EulerOS Virtualization 2.11.1 : kernel (EulerOS-SA-2026-3424)

critical Nessus Plugin ID 348006

Synopsis

The remote EulerOS Virtualization host is missing multiple security updates.

Description

According to the versions of the kernel packages installed, the EulerOS Virtualization installation on the remote host is affected by the following vulnerabilities :

kernel:SUNRPC: fix a memleak in gss_import_v2_context(CVE-2023-52653)

apparmor: Fix null pointer deref when receiving skb during sock creation(CVE-2023-52889)

protect the fetch of -fd[fd] in do_dup2() from mispredictions(CVE-2024-42265)

tty: n_gsm: require CAP_NET_ADMIN to attach N_GSM0710 ldisc(CVE-2023-52880)

padata: Fix possible divide-by-0 panic in padata_mt_helper()(CVE-2024-43889)

dev/parport: fix the array out-of-bounds risk(CVE-2024-42301)

netfilter: ctnetlink: use helper function to calculate expect ID(CVE-2024-44944)

netns: Make get_net_ns() handle zero refcount net(CVE-2024-40958)

ipv6: fix possible UAF in ip6_finish_output2()(CVE-2024-44986)

kvm: s390: Reject memory region operations for ucontrol VMs(CVE-2024-43819)

scsi: qla2xxx: validate nvme_local_port correctly(CVE-2024-42286)

scsi: qla2xxx: During vport delete send async logout explicitly(CVE-2024-42289)

gpio: prevent potential speculation leaks in gpio_device_get_desc()(CVE-2024-44931)

ipv6: prevent possible NULL deref in fib6_nh_init()(CVE-2024-40961)

cgroup/cpuset: Prevent UAF in proc_cpuset_show()(CVE-2024-43853)

tracing: Fix overflow in get_free_elt()(CVE-2024-43890)

exec: Fix ToCToU between perm check and set-uid/gid usage(CVE-2024-43882)

drm/vmwgfx: Fix a deadlock in dma buf fence polling(CVE-2024-43863)

io_uring: lock overflowing for IOPOLL(CVE-2023-52903)

serial: core: check uartclk for zero to avoid divide by zero(CVE-2024-43893)

sysctl: always initialize i_uid/i_gid(CVE-2024-42312)

md/raid5: avoid BUG_ON() while continue reshape after reassembling(CVE-2024-43914)

memcg: protect concurrent access to mem_cgroup_idr(CVE-2024-43892)

scsi: qla2xxx: Fix for possible memory corruption(CVE-2024-42288)

dmaengine: idxd: Prevent use after free on completion memory(CVE-2022-48867)

x86/mtrr: Check if fixed MTRRs exist before saving them(CVE-2024-44948)

dma: fix call order in dmam_free_coherent(CVE-2024-43856)

block: initialize integrity buffer to zero before writing it to media(CVE-2024-43854)

media: xc2028: avoid use-after-free in load_firmware_cb()(CVE-2024-43900)

devres: Fix memory leakage caused by driver API devm_free_percpu()(CVE-2024-43871)

lib: objagg: Fix general protection fault(CVE-2024-43846)

xhci: Fix Panther point NULL pointer deref at full-speed re-enumeration(CVE-2024-45006)

kobject_uevent: Fix OOB access within zap_modalias_env()(CVE-2024-42292)

drm/client: fix null pointer dereference in drm_client_modeset_probe(CVE-2024-43894)

drm/qxl: Add check for drm_cvt_mode(CVE-2024-43829)

userfaultfd: fix checks for huge PMDs(CVE-2024-46787)

md: fix deadlock between mddev_suspend and flush bio(CVE-2024-43855)

udf: Avoid excessive partition lengths(CVE-2024-46777)

uio_hv_generic: Fix kernel NULL pointer dereference in hv_uio_rescind (CVE-2024-46739)

In the Linux kernel, the following vulnerability has been resolved:memcg_write_event_control(): fix a user-triggerable oops we are *not* guaranteed that anything past the terminating NUL is mapped (let alone initialized with anything sane).(CVE-2024-45021)

scsi: aacraid: Fix double-free on probe failure(CVE-2024-46673)

Squashfs: sanity check symbolic link size(CVE-2024-46744)

apparmor: fix possible NULL pointer dereference(CVE-2024-46721)

of/irq: Prevent device address out-of-bounds read in interrupt map walk(CVE-2024-46743)

PCI: Add missing bridge lock to pci_bus_lock()(CVE-2024-46750)

fix bitmap corruption on close_range() with CLOSE_RANGE_UNSHARE(CVE-2024-45025)

usb: typec: ucsi: Fix null pointer dereference in trace(CVE-2024-46719)

thunderbolt: Mark XDomain as unplugged when router is removed(CVE-2024-46702)

selinux,smack: don't bypass permissions check in inode_setsecctx hook(CVE-2024-46695)

VMCI: Fix use-after-free when removing resource in vmci_resource_remove()(CVE-2024-46738)

drm/amd/display: Stop amdgpu_dm initialize when link nums greater than max_links(CVE-2024-46816)

drm/amd/display: Check msg_id before processing transcation(CVE-2024-46814)

sch/ netem: fix use after free in netem_dequeue(CVE-2024-46800)

nvmet-tcp: fix kernel crash if commands allocation fails(CVE-2024-46737)

drm/amd/display: Check num_valid_sets before accessing reader_wm_sets[](CVE-2024-46815)

ice: Add netif_device_attach/detach into PF reset flow(CVE-2024-46770)

driver: iio: add missing checks on iio_info's callback access(CVE-2024-46715)

pktgen: use cpus_read_lock() in pg_net_init()(CVE-2024-46681)

drm/amd/display: Check link_index before accessing dc-links[](CVE-2024-46813)

drm/amd/display: Assign linear_pitch_alignment even for VM(CVE-2024-46732)

rtmutex: Drop rt_mutex::wait_lock before scheduling(CVE-2024-46829)

perf/aux: Fix AUX buffer serialization(CVE-2024-46713)

Input: MT - limit max slots(CVE-2024-45008)

SUNRPC: lock against -sock changing during sysfs read(CVE-2022-48816)

inet: inet_defrag: prevent sk release while still in use(CVE-2024-26921)

rtnetlink: Correct nested IFLA_VF_VLAN_LIST attribute validation(CVE-2024-36017)

xsk: validate user input for XDP_{UMEM|COMPLETION}_FILL_RING(CVE-2024-35976)

netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get()(CVE-2024-35898)

net: atlantic: eliminate double free in error handling logic(CVE-2023-52664)

In the Linux kernel, the following vulnerability has been resolved:USB: usbtmc: prevent kernel-usb- infoleak The syzbot reported a kernel-usb-infoleak in usbtmc_write, we need to clear the structure before filling fields.(CVE-2024-47671)

ELF: fix kernel.randomize_va_space double read(CVE-2024-46826)

vfs: Don't evict inode under the inode lru traversing context(CVE-2024-45003)

perf/x86/intel: Limit the period on Haswell(CVE-2024-46848)

platform/x86: panasonic-laptop: Fix SINF array out of bounds accesses(CVE-2024-46859)

arm64: acpi: Harden get_cpu_for_acpi_id() against missing CPU entry(CVE-2024-46822)

ethtool: fail closed if we can't get max channel used in indirection tables(CVE-2024-46834)

netem: fix return value if duplicate enqueue fails(CVE-2024-45016)

ethtool: check device is present when getting link settings(CVE-2024-46679)

In the Linux kernel, the following vulnerability has been resolved:iommu: Return right value in iommu_sva_bind_device() iommu_sva_bind_device() should return either a sva bond handle or an ERR_PTR value in error cases. Existing drivers (idxd and uacce) only check the return value with IS_ERR(). This could potentially lead to a kernel NULL pointer dereference issue if the function returns NULL instead of an error pointer. In reality, this doesn't cause any problems because iommu_sva_bind_device() only returns NULL when the kernel is not configured with CONFIG_IOMMU_SVA. In this case, iommu_dev_enable_feature(dev, IOMMU_DEV_FEAT_SVA) will return an error, and the device drivers won't call iommu_sva_bind_device() at all.(CVE-2024-40945)

xdp: fix invalid wait context of page_pool_destroy()(CVE-2024-43834)

mlxsw: spectrum_acl_erp: Fix object nesting warning(CVE-2024-43880)

virtio_net: Fix napi_skb_cache_put warning (CVE-2024-43835)

tcp_bpf: fix return value of tcp_bpf_sendmsg()(CVE-2024-46783)

drm/vmwgfx: Remove rcu locks from user resources(CVE-2022-48887)

bonding: fix xfrm real_dev null pointer dereference(CVE-2024-44989)

bonding: fix null pointer deref in bond_ipsec_offload_ok(CVE-2024-44990)

net: core: reject skb_copy(_expand) for fraglist GSO skbs(CVE-2024-36929)

block, bfq: fix possible UAF for bfqq-bic with merge chain(CVE-2024-47706)

xfrm6: check ip6_dst_idev() return value in xfrm6_get_saddr()(CVE-2024-40959)

ipvlan: Dont Use skb-sk in ipvlan_process_v{4,6}_outbound(CVE-2024-33621)

