-2024-26622)
05 / REFERENCES