CVE-2024-42068
In the Linux kernel, the following vulnerability has been resolved: bpf: Take return from set_memory_ro() into account with bpf_prog_lock_r
CVSS
7.8
High
EPSS
0.2%
p15
KEV
—
Exploit Today
4
0-100
Published: Jul 29, 2024 · Last modified: Aug 4, 2026 · CWE-252
0.2%EPSS · 30 days0.2%
2026-07-292026-08-26
In the Linux kernel, the following vulnerability has been resolved: bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro() set_memory_ro() can fail, leaving memory unprotected. Check its return and take it into account as an error.
- git.kernel.orghttps://git.kernel.org/stable/c/05412471beba313ecded95aa17b25fe84bb2551a
- git.kernel.orghttps://git.kernel.org/stable/c/7d2cc63eca0c993c99d18893214abf8f85d566d8
- git.kernel.orghttps://git.kernel.org/stable/c/a359696856ca9409fb97655c5a8ef0f549cb6e03
- git.kernel.orghttps://git.kernel.org/stable/c/e4f602e3ff749ba770bf8ff10196e18358de6720
- git.kernel.orghttps://git.kernel.org/stable/c/05412471beba313ecded95aa17b25fe84bb2551a
- git.kernel.orghttps://git.kernel.org/stable/c/7d2cc63eca0c993c99d18893214abf8f85d566d8
- git.kernel.orghttps://git.kernel.org/stable/c/a359696856ca9409fb97655c5a8ef0f549cb6e03
- git.kernel.orghttps://git.kernel.org/stable/c/e3540e5a7054d6daaf9a1415a48aacb092112a89
- git.kernel.orghttps://git.kernel.org/stable/c/e4f602e3ff749ba770bf8ff10196e18358de6720
- git.kernel.orghttps://git.kernel.org/stable/c/fdd411af8178edc6b7bf260f8fa4fba1bedd0a6d
- lists.debian.orghttps://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-776416.5 MED9.1%
——3tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLUX_SWITCH cell fails. The return value of relay_send_command_from_edge() was ignored, so a send failure (which calls circuit_mark_for_close() and removes the leg via cfx_del_leg()) would go undetected, causing the caller to write to the now-freed current leg and resulting in a crash. This is TROVE-2026-017.7dCVE-2026-472454.3 MED18.6%
——6MyBB is free and open source forum software. Prior to 1.8.40, the User CP Buddy/Ignore List component does not validate reciprocal buddy-list updates correctly. The usercp.php?action=do_editlists delete handler removes the selected entry from the acting user's list and then updates mybb_users.buddylist for the target account. The reciprocal update searches for the deleted target UID instead of the acting user's UID and uses the unchecked array_search() return value as an array key. A false result can be converted to index 0, removing the target account's first stored buddy while leaving the actual reciprocal entry unchanged. The uniquely identifying implementation details include false converted to index 0. This issue is fixed in version 1.8.40.9dCVE-2026-629097.8 HIG20.8%
——6Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.13dCVE-2026-260803.7 LOW43.5%
——13HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected.2dCVE-2026-618573.7 LOW18.1%
——5ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null check when parsing XMP profiles. Attackers can craft malicious image files with specially crafted XMP data to trigger the vulnerability and cause application crashes.45dCVE-2026-11972—37.0%
——11When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.15d