In the Linux kernel, the following vulnerability has been resolved:net: ena: Add validation for completion descriptors consistency Validate that `first` flag is set only for the first descriptor in multi-buffer packets. In case of an invalid descriptor, a reset will occur. A new reset reason for RX data corruption has been added.(CVE-2024-40999)

net: hns3: fix kernel crash problem in concurrent scenario (CVE-2024-39507)

net/mlx5: Fix bridge mode operations when there are no VFs(CVE-2024-46857)

KVM: arm64: Make ICC_*SGI*_EL1 undef in the absence of a vGICv3(CVE-2024-46707)

ipv6: prevent UAF in ip6_send_skb()(CVE-2024-44987)

net: hns3: fix a deadlock problem when config TC during resetting(CVE-2024-44995)

fsnotify: clear PARENT_WATCHED flags lazily(CVE-2024-47660)

sctp: Fix null-ptr-deref in reuseport_add_sock()(CVE-2024-44935)

bpf: Take return from set_memory_rox() into account with bpf_jit_binary_lock_ro()(CVE-2024-42067)

In the Linux kernel, the following vulnerability has been resolved: bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro() set_memory_ro() can fail, leaving memory unprotected. Check its return and take it into account as an error.(CVE-2024-42068)

fuse: Initialize beyond-EOF page contents before setting uptodate(CVE-2024-44947)

i2c: core: Run atomic i2c xfer when !preemptible(CVE-2023-52791)

nvme: avoid double free special payload(CVE-2024-41073)

drm/amd/display: Fix index out of bounds in degamma hardware format translation(CVE-2024-49894)

drivers: media: dvb-frontends/rtl2832: fix an out-of-bounds write error(CVE-2024-47698)

cifs: Fix buffer overflow when parsing NFS reparse points(CVE-2024-49996)

netfilter: nf_reject_ipv6: fix nf_reject_ip6_tcphdr_put()(CVE-2024-47685)

net: do not delay dst_entries_add() in dst_release()(CVE-2024-50036)

ppp: fix ppp_async_encode() illegal access(CVE-2024-50035)

ACPI: sysfs: validate return type of _STR method(CVE-2024-49860)

nbd: fix race between timeout and normal completion(CVE-2024-49855)

bonding: change ipsec_lock from spin lock to mutex(CVE-2024-46678)

ice: protect XDP configuration with a mutex(CVE-2024-46765)

sched/smt: Fix unbalance sched_smt_present dec/inc(CVE-2024-44958)

mm: avoid leaving partial pfn mappings around in error case(CVE-2024-47674)

blk_iocost: fix more out of bound shifts(CVE-2024-49933)

x86/ioapic: Handle allocation failures gracefully(CVE-2024-49927)

mm: call the security_mmap_file() LSM hook in remap_file_pages().(CVE-2024-47745)

ext4: avoid use-after-free in ext4_ext_show_leaf().(CVE-2024-49889)

tpm: Clean up TPM space after command failure(CVE-2024-49851)

sock_map: Add a cond_resched() in sock_hash_free().(CVE-2024-47710)

tcp: check skb is non-NULL in tcp_rto_delta_us().(CVE-2024-47684)

ext4: avoid OOB when system.data xattr changes underneath the filesystem(CVE-2024-47701)

ext4: fix double brelse() the buffer of the extents path(CVE-2024-49882)

fbdev: efifb: Register sysfs groups through driver core(CVE-2024-49925)

ext4: fix slab-use-after-free in ext4_split_extent_at().(CVE-2024-49884)

ext4: aovid use-after-free in ext4_ext_insert_extent().(CVE-2024-49883)

ACPI: PAD: fix crash in exit_round_robin().(CVE-2024-49935)

ext4: update orig_path in ext4_find_extent().(CVE-2024-49881)

padata: use integer wrap around to prevent deadlock on seq_nr overflow(CVE-2024-47739)

drm/amd/display: Check null pointer before try to access it(CVE-2024-49906)

netfilter: xtables: avoid NFPROTO_UNSPEC where needed(CVE-2024-50038)

drm/amd/display: Check null pointers before using dc-clk_mgr(CVE-2024-49907)

drivers: media: dvb-frontends/rtl2830: fix an out-of-bounds write error(CVE-2024-47697)

uprobes: fix kernel info leak via ''[uprobes]'' vma(CVE-2024-49975)

ext4: dax: fix overflowing extents beyond inode size when partially writing(CVE-2024-50015)

net/sched: accept TCA_STAB only for root qdisc(CVE-2024-50039)

block: fix potential invalid pointer dereference in blk_add_partition(CVE-2024-47705)

nfsd: map the EBADMSG to nfserr_io to avoid warning(CVE-2024-49875)

vhost/scsi: null-ptr-dereference in vhost_scsi_get_req().(CVE-2024-49863)

thermal: core: Reference count the zone in thermal_zone_get_by_id().(CVE-2024-50028)

bpf: Zero former ARG_PTR_TO_{LONG,INT} args in case of error(CVE-2024-47728)

net: mdio: fix unbalanced fwnode reference count in mdio_device_release().(CVE-2022-48961)

IB/core: Fix ib_cache_setup_one error flow cleanup(CVE-2024-47693)

bpf: Fix helper writes to read-only maps(CVE-2024-49861)

nfsd: return -EINVAL when namelen is 0(CVE-2024-47692)

gpiolib: fix memory leak in gpiochip_setup_dev().(CVE-2022-48975)

RDMA/cxgb4: Added NULL check for lookup_atid(CVE-2024-47749)

nfsd: call cache_put if xdr_reserve_space returns NULL(CVE-2024-47737)

igb: Do not bring the device up after non-fatal error(CVE-2024-50040)

jbd2: stop waiting for space when jbd2_cleanup_journal_tail() returns error(CVE-2024-49959)

crypto: hisilicon/qm - inject error before stopping queue(CVE-2024-47730)

firmware_loader: Block path traversal(CVE-2024-47742)

uprobe: avoid out-of-bounds memory access of fetching args(CVE-2024-50067)

scsi: lpfc: Validate hdwq pointers before dereferencing in reset/errata paths(CVE-2024-49891)

netfilter: br_netfilter: fix panic with metadata_dst skb(CVE-2024-50045)

slip: make slhc_remember() more robust against malicious packets(CVE-2024-50033)

ipv6: avoid possible NULL deref in rt6_uncached_list_flush_dev().(CVE-2024-47707)

icmp: change the order of rate limits(CVE-2024-47678)

serial: protect uart_port_dtr_rts() in uart_shutdown() too(CVE-2024-50058)

NFSv4: Prevent NULL-pointer dereference in nfs42_complete_copies().(CVE-2024-50046)

ACPI: battery: Fix possible crash when unregistering a battery hook(CVE-2024-49955)

efistub/tpm: Use ACPI reclaim memory for event log to avoid corruption(CVE-2024-49858)

smb: client: fix UAF in async decryption(CVE-2024-50047)

lib/generic-radix-tree.c: Fix rare race in __genradix_ptr_alloc().(CVE-2024-47668)

net: Fix an unsafe loop on the list(CVE-2024-50024)

vfs: fix race between evice_inodes() and find_inode()iput().(CVE-2024-47679)

io_uring: check if we need to reschedule during overflow flush(CVE-2024-50060)

ext4: drop ppath from ext4_ext_replay_update_ex() to avoid double-free(CVE-2024-49983)

ext4: fix access to uninitialised lock in fc replay path(CVE-2024-50014)

ext4: fix timer use-after-free on failed mount(CVE-2024-49960)

ext4: fix i_data_sem unlock order in ext4_ind_migrate().(CVE-2024-50006)

bpf: Prevent tail call between progs attached to different hooks(CVE-2024-50063)

