<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 16:26:26 +0000</lastBuildDate>
    <item>
      <title>ALSA-2024:4349 — Moderate: kernel security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2024:4349</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: bpftool, AlmaLinux:9: kernel, AlmaLinux:9: kernel-64k, AlmaLinux:9: kernel-64k-core, AlmaLinux:9: kernel-64k-debug, AlmaLinux:9: kernel-64k-debug-core, AlmaLinux:9: kernel-64k-debug-devel, AlmaLinux:9: kernel-64k-debug-devel-matched, AlmaLinux:9: kernel-64k-debug-modules, AlmaLinux:9: kernel-64k-debug-modules-core and 52 more&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: net/mlx5e: Fix operation precedence bug in port timestamping napi_poll context (CVE-2023-52626)
  * kernel: Bluetooth: Avoid potential use-after-free in hci_error_reset (CVE-2024-26801)
  * kernel: crypto: qat - resolve race condition during AER recovery (CVE-2024-26974)
  * kernel: xen-netfront: Add missing skb_mark_for_recycle (CVE-2024-27393)
  * kernel: net/mlx5e: fix a potential double-free in fs_any_create_groups (CVE-2023-52667)
  * kernel: smb: client: fix UAF in smb2_reconnect_server() (CVE-2024-35870)
  * kernel: net/mlx5: Properly link new fs rules into the tree (CVE-2024-35960)
  * kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly (CVE-2021-47400)&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* cifs - kernel panic with cifs_put_smb_ses (JIRA:AlmaLinux-28943)
  * BUG: unable to handle page fault for address: ff16bf752f593ff8 [almalinux-9.4.z] (JIRA:AlmaLinux-35672)
  * [HPE 9.4 Bug] Request merge of AMD address translation library patch series [almalinux-9.4.z] (JIRA:AlmaLinux-36220)
  * [AlmaLinux9] kernel BUG at lib/list_debug.c:51! [almalinux-9.4.z] (JIRA:AlmaLinux-36687)
  * ice: DPLL-related fixes [almalinux-9.4.z] (JIRA:AlmaLinux-36716)
  * CNB95: net/sched: update TC core to upstream v6.8 [almalinux-9.4.z] (JIRA:AlmaLinux-37641)
  * IPv6: SR: backport fixes from upstream [almalinux-9.4.z] (JIRA:AlmaLinux-37669)
  * [RFE] Backport tmpfs noswap moun…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: bpftool, AlmaLinux:9: kernel, AlmaLinux:9: kernel-64k, AlmaLinux:9: kernel-64k-core, AlmaLinux:9: kernel-64k-debug, AlmaLinux:9: kernel-64k-debug-core, AlmaLinux:9: kernel-64k-debug-devel, AlmaLinux:9: kernel-64k-debug-devel-matched, AlmaLinux:9: kernel-64k-debug-modules, AlmaLinux:9: kernel-64k-debug-modules-core and 52 more&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: net/mlx5e: Fix operation precedence bug in port timestamping napi_poll context (CVE-2023-52626)
  * kernel: Bluetooth: Avoid potential use-after-free in hci_error_reset (CVE-2024-26801)
  * kernel: crypto: qat - resolve race condition during AER recovery (CVE-2024-26974)
  * kernel: xen-netfront: Add missing skb_mark_for_recycle (CVE-2024-27393)
  * kernel: net/mlx5e: fix a potential double-free in fs_any_create_groups (CVE-2023-52667)
  * kernel: smb: client: fix UAF in smb2_reconnect_server() (CVE-2024-35870)
  * kernel: net/mlx5: Properly link new fs rules into the tree (CVE-2024-35960)
  * kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly (CVE-2021-47400)&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* cifs - kernel panic with cifs_put_smb_ses (JIRA:AlmaLinux-28943)
  * BUG: unable to handle page fault for address: ff16bf752f593ff8 [almalinux-9.4.z] (JIRA:AlmaLinux-35672)
  * [HPE 9.4 Bug] Request merge of AMD address translation library patch series [almalinux-9.4.z] (JIRA:AlmaLinux-36220)
  * [AlmaLinux9] kernel BUG at lib/list_debug.c:51! [almalinux-9.4.z] (JIRA:AlmaLinux-36687)
  * ice: DPLL-related fixes [almalinux-9.4.z] (JIRA:AlmaLinux-36716)
  * CNB95: net/sched: update TC core to upstream v6.8 [almalinux-9.4.z] (JIRA:AlmaLinux-37641)
  * IPv6: SR: backport fixes from upstream [almalinux-9.4.z] (JIRA:AlmaLinux-37669)
  * [RFE] Backport tmpfs noswap moun…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2024:4349</guid>
    </item>
    <item>
      <title>bdu:2024-03939</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-03939</link>
      <description>bdu:2024-03939</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-03939</guid>
    </item>
    <item>
      <title>BELL-CVE-2024-27393</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-27393</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-27393</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0375 — Une vulnérabilité a été découverte dans&lt;span class="textit"&gt; Xen&lt;/span&gt;.
