CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
Low
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
kernel: net: fix possible store tearing in neigh_periodic_work() (CVE-2023-52522)
kernel: fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats (CVE-2024-26686)
kernel: cgroup: cgroup_get_from_id() must check the looked-up kn is a directory (CVE-2022-48638)
kernel: nvme-tcp: fix UAF when detecting digest errors (CVE-2022-48686)
kernel: mptcp: ensure snd_nxt is properly initialized on connect (CVE-2024-36889)
kernel: wifi: mac80211: Avoid address calculations via out of bounds array indexing (CVE-2024-41071)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.