CVE-2024-49936
In the Linux kernel, the following vulnerability has been resolved: net/xen-netback: prevent UAF in xenvif_flush_hash() During the list_fo
CVSS
8.8
Alto
EPSS
0.3%
p19
KEV
—
Exploit Today
6
0-100
Publicado: 21 oct 2024 · Última mod.: 4 ago 2026 · CWE-416
0.3%EPSS · 30 días0.3%
2026-08-062026-09-02
In the Linux kernel, the following vulnerability has been resolved: net/xen-netback: prevent UAF in xenvif_flush_hash() During the list_for_each_entry_rcu iteration call of xenvif_flush_hash, kfree_rcu does not exist inside the rcu read critical section, so if kfree_rcu is called when the rcu grace period ends during the iteration, UAF occurs when accessing head->next after the entry becomes free. Therefore, to solve this, you need to change it to list_for_each_entry_safe.
- git.kernel.orghttps://git.kernel.org/stable/c/0fa5e94a1811d68fbffa0725efe6d4ca62c03d12
- git.kernel.orghttps://git.kernel.org/stable/c/143edf098b80669d05245b2f2367dd156a83a2c5
- git.kernel.orghttps://git.kernel.org/stable/c/3c4423b0c4b98213b3438e15061e1d08220e6982
- git.kernel.orghttps://git.kernel.org/stable/c/54d8639af5568fc41c0e274fc3ec9cf86c59fcbb
- git.kernel.orghttps://git.kernel.org/stable/c/a0465723b8581cad27164c9073fd780904cd22d4
- git.kernel.orghttps://git.kernel.org/stable/c/a7f0073fcd12ed7de185ef2c0af9d0fa1ddef22c
- git.kernel.orghttps://git.kernel.org/stable/c/d408889d4b54f5501e4becc4dbbb9065143fbf4e
- git.kernel.orghttps://git.kernel.org/stable/c/efcff6ce7467f01f0753609f420333f3f2ceceda
- lists.debian.orghttps://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
- lists.debian.orghttps://lists.debian.org/debian-lts-announce/2025/03/msg00002.html
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-843539.6 CRÍ19.8%
——6Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)2dCVE-2026-843529.6 CRÍ19.8%
——6Use after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)2dCVE-2026-843508.8 ALT10.6%
——3Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: Low)2dCVE-2026-843498.3 ALT13.7%
——4Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)2dCVE-2026-843478.8 ALT20.3%
——6Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)2dCVE-2026-843339.6 CRÍ16.1%
——5Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)2d