Elle permet à un attaquant de provoquer un dén…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0375</link>
      <description>certfr-2024-avi-0375</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0375</guid>
    </item>
    <item>
      <title>EUVD-2026-345625</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-345625</link>
      <description>EUVD-2026-345625</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-345625</guid>
    </item>
    <item>
      <title>fkie_cve-2024-27393</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-27393</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;xen-netfront: Add missing skb_mark_for_recycle&lt;/p&gt;
&lt;p&gt;Notice that skb_mark_for_recycle() is introduced later than fixes tag in
commit 6a5bcd84e886 (&amp;#34;page_pool: Allow drivers to hint on SKB recycling&amp;#34;).&lt;/p&gt;
&lt;p&gt;It is believed that fixes tag were missing a call to page_pool_release_page()
between v5.9 to v5.14, after which is should have used skb_mark_for_recycle().
Since v6.6 the call page_pool_release_page() were removed (in
commit 535b9c61bdef (&amp;#34;net: page_pool: hide page_pool_release_page()&amp;#34;)
and remaining callers converted (in commit 6bfef2ec0172 (&amp;#34;Merge branch
&amp;#39;net-page_pool-remove-page_pool_release_page&amp;#39;&amp;#34;)).&lt;/p&gt;
&lt;p&gt;This leak became visible in v6.8 via commit dba1b8a7ab68 (&amp;#34;mm/page_pool: catch
page_pool memory leaks&amp;#34;).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;xen-netfront: Add missing skb_mark_for_recycle&lt;/p&gt;
&lt;p&gt;Notice that skb_mark_for_recycle() is introduced later than fixes tag in
commit 6a5bcd84e886 (&amp;#34;page_pool: Allow drivers to hint on SKB recycling&amp;#34;).&lt;/p&gt;
&lt;p&gt;It is believed that fixes tag were missing a call to page_pool_release_page()
between v5.9 to v5.14, after which is should have used skb_mark_for_recycle().
Since v6.6 the call page_pool_release_page() were removed (in
commit 535b9c61bdef (&amp;#34;net: page_pool: hide page_pool_release_page()&amp;#34;)
and remaining callers converted (in commit 6bfef2ec0172 (&amp;#34;Merge branch
&amp;#39;net-page_pool-remove-page_pool_release_page&amp;#39;&amp;#34;)).&lt;/p&gt;
&lt;p&gt;This leak became visible in v6.8 via commit dba1b8a7ab68 (&amp;#34;mm/page_pool: catch
page_pool memory leaks&amp;#34;).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-27393</guid>
    </item>
    <item>
      <title>GHSA-8r78-c2f2-82qm</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8r78-c2f2-82qm</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;xen-netfront: Add missing skb_mark_for_recycle&lt;/p&gt;
&lt;p&gt;Notice that skb_mark_for_recycle() is introduced later than fixes tag in
commit 6a5bcd84e886 (&amp;#34;page_pool: Allow drivers to hint on SKB recycling&amp;#34;).&lt;/p&gt;
&lt;p&gt;It is believed that fixes tag were missing a call to page_pool_release_page()
between v5.9 to v5.14, after which is should have used skb_mark_for_recycle().