NFSD: Limit the number of concurrent async COPY operations(CVE-2024-49974)

static_call: Handle module init failure correctly in static_call_del_module().(CVE-2024-50002)

blk-rq-qos: fix crash on rq_qos_wait vs. rq_qos_wake_function race(CVE-2024-50082)

drm/amd/display: Initialize denominators' default to 1(CVE-2024-49899)

x86/bugs: Use code segment selector for VERW operand(CVE-2024-50072)

parport: Proper fix for array out-of-bounds access(CVE-2024-50074)

gso: fix udp gso fraglist segmentation after pull from frag_list(CVE-2024-49978)

drm/amd/display: Skip wbscl_set_scaler_filter if filter is null(CVE-2024-46714)

net/mlx5: Fix error path in multi-packet WQE transmit(CVE-2024-50001)

fs/inode: Prevent dump_mapping() accessing invalid dentry.d_name.name(CVE-2024-49934)

resource: fix region_intersects() vs add_memory_driver_managed().(CVE-2024-49878)

platform/x86: ISST: Fix the KASAN report slab-out-of-bounds bug(CVE-2024-49886)

net: add more sanity checks to qdisc_pkt_len_init().(CVE-2024-49948)

RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_flush_dependency(CVE-2024-47696)

net: avoid potential underflow in qdisc_pkt_len_init() with UFO(CVE-2024-49949)

smb: client: fix OOBs when building SMB2_IOCTL request(CVE-2024-50151)

l2tp: prevent possible tunnel refcount underflow(CVE-2024-49940)

iommu/vt-d: Fix double list_add when enabling VMD in scalable mode(CVE-2022-48916)

tty: n_gsm: Fix use-after-free in gsm_cleanup_mux(CVE-2024-50073)

arm64: probes: Remove broken LDR (literal) uprobe support(CVE-2024-50099)

static_call: Replace pointless WARN_ON() in static_call_module_notify().(CVE-2024-49954)

tracing: Consider the NULL character when validating the event length(CVE-2024-50131)

posix-clock: Fix missing timespec64 check in pc_clock_settime().(CVE-2024-50195)

xfrm: validate new SA's prefixlen using SA family when sel.family is unset(CVE-2024-50142)

ceph: remove the incorrect Fw reference check when dirtying pages(CVE-2024-50179)

RDMA/mad: Improve handling of timed out WRs of mad agent(CVE-2024-50095)

irqchip/gic-v4: Don't allow a VMOVP on a dying VPE(CVE-2024-50192)

bpf: Use raw_spinlock_t in ringbuf(CVE-2024-50138)

KVM: x86: Acquire kvm-srcu when handling KVM_SET_VCPU_EVENTS(CVE-2024-46830)

x86/sgx: Fix deadlock in SGX NUMA node search(CVE-2024-49856)

nvme-pci: fix race condition between reset and nvme_dev_disable().(CVE-2024-50135)

NFSD: Initialize struct nfsd4_copy earlier(CVE-2024-50241)

mm/swapfile: skip HugeTLB pages for unuse_vma(CVE-2024-50199)

netfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6().(CVE-2024-50256)

net: hns3: fix kernel crash when uninstalling driver(CVE-2024-50296)

sctp: set sk_state back to CLOSED if autobind fails in sctp_listen_start(CVE-2024-49944)

net: fix crash when config small gso_max_size/gso_ipv4_max_size(CVE-2024-50258)

bpf: Fix out-of-bounds write in trie_get_next_key().(CVE-2024-50262)

tcp/dccp: Don't use timer_pending() in reqsk_queue_unlink().(CVE-2024-50154)

netfilter: nft_payload: sanitize offset and length before calling skb_checksum().(CVE-2024-50251)

be2net: fix potential memory leak in be_xmit().(CVE-2024-50167)

bpf: support non-r10 register spill/fill to/from stack in precision tracking(CVE-2023-52920)

udf: fix uninit-value use in udf_get_fileshortad(CVE-2024-50143)

RDMA/bnxt_re: Add a check for memory allocation(CVE-2024-50209)

netfilter: nf_tables: prevent nf_skb_duplicated corruption(CVE-2024-49952)

tpm: Lock TPM chip in tpm_pm_suspend() first(CVE-2024-53085)

io_uring/rw: fix missing NOWAIT check for O_DIRECT start write(CVE-2024-53052)

net: missing check virtio(CVE-2024-43817)

nfs: Fix KMSAN warning in decode_getfattr_attrs().(CVE-2024-53066)

KVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs from memory(CVE-2024-50115)

security/keys: fix slab-out-of-bounds in key_task_permission(CVE-2024-50301)

RDMA/bnxt_re: Fix a bug while setting up Level-2 PBL pages(CVE-2024-50208)

media: av7110: fix a spectre vulnerability(CVE-2024-50289)

bpf: Check validity of link-type in bpf_link_show_fdinfo().(CVE-2024-53099)

filemap: Fix bounds checking in filemap_read().(CVE-2024-50272)

sctp: properly validate chunk size in sctp_sf_ootb().(CVE-2024-50299)

arm64: probes: Fix uprobes for big-endian kernels(CVE-2024-50194)

usb: typec: altmode should keep reference to parent(CVE-2024-50150)

media: dvbdev: prevent the risk of out of memory access(CVE-2024-53063)

HID: core: zero-initialize the report buffer(CVE-2024-50302)

i40e: fix race condition by adding filter's intermediate sync state(CVE-2024-53088)

ipv4: ip_tunnel: Fix suspicious RCU usage warning in ip_tunnel_find().(CVE-2024-50304)

mm/thp: fix deferred split unqueue naming and locking(CVE-2024-53079)

vsock/virtio: Initialization of the dangling pointer occurring in vsk-trans(CVE-2024-50264)

dm cache: fix potential out-of-bounds access on the first resume(CVE-2024-50278)

net/sched: stop qdisc_tree_reduce_backlog on TC_H_ROOT(CVE-2024-53057)

dm cache: fix out-of-bounds access to the dirty bitset when resizing(CVE-2024-50279)

USB: serial: io_edgeport: fix use after free in debug printk(CVE-2024-50267)

mm: resolve faulty mmap_region() error path behaviour(CVE-2024-53096)

media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format(CVE-2024-53104)

dm cache: fix flushing uninitialized delayed_work on cache_ctr error(CVE-2024-50280)

smb: client: Fix use-after-free of network namespace.(CVE-2024-53095)

NFSD: Never decrement pending_async_copies on error(CVE-2024-53073)

initramfs: avoid filename buffer overrun(CVE-2024-53142)

netfilter: ipset: add missing range check in bitmap_ip_uadt(CVE-2024-53141)

net/mlx5: fs, lock FTE when checking if active(CVE-2024-53121)

virtio/vsock: Fix accept_queue memory leak(CVE-2024-53119)

dmaengine: idxd: Let probe fail when workqueue cannot be enabled(CVE-2022-48868)

net: fix data-races around sk-sk_forward_alloc(CVE-2024-53124)

nvme-multipath: defer partition scanning(CVE-2024-53093)

bpf: sync_linked_regs() must preserve subreg_def(CVE-2024-53125)

KVM: VMX: Bury Intel PT virtualization (guest/host mode) behind CONFIG_BROKEN(CVE-2024-53135)

netlink: terminate outstanding dump on socket close(CVE-2024-53140)

media: ts2020: fix null-ptr-deref in ts2020_probe().(CVE-2024-56574)

drm/amd/display: Fix out-of-bounds access in 'dcn21_link_encoder_create'(CVE-2024-56608)

ftrace: Fix regression with module command in stack_trace_filter(CVE-2024-56569)

scsi: qedf: Fix a possible memory leak in qedf_alloc_and_init_sb().(CVE-2024-56748)

ovl: Filter invalid inodes with missing lookup function(CVE-2024-56570)

smb: client: fix NULL ptr deref in crypto_aead_setkey().(CVE-2024-53185)

vfio/pci: Properly hide first-in-list PCIe extended capability(CVE-2024-53214)

bpf: fix OOB devmap writes when deleting elemen(CVE-2024-56615)

io_uring: check if iowq is killed before queuing(CVE-2024-56709)

leds: class: Protect brightness_show() with led_cdev-led_access mutex(CVE-2024-56587)

io_uring: check for overflows in io_pin_pages(CVE-2024-53187)

RDMA/mlx5: Move events notifier registration to be after device registration(CVE-2024-53224)

scsi: sg: Fix slab-use-after-free read in sg_release()(CVE-2024-56631)

bpf, sockmap: Fix race between element replace and close()(CVE-2024-56664)

net: inet: do not leave a dangling sk pointer in inet_create().(CVE-2024-56601)

tipc: Fix use-after-free of kernel socket in cleanup_bearer().(CVE-2024-56642)

sunrpc: clear XPRT_SOCK_UPD_TIMEOUT when reset transport(CVE-2024-56688)

ipv6: Fix soft lockups in fib6_select_path under high next hop churn(CVE-2024-56703)

rtc: check if __rtc_read_time was successful in rtc_timer_do_work()(CVE-2024-56739)

mm/mempolicy: fix migrate_to_node() assuming there is at least one VMA in a MM(CVE-2024-56611)

virtiofs: use pages instead of pointer for kernel direct IO(CVE-2024-53219)

