CVE-2025-24337
Lun, 20/01/2025 – 14:15
CVE-2025-24337
CVE-2025-24337
Lun, 20/01/2025 – 14:15
CVE-2025-24337
CVE-2025-21655
Lun, 20/01/2025 – 14:15
CVE-2025-21655
io_uring/eventfd: ensure io_eventfd_signal() defers another RCU period
io_eventfd_do_signal() is invoked from an RCU callback, but when
dropping the reference to the io_ev_fd, it calls io_eventfd_free()
directly if the refcount drops to zero. This isn't correct, as any
potential freeing of the io_ev_fd should be deferred another RCU grace
period.
Just call io_eventfd_put() rather than open-code the dec-and-test and
free, which will correctly defer it another RCU grace period.
CVE-2023-52923
Lun, 20/01/2025 – 11:15
CVE-2023-52923
netfilter: nf_tables: adapt set backend to use GC transaction API
Use the GC transaction API to replace the old and buggy gc API and the
busy mark approach.
No set elements are removed from async garbage collection anymore,
instead the _DEAD bit is set on so the set element is not visible from
lookup path anymore. Async GC enqueues transaction work that might be
aborted and retried later.
rbtree and pipapo set backends does not set on the _DEAD bit from the
sync GC path since this runs in control plane path where mutex is held.
In this case, set elements are deactivated, removed and then released
via RCU callback, sync GC never fails.
CVE-2025-0590
Lun, 20/01/2025 – 07:17
CVE-2025-0590
information leakage risk.
CVE-2025-0582
Lun, 20/01/2025 – 03:15
CVE-2025-0582
CVE-2025-0581
Lun, 20/01/2025 – 03:15
CVE-2025-0581
CVE-2025-0580
Lun, 20/01/2025 – 03:15
CVE-2025-0580
CVE-2025-0579
Lun, 20/01/2025 – 03:15
CVE-2025-0579
CVE-2024-13524
Lun, 20/01/2025 – 03:15
CVE-2024-13524
CVE-2025-0586
Lun, 20/01/2025 – 03:15
CVE-2025-0586