Since v6.6 the call page_pool_release_page() were removed (in
commit 535b9c61bdef (&amp;#34;net: page_pool: hide page_pool_release_page()&amp;#34;)
and remaining callers converted (in commit 6bfef2ec0172 (&amp;#34;Merge branch
&amp;#39;net-page_pool-remove-page_pool_release_page&amp;#39;&amp;#34;)).&lt;/p&gt;
&lt;p&gt;This leak became visible in v6.8 via commit dba1b8a7ab68 (&amp;#34;mm/page_pool: catch
page_pool memory leaks&amp;#34;).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;xen-netfront: Add missing skb_mark_for_recycle&lt;/p&gt;
&lt;p&gt;Notice that skb_mark_for_recycle() is introduced later than fixes tag in
commit 6a5bcd84e886 (&amp;#34;page_pool: Allow drivers to hint on SKB recycling&amp;#34;).&lt;/p&gt;
&lt;p&gt;It is believed that fixes tag were missing a call to page_pool_release_page()
between v5.9 to v5.14, after which is should have used skb_mark_for_recycle().
Since v6.6 the call page_pool_release_page() were removed (in
commit 535b9c61bdef (&amp;#34;net: page_pool: hide page_pool_release_page()&amp;#34;)
and remaining callers converted (in commit 6bfef2ec0172 (&amp;#34;Merge branch
&amp;#39;net-page_pool-remove-page_pool_release_page&amp;#39;&amp;#34;)).&lt;/p&gt;
&lt;p&gt;This leak became visible in v6.8 via commit dba1b8a7ab68 (&amp;#34;mm/page_pool: catch
page_pool memory leaks&amp;#34;).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8r78-c2f2-82qm</guid>
    </item>
    <item>
      <title>gsd-2024-27393</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-27393</link>
      <description>gsd-2024-27393</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-27393</guid>
    </item>
    <item>
      <title>msrc_CVE-2024-27393 — xen-netfront: Add missing skb_mark_for_recycle</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2024-27393</link>
      <description>msrc_CVE-2024-27393</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2024-27393</guid>
    </item>
    <item>
      <title>OESA-2024-1706 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-1706</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP1: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
net/mlx5e: Fix use-after-free of encap entry in neigh update handler&#13;
&#13;
Function mlx5e_rep_neigh_update() wasn&amp;amp;apos;t updated to accommodate rtnl lock
removal from TC filter update path and properly handle concurrent encap
entry insertion/deletion which can lead to following use-after-free:&#13;
&#13;
 [23827.464923] ==================================================================
 [23827.469446] BUG: KASAN: use-after-free in mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.470971] Read of size 4 at addr ffff8881d132228c by task kworker/u20:6/21635
 [23827.472251]
 [23827.472615] CPU: 9 PID: 21635 Comm: kworker/u20:6 Not tainted 5.13.0-rc3+ #5
 [23827.473788] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014
 [23827.475639] Workqueue: mlx5e mlx5e_rep_neigh_update [mlx5_core]
 [23827.476731] Call Trace:
 [23827.477260]  dump_stack+0xbb/0x107
 [23827.477906]  print_address_description.constprop.0+0x18/0x140
 [23827.478896]  ? mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.479879]  ? mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.480905]  kasan_report.cold+0x7c/0xd8
 [23827.481701]  ? mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.482744]  kasan_check_range+0x145/0x1a0
 [23827.493112]  mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.494054]  ? mlx5e_tc_tun_encap_info_equal_ge…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP1: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
net/mlx5e: Fix use-after-free of encap entry in neigh update handler&#13;
&#13;
Function mlx5e_rep_neigh_update() wasn&amp;amp;apos;t updated to accommodate rtnl lock
removal from TC filter update path and properly handle concurrent encap
entry insertion/deletion which can lead to following use-after-free:&#13;
&#13;
 [23827.464923] ==================================================================
 [23827.469446] BUG: KASAN: use-after-free in mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.470971] Read of size 4 at addr ffff8881d132228c by task kworker/u20:6/21635
 [23827.472251]
 [23827.472615] CPU: 9 PID: 21635 Comm: kworker/u20:6 Not tainted 5.13.0-rc3+ #5
 [23827.473788] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014
 [23827.475639] Workqueue: mlx5e mlx5e_rep_neigh_update [mlx5_core]
 [23827.476731] Call Trace:
 [23827.477260]  dump_stack+0xbb/0x107
 [23827.477906]  print_address_description.constprop.0+0x18/0x140
 [23827.478896]  ? mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.479879]  ? mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.480905]  kasan_report.cold+0x7c/0xd8
 [23827.481701]  ? mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.482744]  kasan_check_range+0x145/0x1a0
 [23827.493112]  mlx5e_encap_take+0x72/0x140 [mlx5_core]
 [23827.494054]  ? mlx5e_tc_tun_encap_info_equal_ge…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-1706</guid>
    </item>