PCI: Fix use-after-free of slot-bus on hot remove(CVE-2024-53194)

io_uring/tctx: work around xa_store() allocation error issue(CVE-2024-56584)

SUNRPC: make sure cache entry active before cache_show(CVE-2024-53174)

tcp_bpf: Fix the sk_mem_uncharge logic in tcp_bpf_sendmsg(CVE-2024-56633)

firmware: arm_scpi: Check the DVFS OPP count returned by the firmware(CVE-2024-53157)

crypto: pcrypt - Call crypto layer directly when padata_do_parallel() return -EBUSY(CVE-2024-56690)

smb: client: fix use-after-free of signing key(CVE-2024-53179)

quota: flush quota_release_work upon quota writeback(CVE-2024-56780)

netfilter: x_tables: fix LED ID check in led_tg_check().(CVE-2024-56650)

tracing: Prevent bad count for tracing_cpumask_write(CVE-2024-56763)

media: dvb-frontends: dib3000mb: fix uninit-value in dib3000_write_reg(CVE-2024-56769)

nvme-pci: fix freeing of the HMB descriptor table(CVE-2024-56756)

net: defer final 'struct net' free in netns dismantle(CVE-2024-56658)

blk-cgroup: Fix UAF in blkcg_unpin_online().(CVE-2024-56672)

acpi: nfit: vmalloc-out-of-bounds Read in acpi_nfit_ctl(CVE-2024-56662)

hv_sock: Initializing vsk-trans to NULL to prevent a dangling pointer(CVE-2024-53103)

net: Fix icmp host relookup triggering ip_rt_bug(CVE-2024-56647)

NFSD: Prevent a potential integer overflow(CVE-2024-53146)

scsi: qedi: Fix a possible memory leak in qedi_alloc_and_init_sb()(CVE-2024-56747)

ipv6: release nexthop on device removal(CVE-2024-56751)

bpf: Call free_htab_elem() after htab_unlock_bucket().(CVE-2024-56592)

RDMA/hns: Fix cpu stuck caused by printings during reset(CVE-2024-56722)

scsi: qla2xxx: Fix use after free on unload(CVE-2024-56623)

scsi: hisi_sas: Create all dump files during debugfs initialization(CVE-2024-56588)

drm/modes: Avoid divide by zero harder in drm_mode_vrefresh().(CVE-2024-56369)

NFSv4.0: Fix a use-after-free problem in the asynchronous open()(CVE-2024-53173)

af_packet: avoid erroring out after sock_init_data() in packet_create().(CVE-2024-56606)

net: inet6: do not leave a dangling sk pointer in inet6_create().(CVE-2024-56600)

wifi: brcmfmac: Fix oops due to NULL pointer dereference in brcmf_sdiod_sglist_rw().(CVE-2024-56593)

bpf, sockmap: Several fixes to bpf_msg_pop_data(CVE-2024-56720)

xsk: fix OOB map writes when deleting elements(CVE-2024-56614)

netdevsim: prevent bad user input in nsim_dev_health_break_write().(CVE-2024-56716)

nfsd: fix nfs4_openowner leak when concurrent nfsd4_open occur(CVE-2024-56779)

nvme-rdma: unquiesce admin_q before destroy it(CVE-2024-49569)

net/sched: netem: account for backlog updates from child qdisc(CVE-2024-56770)

fs: relax assertions on failure to encode file handles(CVE-2024-57924)

bpf: Prevent tailcall infinite loop caused by freplace(CVE-2024-47794)

netfilter: IDLETIMER: Fix for possible ABBA deadlock(CVE-2024-54683)

scsi: megaraid_sas: Fix for a potential deadlock(CVE-2024-57807)

Drivers: hv: util: Avoid accessing a ringbuffer not initialized yet(CVE-2024-55916)

mm: hugetlb: independent PMD page table shared count(CVE-2024-57883)

arm64: ptrace: fix partial SETREGSET for NT_ARM_TAGGED_ADDR_CTRL(CVE-2024-57874)

drm/dp_mst: Fix resetting msg rx state after topology removal(CVE-2024-57876)

ceph: give up on paths longer than PATH_MAX(CVE-2024-53685)

mm: vmscan: account for free pages to prevent infinite Loop in throttle_direct_reclaim().(CVE-2024-57884)

workqueue: Do not warn when cancelling WQ_MEM_RECLAIM work from !WQ_MEM_RECLAIM worker(CVE-2024-57888)

virtio-blk: don't keep queue frozen during system suspend(CVE-2024-57946)

KVM: arm64: Get rid of userspace_irqchip_in_use(CVE-2024-53195)

netfilter: nf_set_pipapo: fix initial map fill(CVE-2024-57947)

sunrpc: fix one UAF issue caused by sunrpc kernel tcp socket(CVE-2024-53168)

net: restrict SO_REUSEPORT to inet sockets(CVE-2024-57903)

bpf: Fix bpf_sk_select_reuseport() memory leak(CVE-2025-21683)

selinux: ignore unknown extended permissions(CVE-2024-57931)

pinmux: Use sequential access to access desc-pinmux data(CVE-2024-47141)

drm/dp_mst: Ensure mst_primary pointer is valid in drm_dp_mst_handle_up_req().(CVE-2024-57798)

RDMA/uverbs: Prevent integer overflow issue(CVE-2024-57890)

dlm: fix possible lkb_resource null dereference(CVE-2024-47809)

net/sctp: Prevent autoclose integer overflow in sctp_association_init().(CVE-2024-57938)

iommu/arm-smmu: Defer probe of clients after smmu device bound ...

Please note that the description has been truncated due to length. Please refer to vendor advisory for the full description.

Tenable has extracted the preceding description block directly from the EulerOS Virtualization kernel security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected kernel packages.

See Also

http://www.nessus.org/u?ae5902aa

Plugin Details

Severity: Critical

ID: 348006

File Name: EulerOS_SA-2026-3424.nasl

Version: 1.1

Type: Local

Published: 9/18/2026

Updated: 9/18/2026

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.5

Percentile: 99.87

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 8.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-23112

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 9.4

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:huawei:euleros:uvp:2.11.1, p-cpe:/a:huawei:euleros:bpftool, p-cpe:/a:huawei:euleros:kernel-abi-stablelists, p-cpe:/a:huawei:euleros:kernel-tools-libs, p-cpe:/a:huawei:euleros:kernel-tools, p-cpe:/a:huawei:euleros:kernel, p-cpe:/a:huawei:euleros:python3-perf

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/EulerOS/release, Host/EulerOS/rpm-list, Host/EulerOS/uvp_version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/16/2026

