CVE-2024-35954
In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Avoid sg device teardown race sg_remove_sfp_usercontext() mu
CVSS
7.8
Alto
EPSS
0.2%
p15
KEV
—
Exploit Today
5
0-100
Publicado: 20 may 2024 · Última mod.: 4 ago 2026 · CWE-476
0.2%EPSS · 30 días0.2%
2026-07-302026-08-26
In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Avoid sg device teardown race sg_remove_sfp_usercontext() must not use sg_device_destroy() after calling scsi_device_put(). sg_device_destroy() is accessing the parent scsi_device request_queue which will already be set to NULL when the preceding call to scsi_device_put() removed the last reference to the parent scsi_device. The resulting NULL pointer exception will then crash the kernel.
- git.kernel.orghttps://git.kernel.org/stable/c/27f58c04a8f438078583041468ec60597841284d
- git.kernel.orghttps://git.kernel.org/stable/c/46af9047523e2517712ae8e71d984286c626e022
- git.kernel.orghttps://git.kernel.org/stable/c/b0d1ebcc1a9560e494ea9b3ee808540db26c5086
- git.kernel.orghttps://git.kernel.org/stable/c/27f58c04a8f438078583041468ec60597841284d
- git.kernel.orghttps://git.kernel.org/stable/c/46af9047523e2517712ae8e71d984286c626e022
- git.kernel.orghttps://git.kernel.org/stable/c/b0d1ebcc1a9560e494ea9b3ee808540db26c5086
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-300567.5 ALT—
———A NULL pointer dereference in the AMF NGAP Dispatcher component of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via supplying crafted NGAP messages during the initialization of a new RAN connection.5hCVE-2026-264497.5 ALT—
———In Stomper 5e2741e when a client sends a SEND frame missing the destination header field, the server triggers a null pointer dereference (or access to invalid memory) while processing the frame, causing the process to crash.5hCVE-2026-653675.5 MED0.8%
——0A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5. An app may be able to cause unexpected system termination.10hCVE-2026-484295.5 MED4.4%
——1Substance3D - Designer is affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file.7hCVE-2022-509987.5 ALT27.7%
——8Nokogiri before 1.13.9 (CRuby implementation using packaged libraries) bundles libxml2 v2.9.14, which is affected by CVE-2022-40304 (data corruption / double-free from an entity reference cycle when entity content is allocated from a dict) and CVE-2022-40303 (integer overflows when parsing with XML_PARSE_HUGE). Nokogiri 1.13.9 upgrades the packaged libxml2 to v2.10.3 to address these issues. Processing crafted XML input may lead to denial of service or memory corruption. (The advisory also references CVE-2022-2309, a NULL pointer dereference via iterwalk/canonicalize, which maintainers determined does not affect Nokogiri users.)8hCVE-2026-719227.5 ALT38.6%
——12Multiple DrayTek VigorSwitch models contain a pre-authentication null pointer dereference vulnerability in the setget.cgi interface. The vulnerability is caused by missing validation when the pass field is absent. A remote attacker can trigger this vulnerability via a crafted request to crash the service and cause a denial of service.3d