    <item>
      <title>RHSA-2024:4106 — Red Hat Security Advisory: kernel-rt security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:4106</link>
      <description>&lt;p&gt;kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly kernel: xen-netfront: Add missing skb_mark_for_recycle kernel: netfilter: nf_tables: use timestamp to check for set element timeout kernel: netfilter: nft_flow_offload: reset dst in route object after setting up flow kernel: smb: client: fix UAF in smb2_reconnect_server() kernel: net: ena: Fix incorrect descriptor free behavior kernel: net/mlx5: Properly link new fs rules into the tree kernel: octeontx2-af: avoid off-by-one read from userspace&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly kernel: xen-netfront: Add missing skb_mark_for_recycle kernel: netfilter: nf_tables: use timestamp to check for set element timeout kernel: netfilter: nft_flow_offload: reset dst in route object after setting up flow kernel: smb: client: fix UAF in smb2_reconnect_server() kernel: net: ena: Fix incorrect descriptor free behavior kernel: net/mlx5: Properly link new fs rules into the tree kernel: octeontx2-af: avoid off-by-one read from userspace&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:4106</guid>
    </item>
    <item>
      <title>RHSA-2024:4349 — Red Hat Security Advisory: kernel security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:4349</link>
      <description>&lt;p&gt;kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly kernel: net/mlx5e: Fix operation precedence bug in port timestamping napi_poll context kernel: net/mlx5e: fix a potential double-free in fs_any_create_groups kernel: Bluetooth: Avoid potential use-after-free in hci_error_reset kernel: crypto: qat - resolve race condition during AER recovery kernel: xen-netfront: Add missing skb_mark_for_recycle kernel: smb: client: fix UAF in smb2_reconnect_server() kernel: net/mlx5: Properly link new fs rules into the tree&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly kernel: net/mlx5e: Fix operation precedence bug in port timestamping napi_poll context kernel: net/mlx5e: fix a potential double-free in fs_any_create_groups kernel: Bluetooth: Avoid potential use-after-free in hci_error_reset kernel: crypto: qat - resolve race condition during AER recovery kernel: xen-netfront: Add missing skb_mark_for_recycle kernel: smb: client: fix UAF in smb2_reconnect_server() kernel: net/mlx5: Properly link new fs rules into the tree&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:4349</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:2008-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:2008-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:2008-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-27393</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-27393</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 105 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Add missing skb_mark_for_recycle Notice that skb_mark_for_recycle() is introduced later than fixes tag in commit 6a5bcd84e886 (&amp;#34;page_pool: Allow drivers to hint on SKB recycling&amp;#34;). It is believed that fixes tag were missing a call to page_pool_release_page() between v5.9 to v5.14, after which is should have used skb_mark_for_recycle(). Since v6.6 the call page_pool_release_page() were removed (in commit 535b9c61bdef (&amp;#34;net: page_pool: hide page_pool_release_page()&amp;#34;) and remaining callers converted (in commit 6bfef2ec0172 (&amp;#34;Merge branch &amp;#39;net-page_pool-remove-page_pool_release_page&amp;#39;&amp;#34;)). This leak became visible in v6.8 via commit dba1b8a7ab68 (&amp;#34;mm/page_pool: catch page_pool memory leaks&amp;#34;).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 105 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Add missing skb_mark_for_recycle Notice that skb_mark_for_recycle() is introduced later than fixes tag in commit 6a5bcd84e886 (&amp;#34;page_pool: Allow drivers to hint on SKB recycling&amp;#34;). It is believed that fixes tag were missing a call to page_pool_release_page() between v5.9 to v5.14, after which is should have used skb_mark_for_recycle(). Since v6.6 the call page_pool_release_page() were removed (in commit 535b9c61bdef (&amp;#34;net: page_pool: hide page_pool_release_page()&amp;#34;) and remaining callers converted (in commit 6bfef2ec0172 (&amp;#34;Merge branch &amp;#39;net-page_pool-remove-page_pool_release_page&amp;#39;&amp;#34;)). This leak became visible in v6.8 via commit dba1b8a7ab68 (&amp;#34;mm/page_pool: catch page_pool memory leaks&amp;#34;).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-27393</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1063 — Xen: Schwachstelle ermöglicht Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1063</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in Xen ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in Xen ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1063</guid>
    </item>
  </channel>
</rss>