Vulnerability Publication Date: 11/4/2020

CISA Known Exploited Vulnerability Due Dates: 2/26/2025, 3/25/2025, 9/25/2025

Reference Information

CVE: CVE-2022-21546, CVE-2022-48816, CVE-2022-48827, CVE-2022-48867, CVE-2022-48868, CVE-2022-48887, CVE-2022-48916, CVE-2022-48961, CVE-2022-48975, CVE-2022-49046, CVE-2022-49063, CVE-2022-49072, CVE-2022-49124, CVE-2022-49134, CVE-2022-49135, CVE-2022-49157, CVE-2022-49158, CVE-2022-49159, CVE-2022-49160, CVE-2022-49190, CVE-2022-49215, CVE-2022-49226, CVE-2022-49266, CVE-2022-49325, CVE-2022-49390, CVE-2022-49443, CVE-2022-49513, CVE-2022-49534, CVE-2022-49535, CVE-2022-49536, CVE-2022-49546, CVE-2022-49557, CVE-2022-49563, CVE-2022-49564, CVE-2022-49566, CVE-2022-49579, CVE-2022-49610, CVE-2022-49622, CVE-2022-49630, CVE-2022-49632, CVE-2022-49647, CVE-2022-49651, CVE-2022-49722, CVE-2022-49743, CVE-2022-49783, CVE-2022-49803, CVE-2022-49822, CVE-2022-49829, CVE-2022-49837, CVE-2022-49889, CVE-2022-49932, CVE-2022-49938, CVE-2022-49967, CVE-2022-49973, CVE-2022-50053, CVE-2022-50098, CVE-2022-50100, CVE-2022-50116, CVE-2022-50159, CVE-2022-50167, CVE-2022-50224, CVE-2022-50230, CVE-2022-50232, CVE-2022-50255, CVE-2022-50267, CVE-2022-50304, CVE-2022-50306, CVE-2022-50323, CVE-2022-50350, CVE-2022-50390, CVE-2022-50404, CVE-2022-50428, CVE-2022-50472, CVE-2022-50493, CVE-2022-50500, CVE-2022-50516, CVE-2022-50554, CVE-2022-50583, CVE-2022-50635, CVE-2022-50705, CVE-2022-50720, CVE-2022-50764, CVE-2022-50772, CVE-2023-52653, CVE-2023-52664, CVE-2023-52791, CVE-2023-52880, CVE-2023-52889, CVE-2023-52903, CVE-2023-52920, CVE-2023-52927, CVE-2023-53008, CVE-2023-53010, CVE-2023-53039, CVE-2023-53068, CVE-2023-53091, CVE-2023-53093, CVE-2023-53105, CVE-2023-53146, CVE-2023-53148, CVE-2023-53150, CVE-2023-53165, CVE-2023-53171, CVE-2023-53174, CVE-2023-53178, CVE-2023-53198, CVE-2023-53201, CVE-2023-53215, CVE-2023-53217, CVE-2023-53220, CVE-2023-53221, CVE-2023-53241, CVE-2023-53245, CVE-2023-53250, CVE-2023-53254, CVE-2023-53272, CVE-2023-53280, CVE-2023-53282, CVE-2023-53286, CVE-2023-53292, CVE-2023-53313, CVE-2023-53322, CVE-2023-53331, CVE-2023-53335, CVE-2023-53338, CVE-2023-53343, CVE-2023-53347, CVE-2023-53393, CVE-2023-53395, CVE-2023-53397, CVE-2023-53401, CVE-2023-53421, CVE-2023-53432, CVE-2023-53438, CVE-2023-53451, CVE-2023-53454, CVE-2023-53456, CVE-2023-53461, CVE-2023-53473, CVE-2023-53476, CVE-2023-53480, CVE-2023-53488, CVE-2023-53491, CVE-2023-53499, CVE-2023-53509, CVE-2023-53512, CVE-2023-53521, CVE-2023-53530, CVE-2023-53539, CVE-2023-53546, CVE-2023-53548, CVE-2023-53577, CVE-2023-53581, CVE-2023-53586, CVE-2023-53593, CVE-2023-53597, CVE-2023-53606, CVE-2023-53615, CVE-2023-53622, CVE-2023-53635, CVE-2023-53647, CVE-2023-53659, CVE-2023-53661, CVE-2023-53675, CVE-2023-53676, CVE-2023-53680, CVE-2023-53684, CVE-2023-53685, CVE-2023-53696, CVE-2023-53712, CVE-2023-53726, CVE-2023-53794, CVE-2023-53815, CVE-2023-53840, CVE-2023-53841, CVE-2023-53850, CVE-2023-53856, CVE-2023-53867, CVE-2023-53989, CVE-2023-53998, CVE-2023-54000, CVE-2023-54014, CVE-2023-54019, CVE-2023-54048, CVE-2023-54066, CVE-2023-54086, CVE-2023-54093, CVE-2023-54145, CVE-2023-54148, CVE-2023-54177, CVE-2023-54179, CVE-2023-54181, CVE-2023-54207, CVE-2023-54219, CVE-2023-54227, CVE-2023-54263, CVE-2023-54266, CVE-2023-54271, CVE-2023-54282, CVE-2023-54284, CVE-2023-54289, CVE-2023-54299, CVE-2023-54312, CVE-2023-54314, CVE-2023-54315, CVE-2023-54322, CVE-2023-7324, CVE-2024-21823, CVE-2024-2201, CVE-2024-26629, CVE-2024-26921, CVE-2024-33621, CVE-2024-35898, CVE-2024-35976, CVE-2024-36017, CVE-2024-36357, CVE-2024-36929, CVE-2024-39507, CVE-2024-40927, CVE-2024-40945, CVE-2024-40958, CVE-2024-40959, CVE-2024-40961, CVE-2024-40999, CVE-2024-41073, CVE-2024-42067, CVE-2024-42068, CVE-2024-42265, CVE-2024-42276, CVE-2024-42286, CVE-2024-42288, CVE-2024-42289, CVE-2024-42292, CVE-2024-42301, CVE-2024-42312, CVE-2024-43817, CVE-2024-43819, CVE-2024-43829, CVE-2024-43834, CVE-2024-43835, CVE-2024-43846, CVE-2024-43853, CVE-2024-43854, CVE-2024-43855, CVE-2024-43856, CVE-2024-43863, CVE-2024-43867, CVE-2024-43871, CVE-2024-43880, CVE-2024-43882, CVE-2024-43889, CVE-2024-43890, CVE-2024-43892, CVE-2024-43893, CVE-2024-43894, CVE-2024-43900, CVE-2024-43914, CVE-2024-44931, CVE-2024-44935, CVE-2024-44944, CVE-2024-44947, CVE-2024-44948, CVE-2024-44958, CVE-2024-44986, CVE-2024-44987, CVE-2024-44989, CVE-2024-44990, CVE-2024-44995, CVE-2024-45003, CVE-2024-45006, CVE-2024-45008, CVE-2024-45016, CVE-2024-45021, CVE-2024-45025, CVE-2024-46673, CVE-2024-46678, CVE-2024-46679, CVE-2024-46681, CVE-2024-46695, CVE-2024-46702, CVE-2024-46707, CVE-2024-46713, CVE-2024-46714, CVE-2024-46715, CVE-2024-46719, CVE-2024-46721, CVE-2024-46732, CVE-2024-46737, CVE-2024-46738, CVE-2024-46739, CVE-2024-46743, CVE-2024-46744, CVE-2024-46750, CVE-2024-46765, CVE-2024-46770, CVE-2024-46777, CVE-2024-46783, CVE-2024-46787, CVE-2024-46800, CVE-2024-46813, CVE-2024-46814, CVE-2024-46815, CVE-2024-46816, CVE-2024-46822, CVE-2024-46826, CVE-2024-46829, CVE-2024-46830, CVE-2024-46834, CVE-2024-46848, CVE-2024-46857, CVE-2024-46859, CVE-2024-47141, CVE-2024-47660, CVE-2024-47668, CVE-2024-47671, CVE-2024-47674, CVE-2024-47678, CVE-2024-47679, CVE-2024-47684, CVE-2024-47685, CVE-2024-47692, CVE-2024-47693, CVE-2024-47696, CVE-2024-47697, CVE-2024-47698, CVE-2024-47701, CVE-2024-47705, CVE-2024-47706, CVE-2024-47707, CVE-2024-47710, CVE-2024-47728, CVE-2024-47730, CVE-2024-47737, CVE-2024-47739, CVE-2024-47742, CVE-2024-47745, CVE-2024-47749, CVE-2024-47794, CVE-2024-47809, CVE-2024-49569, CVE-2024-49851, CVE-2024-49855, CVE-2024-49856, CVE-2024-49858, CVE-2024-49860, CVE-2024-49861, CVE-2024-49863, CVE-2024-49875, CVE-2024-49878, CVE-2024-49881, CVE-2024-49882, CVE-2024-49883, CVE-2024-49884, CVE-2024-49886, CVE-2024-49889, CVE-2024-49891, CVE-2024-49894, CVE-2024-49899, CVE-2024-49906, CVE-2024-49907, CVE-2024-49925, CVE-2024-49927, CVE-2024-49933, CVE-2024-49934, CVE-2024-49935, CVE-2024-49940, CVE-2024-49944, CVE-2024-49948, CVE-2024-49949, CVE-2024-49952, CVE-2024-49954, CVE-2024-49955, CVE-2024-49959, CVE-2024-49960, CVE-2024-49974, CVE-2024-49975, CVE-2024-49978, CVE-2024-49983, CVE-2024-49996, CVE-2024-50001, CVE-2024-50002, CVE-2024-50006, CVE-2024-50014, CVE-2024-50015, CVE-2024-50019, CVE-2024-50024, CVE-2024-50028, CVE-2024-50033, CVE-2024-50035, CVE-2024-50036, CVE-2024-50038, CVE-2024-50039, CVE-2024-50040, CVE-2024-50045, CVE-2024-50046, CVE-2024-50047, CVE-2024-50058, CVE-2024-50060, CVE-2024-50063, CVE-2024-50067, CVE-2024-50072, CVE-2024-50073, CVE-2024-50074, CVE-2024-50082, CVE-2024-50095, CVE-2024-50099, CVE-2024-50115, CVE-2024-50131, CVE-2024-50135, CVE-2024-50138, CVE-2024-50142, CVE-2024-50143, CVE-2024-50150, CVE-2024-50151, CVE-2024-50154, CVE-2024-50167, CVE-2024-50179, CVE-2024-50192, CVE-2024-50194, CVE-2024-50195, CVE-2024-50199, CVE-2024-50208, CVE-2024-50209, CVE-2024-50241, CVE-2024-50249, CVE-2024-50251, CVE-2024-50256, CVE-2024-50258, CVE-2024-50262, CVE-2024-50264, CVE-2024-50267, CVE-2024-50272, CVE-2024-50278, CVE-2024-50279, CVE-2024-50280, CVE-2024-50289, CVE-2024-50290, CVE-2024-50296, CVE-2024-50299, CVE-2024-50301, CVE-2024-50302, CVE-2024-50304, CVE-2024-52332, CVE-2024-53052, CVE-2024-53057, CVE-2024-53063, CVE-2024-53066, CVE-2024-53073, CVE-2024-53079, CVE-2024-53085, CVE-2024-53088, CVE-2024-53093, CVE-2024-53095, CVE-2024-53096, CVE-2024-53099, CVE-2024-53103, CVE-2024-53104, CVE-2024-53119, CVE-2024-53121, CVE-2024-53124, CVE-2024-53125, CVE-2024-53135, CVE-2024-53140, CVE-2024-53141, CVE-2024-53142, CVE-2024-53146, CVE-2024-53157, CVE-2024-53164, CVE-2024-53168, CVE-2024-53173, CVE-2024-53174, CVE-2024-53179, CVE-2024-53185, CVE-2024-53187, CVE-2024-53194, CVE-2024-53195, CVE-2024-53214, CVE-2024-53216, CVE-2024-53217, CVE-2024-53219, CVE-2024-53224, CVE-2024-53680, CVE-2024-53685, CVE-2024-54683, CVE-2024-55916, CVE-2024-56369, CVE-2024-56558, CVE-2024-56568, CVE-2024-56569, CVE-2024-56570, CVE-2024-56574, CVE-2024-56583, CVE-2024-56584, CVE-2024-56587, CVE-2024-56588, CVE-2024-56589, CVE-2024-56592, CVE-2024-56593, CVE-2024-56600, CVE-2024-56601, CVE-2024-56606, CVE-2024-56608, CVE-2024-56611, CVE-2024-56614, CVE-2024-56615, CVE-2024-56616, CVE-2024-56623, CVE-2024-56631, CVE-2024-56633, CVE-2024-56637, CVE-2024-56642, CVE-2024-56644, CVE-2024-56647, CVE-2024-56650, CVE-2024-56658, CVE-2024-56662, CVE-2024-56664, CVE-2024-56672, CVE-2024-56688, CVE-2024-56690, CVE-2024-56694, CVE-2024-56703, CVE-2024-56709, CVE-2024-56716, CVE-2024-56720, CVE-2024-56722, CVE-2024-56739, CVE-2024-56747, CVE-2024-56748, CVE-2024-56751, CVE-2024-56756, CVE-2024-56763, CVE-2024-56769, CVE-2024-56770, CVE-2024-56779, CVE-2024-56780, CVE-2024-57795, CVE-2024-57798, CVE-2024-57807, CVE-2024-57841, CVE-2024-57874, CVE-2024-57876, CVE-2024-57883, CVE-2024-57884, CVE-2024-57888, CVE-2024-57890, CVE-2024-57901, CVE-2024-57902, CVE-2024-57903, CVE-2024-57924, CVE-2024-57929, CVE-2024-57931, CVE-2024-57938, CVE-2024-57946, CVE-2024-57947, CVE-2024-57951, CVE-2024-57973, CVE-2024-57974, CVE-2024-57977, CVE-2024-57979, CVE-2024-57980, CVE-2024-57981, CVE-2024-57982, CVE-2024-57986, CVE-2024-57996, CVE-2024-58002, CVE-2024-58005, CVE-2024-58017, CVE-2024-58069, CVE-2024-58083, CVE-2024-58093, CVE-2024-58098, CVE-2024-58100, CVE-2024-58237, CVE-2024-58239, CVE-2025-21638, CVE-2025-21639, CVE-2025-21640, CVE-2025-21648, CVE-2025-21653, CVE-2025-21662, CVE-2025-21664, CVE-2025-21665, CVE-2025-21666, CVE-2025-21669, CVE-2025-21681, CVE-2025-21682, CVE-2025-21683, CVE-2025-21687, CVE-2025-21689, CVE-2025-21690, CVE-2025-21693, CVE-2025-21694, CVE-2025-21699, CVE-2025-21700, CVE-2025-21701, CVE-2025-21702, CVE-2025-21703, CVE-2025-21704, CVE-2025-21708, CVE-2025-21719, CVE-2025-21726, CVE-2025-21727, CVE-2025-21728, CVE-2025-21731, CVE-2025-21738, CVE-2025-21750, CVE-2025-21756, CVE-2025-21758, CVE-2025-21759, CVE-2025-21760, CVE-2025-21761, CVE-2025-21762, CVE-2025-21763, CVE-2025-21764, CVE-2025-21765, CVE-2025-21766, CVE-2025-21772, CVE-2025-21776, CVE-2025-21779, CVE-2025-21785, CVE-2025-21791, CVE-2025-21796, CVE-2025-21806, CVE-2025-21814, CVE-2025-21816, CVE-2025-21817, CVE-2025-21826, CVE-2025-21831, CVE-2025-21844, CVE-2025-21846, CVE-2025-21848, CVE-2025-21853, CVE-2025-21858, CVE-2025-21861, CVE-2025-21862, CVE-2025-21863, CVE-2025-21872, CVE-2025-21877, CVE-2025-21881, CVE-2025-21885, CVE-2025-21887, CVE-2025-21891, CVE-2025-21898, CVE-2025-21899, CVE-2025-21920, CVE-2025-21922, CVE-2025-21924, CVE-2025-21926, CVE-2025-21927, CVE-2025-21928, CVE-2025-21931, CVE-2025-21959, CVE-2025-21971, CVE-2025-21975, CVE-2025-21976, CVE-2025-21981, CVE-2025-21992, CVE-2025-21993, CVE-2025-21999, CVE-2025-22005, CVE-2025-22008, CVE-2025-22021, CVE-2025-22022, CVE-2025-22025, CVE-2025-22026, CVE-2025-22027, CVE-2025-22044, CVE-2025-22055, CVE-2025-22057, CVE-2025-22058, CVE-2025-22063, CVE-2025-22075, CVE-2025-22083, CVE-2025-22086, CVE-2025-22090, CVE-2025-22103, CVE-2025-22113, CVE-2025-22121, CVE-2025-22125, CVE-2025-23131, CVE-2025-23136, CVE-2025-23142, CVE-2025-23149, CVE-2025-23150, CVE-2025-23161, CVE-2025-37738, CVE-2025-37749, CVE-2025-37752, CVE-2025-37756, CVE-2025-37757, CVE-2025-37765, CVE-2025-37773, CVE-2025-37780, CVE-2025-37785, CVE-2025-37788, CVE-2025-37789, CVE-2025-37797, CVE-2025-37798, CVE-2025-37807, CVE-2025-37808, CVE-2025-37823, CVE-2025-37824, CVE-2025-37834, CVE-2025-37836, CVE-2025-37839, CVE-2025-37844, CVE-2025-37857, CVE-2025-37859, CVE-2025-37862, CVE-2025-37867, CVE-2025-37871, CVE-2025-37885, CVE-2025-37890, CVE-2025-37911, CVE-2025-37913, CVE-2025-37915, CVE-2025-37920, CVE-2025-37923, CVE-2025-37927, CVE-2025-37930, CVE-2025-37932, CVE-2025-37937, CVE-2025-37940, CVE-2025-37948, CVE-2025-37959, CVE-2025-37961, CVE-2025-37967, CVE-2025-37980, CVE-2025-37989, CVE-2025-37992, CVE-2025-37994, CVE-2025-37995, CVE-2025-37997, CVE-2025-37998, CVE-2025-38000, CVE-2025-38001, CVE-2025-38014, CVE-2025-38015, CVE-2025-38022, CVE-2025-38024, CVE-2025-38035, CVE-2025-38037, CVE-2025-38040, CVE-2025-38044, CVE-2025-38052, CVE-2025-38058, CVE-2025-38061, CVE-2025-38062, CVE-2025-38063, CVE-2025-38064, CVE-2025-38066, CVE-2025-38067, CVE-2025-38068, CVE-2025-38072, CVE-2025-38074, CVE-2025-38075, CVE-2025-38079, CVE-2025-38083, CVE-2025-38084, CVE-2025-38085, CVE-2025-38086, CVE-2025-38095, CVE-2025-38100, CVE-2025-38102, CVE-2025-38103, CVE-2025-38108, CVE-2025-38111, CVE-2025-38112, CVE-2025-38115, CVE-2025-38120, CVE-2025-38124, CVE-2025-38127, CVE-2025-38129, CVE-2025-38146, CVE-2025-38147, CVE-2025-38148, CVE-2025-38161, CVE-2025-38162, CVE-2025-38166, CVE-2025-38174, CVE-2025-38181, CVE-2025-38184, CVE-2025-38192, CVE-2025-38193, CVE-2025-38200, CVE-2025-38201, CVE-2025-38207, CVE-2025-38211, CVE-2025-38212, CVE-2025-38214, CVE-2025-38215, CVE-2025-38222, CVE-2025-38229, CVE-2025-38232, CVE-2025-38264, CVE-2025-38273, CVE-2025-38285, CVE-2025-38312, CVE-2025-38320, CVE-2025-38324, CVE-2025-38332, CVE-2025-38334, CVE-2025-38337, CVE-2025-38342, CVE-2025-38346, CVE-2025-38352, CVE-2025-38375, CVE-2025-38386, CVE-2025-38387, CVE-2025-38391, CVE-2025-38393, CVE-2025-38399, CVE-2025-38415, CVE-2025-38424, CVE-2025-38430, CVE-2025-38439, CVE-2025-38445, CVE-2025-38449, CVE-2025-38457, CVE-2025-38461, CVE-2025-38462, CVE-2025-38464, CVE-2025-38465, CVE-2025-38466, CVE-2025-38468, CVE-2025-38474, CVE-2025-38477, CVE-2025-38495, CVE-2025-38498, CVE-2025-38499, CVE-2025-38502, CVE-2025-38515, CVE-2025-38516, CVE-2025-38527, CVE-2025-38531, CVE-2025-38539, CVE-2025-38540, CVE-2025-38553, CVE-2025-38556, CVE-2025-38563, CVE-2025-38565, CVE-2025-38569, CVE-2025-38572, CVE-2025-38574, CVE-2025-38582, CVE-2025-38584, CVE-2025-38590, CVE-2025-38591, CVE-2025-38608, CVE-2025-38614, CVE-2025-38617, CVE-2025-38622, CVE-2025-38632, CVE-2025-38635, CVE-2025-38639, CVE-2025-38659, CVE-2025-38664, CVE-2025-38668, CVE-2025-38671, CVE-2025-38676, CVE-2025-38678, CVE-2025-38680, CVE-2025-38683, CVE-2025-38685, CVE-2025-38691, CVE-2025-38693, CVE-2025-38694, CVE-2025-38695, CVE-2025-38700, CVE-2025-38701, CVE-2025-38702, CVE-2025-38709, CVE-2025-38710, CVE-2025-38718, CVE-2025-38721, CVE-2025-38724, CVE-2025-38728, CVE-2025-38732, CVE-2025-39676, CVE-2025-39681, CVE-2025-39683, CVE-2025-39689, CVE-2025-39691, CVE-2025-39697, CVE-2025-39713, CVE-2025-39724, CVE-2025-39725, CVE-2025-39728, CVE-2025-39730, CVE-2025-39742, CVE-2025-39744, CVE-2025-39749, CVE-2025-39754, CVE-2025-39756, CVE-2025-39760, CVE-2025-39763, CVE-2025-39764, CVE-2025-39770, CVE-2025-39772, CVE-2025-39773, CVE-2025-39782, CVE-2025-39795, CVE-2025-39797, CVE-2025-39798, CVE-2025-39808, CVE-2025-39810, CVE-2025-39812, CVE-2025-39813, CVE-2025-39817, CVE-2025-39823, CVE-2025-39825, CVE-2025-39829, CVE-2025-39835, CVE-2025-39838, CVE-2025-39841, CVE-2025-39847, CVE-2025-39850, CVE-2025-39851, CVE-2025-39853, CVE-2025-39865, CVE-2025-39866, CVE-2025-39883, CVE-2025-39894, CVE-2025-39901, CVE-2025-39902, CVE-2025-39911, CVE-2025-39913, CVE-2025-39927, CVE-2025-39931, CVE-2025-39937, CVE-2025-39940, CVE-2025-39945, CVE-2025-39949, CVE-2025-39953, CVE-2025-39955, CVE-2025-39964, CVE-2025-39967, CVE-2025-39968, CVE-2025-39969, CVE-2025-39970, CVE-2025-39971, CVE-2025-39972, CVE-2025-39973, CVE-2025-39980, CVE-2025-39993, CVE-2025-39994, CVE-2025-39996, CVE-2025-39998, CVE-2025-40006, CVE-2025-40016, CVE-2025-40018, CVE-2025-40019, CVE-2025-40021, CVE-2025-40026, CVE-2025-40030, CVE-2025-40042, CVE-2025-40044, CVE-2025-40048, CVE-2025-40049, CVE-2025-40053, CVE-2025-40062, CVE-2025-40074, CVE-2025-40075, CVE-2025-40078, CVE-2025-40080, CVE-2025-40081, CVE-2025-40083, CVE-2025-40087, CVE-2025-40099, CVE-2025-40102, CVE-2025-40103, CVE-2025-40104, CVE-2025-40105, CVE-2025-40109, CVE-2025-40110, CVE-2025-40111, CVE-2025-40115, CVE-2025-40123, CVE-2025-40125, CVE-2025-40135, CVE-2025-40136, CVE-2025-40140, CVE-2025-40149, CVE-2025-40153, CVE-2025-40158, CVE-2025-40164, CVE-2025-40167, CVE-2025-40170, CVE-2025-40171, CVE-2025-40173, CVE-2025-40178, CVE-2025-40183, CVE-2025-40186, CVE-2025-40187, CVE-2025-40190, CVE-2025-40194, CVE-2025-40196, CVE-2025-40198, CVE-2025-40200, CVE-2025-40204, CVE-2025-40206, CVE-2025-40211, CVE-2025-40215, CVE-2025-40220, CVE-2025-40231, CVE-2025-40240, CVE-2025-40248, CVE-2025-40252, CVE-2025-40254, CVE-2025-40259, CVE-2025-40261, CVE-2025-40264, CVE-2025-40271, CVE-2025-40273, CVE-2025-40277, CVE-2025-40280, CVE-2025-40281, CVE-2025-40300, CVE-2025-40304, CVE-2025-40319, CVE-2025-40322, CVE-2025-40323, CVE-2025-40324, CVE-2025-40331, CVE-2025-40341, CVE-2025-40342, CVE-2025-40343, CVE-2025-40345, CVE-2025-40346, CVE-2025-40363, CVE-2025-68171, CVE-2025-68183, CVE-2025-68185, CVE-2025-68188, CVE-2025-68191, CVE-2025-68192, CVE-2025-68194, CVE-2025-68206, CVE-2025-68211, CVE-2025-68214, CVE-2025-68218, CVE-2025-68229, CVE-2025-68239, CVE-2025-68241, CVE-2025-68245, CVE-2025-68261, CVE-2025-68264, CVE-2025-68283, CVE-2025-68285, CVE-2025-68288, CVE-2025-68295, CVE-2025-68301, CVE-2025-68309, CVE-2025-68312, CVE-2025-68313, CVE-2025-68321, CVE-2025-68331, CVE-2025-68337, CVE-2025-68349, CVE-2025-68354, CVE-2025-68366, CVE-2025-68367, CVE-2025-68372, CVE-2025-68374, CVE-2025-68378, CVE-2025-68379, CVE-2025-68724, CVE-2025-68725, CVE-2025-68740, CVE-2025-68742, CVE-2025-68745, CVE-2025-68764, CVE-2025-68768, CVE-2025-68780, CVE-2025-68782, CVE-2025-68785, CVE-2025-68788, CVE-2025-68794, CVE-2025-68795, CVE-2025-68798, CVE-2025-68800, CVE-2025-68801, CVE-2025-68813, CVE-2025-68814, CVE-2025-68816, CVE-2025-68818, CVE-2025-68819, CVE-2025-68822, CVE-2025-71064, CVE-2025-71077, CVE-2025-71084, CVE-2025-71085, CVE-2025-71087, CVE-2025-71089, CVE-2025-71093, CVE-2025-71096, CVE-2025-71097, CVE-2025-71098, CVE-2025-71104, CVE-2025-71108, CVE-2025-71112, CVE-2025-71113, CVE-2025-71116, CVE-2025-71118, CVE-2025-71120, CVE-2025-71125, CVE-2025-71131, CVE-2025-71154, CVE-2025-71160, CVE-2025-71186, CVE-2025-71232, CVE-2025-71235, CVE-2025-71236, CVE-2025-71238, CVE-2026-22976, CVE-2026-22977, CVE-2026-22978, CVE-2026-22980, CVE-2026-22990, CVE-2026-22991, CVE-2026-22998, CVE-2026-22999, CVE-2026-23001, CVE-2026-23003, CVE-2026-23005, CVE-2026-23011, CVE-2026-23021, CVE-2026-23038, CVE-2026-23047, CVE-2026-23050, CVE-2026-23054, CVE-2026-23056, CVE-2026-23060, CVE-2026-23063, CVE-2026-23069, CVE-2026-23071, CVE-2026-23074, CVE-2026-23084, CVE-2026-23085, CVE-2026-23086, CVE-2026-23094, CVE-2026-23096, CVE-2026-23097, CVE-2026-23099, CVE-2026-23100, CVE-2026-23101, CVE-2026-23103, CVE-2026-23105, CVE-2026-23110, CVE-2026-23112, CVE-2026-23113, CVE-2026-23119, CVE-2026-23120, CVE-2026-23125, CVE-2026-23126, CVE-2026-23138, CVE-2026-23145, CVE-2026-23154, CVE-2026-23179, CVE-2026-23193, CVE-2026-23198, CVE-2026-23204, CVE-2026-23209, CVE-2026-23212, CVE-2026-23216, CVE-2026-23237, CVE-2026-23240, CVE-2026-23243, CVE-2026-23253, CVE-2026-23255, CVE-2026-23261, CVE-2026-23268, CVE-2026-23269, CVE-2026-23271, CVE-2026-23272, CVE-2026-23273, CVE-2026-23274, CVE-2026-23276, CVE-2026-23277, CVE-2026-23290, CVE-2026-23292, CVE-2026-23300, CVE-2026-23302, CVE-2026-23303, CVE-2026-23304, CVE-2026-23312, CVE-2026-23317, CVE-2026-23340, CVE-2026-23351, CVE-2026-23352, CVE-2026-23365, CVE-2026-23368, CVE-2026-23371, CVE-2026-23381, CVE-2026-23388, CVE-2026-23389, CVE-2026-23391, CVE-2026-23397, CVE-2026-23398, CVE-2026-23403, CVE-2026-23404, CVE-2026-23405, CVE-2026-23406, CVE-2026-23407, CVE-2026-23408, CVE-2026-23409, CVE-2026-23410, CVE-2026-23411, CVE-2026-23447, CVE-2026-23448, CVE-2026-23449, CVE-2026-23452, CVE-2026-23455, CVE-2026-23456, CVE-2026-23457, CVE-2026-23458, CVE-2026-23472, CVE-2026-31392, CVE-2026-31399, CVE-2026-31400, CVE-2026-31402, CVE-2026-31403, CVE-2026-31405, CVE-2026-31414, CVE-2026-31415, CVE-2026-31416, CVE-2026-31418, CVE-2026-31419, CVE-2026-31421, CVE-2026-31422, CVE-2026-31423, CVE-2026-31426, CVE-2026-31427, CVE-2026-31428, CVE-2026-31436, CVE-2026-31441, CVE-2026-31447, CVE-2026-31448, CVE-2026-31449, CVE-2026-31450, CVE-2026-31452, CVE-2026-31453, CVE-2026-31454, CVE-2026-31455, CVE-2026-31469, CVE-2026-31473, CVE-2026-31487, CVE-2026-31495, CVE-2026-31496, CVE-2026-31503, CVE-2026-31508, CVE-2026-31515, CVE-2026-31516, CVE-2026-31518, CVE-2026-31521, CVE-2026-31523, CVE-2026-31527, CVE-2026-31531, CVE-2026-31555, CVE-2026-31557, CVE-2026-31586, CVE-2026-31588, CVE-2026-31590, CVE-2026-31624, CVE-2026-31625, CVE-2026-31651, CVE-2026-31662, CVE-2026-31664, CVE-2026-31670, CVE-2026-31673, CVE-2026-31674, CVE-2026-31675, CVE-2026-31677, CVE-2026-31678, CVE-2026-31679, CVE-2026-31680, CVE-2026-31682, CVE-2026-31685, CVE-2026-31694, CVE-2026-31697, CVE-2026-31698, CVE-2026-31699, CVE-2026-31708, CVE-2026-31729, CVE-2026-31738, CVE-2026-31751, CVE-2026-31755, CVE-2026-31758, CVE-2026-31759, CVE-2026-31781, CVE-2026-43024, CVE-2026-43025, CVE-2026-43026, CVE-2026-43027, CVE-2026-43028, CVE-2026-43030, CVE-2026-43035, CVE-2026-43036, CVE-2026-43037, CVE-2026-43038, CVE-2026-43040, CVE-2026-43043, CVE-2026-43047, CVE-2026-43048, CVE-2026-43049, CVE-2026-43053, CVE-2026-43057, CVE-2026-43060, CVE-2026-43064, CVE-2026-43066, CVE-2026-43068, CVE-2026-43071, CVE-2026-43073, CVE-2026-43079, CVE-2026-43080, CVE-2026-43085, CVE-2026-43088, CVE-2026-43089, CVE-2026-43091, CVE-2026-43093, CVE-2026-43112, CVE-2026-43114, CVE-2026-43123, CVE-2026-43124, CVE-2026-43125, CVE-2026-43130, CVE-2026-43140, CVE-2026-43153, CVE-2026-43156, CVE-2026-43158, CVE-2026-43163, CVE-2026-43167, CVE-2026-43171, CVE-2026-43180, CVE-2026-43187, CVE-2026-43190, CVE-2026-43194, CVE-2026-43198, CVE-2026-43201, CVE-2026-43211, CVE-2026-43216, CVE-2026-43233, CVE-2026-43253, CVE-2026-43262, CVE-2026-43273, CVE-2026-43277, CVE-2026-43281, CVE-2026-43287, CVE-2026-43288, CVE-2026-43309, CVE-2026-43328, CVE-2026-43333, CVE-2026-43336, CVE-2026-43339, CVE-2026-43344, CVE-2026-43350, CVE-2026-43363, CVE-2026-43365, CVE-2026-43381, CVE-2026-43383, CVE-2026-43407, CVE-2026-43409, CVE-2026-43411, CVE-2026-43413, CVE-2026-43416, CVE-2026-43420, CVE-2026-43425, CVE-2026-43427, CVE-2026-43428, CVE-2026-43429, CVE-2026-43432, CVE-2026-43439, CVE-2026-43445, CVE-2026-43449, CVE-2026-43450, CVE-2026-43451, CVE-2026-43452, CVE-2026-43453, CVE-2026-43466, CVE-2026-43472, CVE-2026-43475, CVE-2026-43483, CVE-2026-43484, CVE-2026-43492, CVE-2026-43493, CVE-2026-43496, CVE-2026-43499, CVE-2026-43501, CVE-2026-43503, CVE-2026-45838, CVE-2026-45839, CVE-2026-45840, CVE-2026-45841, CVE-2026-45842, CVE-2026-45843, CVE-2026-45844, CVE-2026-45848, CVE-2026-45850, CVE-2026-45852, CVE-2026-45856, CVE-2026-45857, CVE-2026-45858, CVE-2026-45862, CVE-2026-45870, CVE-2026-45873, CVE-2026-45891, CVE-2026-45892, CVE-2026-45894, CVE-2026-45899, CVE-2026-45905, CVE-2026-45915, CVE-2026-45917, CVE-2026-45919, CVE-2026-45920, CVE-2026-45923, CVE-2026-45941, CVE-2026-45944, CVE-2026-45948, CVE-2026-45961, CVE-2026-45964, CVE-2026-45968, CVE-2026-45970, CVE-2026-45973, CVE-2026-45984, CVE-2026-45985, CVE-2026-45987, CVE-2026-45991, CVE-2026-45997, CVE-2026-46006, CVE-2026-46014, CVE-2026-46021, CVE-2026-46023, CVE-2026-46024, CVE-2026-46033, CVE-2026-46040, CVE-2026-46043, CVE-2026-46044, CVE-2026-46046, CVE-2026-46051, CVE-2026-46052, CVE-2026-46070, CVE-2026-46082, CVE-2026-46083, CVE-2026-46086, CVE-2026-46101, CVE-2026-46102, CVE-2026-46107, CVE-2026-46108, CVE-2026-46116, CVE-2026-46124, CVE-2026-46128, CVE-2026-46132, CVE-2026-46133, CVE-2026-46135, CVE-2026-46149, CVE-2026-46151, CVE-2026-46161, CVE-2026-46167, CVE-2026-46172, CVE-2026-46177, CVE-2026-46178, CVE-2026-46180, CVE-2026-46181, CVE-2026-46189, CVE-2026-46191, CVE-2026-46193, CVE-2026-46196, CVE-2026-46209, CVE-2026-46214, CVE-2026-46227, CVE-2026-46234, CVE-2026-46235, CVE-2026-46243, CVE-2026-46245, CVE-2026-46253, CVE-2026-46254, CVE-2026-46259, CVE-2026-46265, CVE-2026-46294, CVE-2026-46320, CVE-2026-46321, CVE-2026-46333