[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2024-35990":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":39,"aliases":40,"duplicate_of":9,"upstream":41,"downstream":42,"duplicates":97,"related":98,"reserved_at":9,"published_at":111,"modified_at":112,"state":113,"summary":114,"references_raw":123,"kevs":163,"epss":164,"epss_history":167,"metrics":430,"affected":436},"CVE-2024-35990","In the Linux kernel, the following vulnerability has been resolved:\n\ndma: xilinx_dpdma: Fix locking\n\nThere are several places where either chan->lock or chan->vchan.lock was\nnot held. Add appropriate locking. This fixes lockdep warnings like\n\n[   31.077578] ------------[ cut here ]------------\n[   31.077831] WARNING: CPU: 2 PID: 40 at drivers/dma/xilinx/xilinx_dpdma.c:834 xilinx_dpdma_chan_queue_transfer+0x274/0x5e0\n[   31.077953] Modules linked in:\n[   31.078019] CPU: 2 PID: 40 Comm: kworker/u12:1 Not tainted 6.6.20+ #98\n[   31.078102] Hardware name: xlnx,zynqmp (DT)\n[   31.078169] Workqueue: events_unbound deferred_probe_work_func\n[   31.078272] pstate: 600000c5 (nZCv daIF -PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n[   31.078377] pc : xilinx_dpdma_chan_queue_transfer+0x274/0x5e0\n[   31.078473] lr : xilinx_dpdma_chan_queue_transfer+0x270/0x5e0\n[   31.078550] sp : ffffffc083bb2e10\n[   31.078590] x29: ffffffc083bb2e10 x28: 0000000000000000 x27: ffffff880165a168\n[   31.078754] x26: ffffff880164e920 x25: ffffff880164eab8 x24: ffffff880164d480\n[   31.078920] x23: ffffff880165a148 x22: ffffff880164e988 x21: 0000000000000000\n[   31.079132] x20: ffffffc082aa3000 x19: ffffff880164e880 x18: 0000000000000000\n[   31.079295] x17: 0000000000000000 x16: 0000000000000000 x15: 0000000000000000\n[   31.079453] x14: 0000000000000000 x13: ffffff8802263dc0 x12: 0000000000000001\n[   31.079613] x11: 0001ffc083bb2e34 x10: 0001ff880164e98f x9 : 0001ffc082aa3def\n[   31.079824] x8 : 0001ffc082aa3dec x7 : 0000000000000000 x6 : 0000000000000516\n[   31.079982] x5 : ffffffc7f8d43000 x4 : ffffff88003c9c40 x3 : ffffffffffffffff\n[   31.080147] x2 : ffffffc7f8d43000 x1 : 00000000000000c0 x0 : 0000000000000000\n[   31.080307] Call trace:\n[   31.080340]  xilinx_dpdma_chan_queue_transfer+0x274/0x5e0\n[   31.080518]  xilinx_dpdma_issue_pending+0x11c/0x120\n[   31.080595]  zynqmp_disp_layer_update+0x180/0x3ac\n[   31.080712]  zynqmp_dpsub_plane_atomic_update+0x11c/0x21c\n[   31.080825]  drm_atomic_helper_commit_planes+0x20c/0x684\n[   31.080951]  drm_atomic_helper_commit_tail+0x5c/0xb0\n[   31.081139]  commit_tail+0x234/0x294\n[   31.081246]  drm_atomic_helper_commit+0x1f8/0x210\n[   31.081363]  drm_atomic_commit+0x100/0x140\n[   31.081477]  drm_client_modeset_commit_atomic+0x318/0x384\n[   31.081634]  drm_client_modeset_commit_locked+0x8c/0x24c\n[   31.081725]  drm_client_modeset_commit+0x34/0x5c\n[   31.081812]  __drm_fb_helper_restore_fbdev_mode_unlocked+0x104/0x168\n[   31.081899]  drm_fb_helper_set_par+0x50/0x70\n[   31.081971]  fbcon_init+0x538/0xc48\n[   31.082047]  visual_init+0x16c/0x23c\n[   31.082207]  do_bind_con_driver.isra.0+0x2d0/0x634\n[   31.082320]  do_take_over_console+0x24c/0x33c\n[   31.082429]  do_fbcon_takeover+0xbc/0x1b0\n[   31.082503]  fbcon_fb_registered+0x2d0/0x34c\n[   31.082663]  register_framebuffer+0x27c/0x38c\n[   31.082767]  __drm_fb_helper_initial_config_and_unlock+0x5c0/0x91c\n[   31.082939]  drm_fb_helper_initial_config+0x50/0x74\n[   31.083012]  drm_fbdev_dma_client_hotplug+0xb8/0x108\n[   31.083115]  drm_client_register+0xa0/0xf4\n[   31.083195]  drm_fbdev_dma_setup+0xb0/0x1cc\n[   31.083293]  zynqmp_dpsub_drm_init+0x45c/0x4e0\n[   31.083431]  zynqmp_dpsub_probe+0x444/0x5e0\n[   31.083616]  platform_probe+0x8c/0x13c\n[   31.083713]  really_probe+0x258/0x59c\n[   31.083793]  __driver_probe_device+0xc4/0x224\n[   31.083878]  driver_probe_device+0x70/0x1c0\n[   31.083961]  __device_attach_driver+0x108/0x1e0\n[   31.084052]  bus_for_each_drv+0x9c/0x100\n[   31.084125]  __device_attach+0x100/0x298\n[   31.084207]  device_initial_probe+0x14/0x20\n[   31.084292]  bus_probe_device+0xd8/0xdc\n[   31.084368]  deferred_probe_work_func+0x11c/0x180\n[   31.084451]  process_one_work+0x3ac/0x988\n[   31.084643]  worker_thread+0x398/0x694\n[   31.084752]  kthread+0x1bc/0x1c0\n[   31.084848]  ret_from_fork+0x10/0x20\n[   31.084932] irq event stamp: 64549\n[   31.084970] hardirqs last  enabled at (64548): [\u003Cffffffc081adf35c>] _raw_spin_unlock_irqrestore+0x80/0x90\n[   31.085157]\n---truncated---",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-667","Improper Locking","The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.","weakness","Draft","Class",[19,31,35],{"id":20,"name":21,"techniques":22},"CAPEC-25","Forced Deadlock",[23],{"id":24,"name":25,"tactics":26,"countermeasures":30},"T1499.004","Application or System Exploitation",[27],{"id":28,"name":29},"TA0105","Impact",[],{"id":32,"name":33,"techniques":34},"CAPEC-26","Leveraging Race Conditions",[],{"id":36,"name":37,"techniques":38},"CAPEC-27","Leveraging Race Conditions via Symbolic Links",[],[],[],[],[43,45,47,49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83,85,87,89,91,93,95],{"_key":44},"SUSE-SU-2024:2203-1",{"_key":46},"SUSE-SU-2024:2008-1",{"_key":48},"SUSE-SU-2024:2019-1",{"_key":50},"SUSE-SU-2024:2135-1",{"_key":52},"SUSE-SU-2024:2190-1",{"_key":54},"SUSE-SU-2024:2973-1",{"_key":56},"DLA-3842-1",{"_key":58},"SUSE-SU-2025:20008-1",{"_key":60},"SUSE-SU-2025:20028-1",{"_key":62},"SUSE-SU-2025:20166-1",{"_key":64},"SUSE-SU-2025:20249-1",{"_key":66},"MGASA-2024-0263",{"_key":68},"MGASA-2024-0266",{"_key":70},"DEBIAN-CVE-2024-35990",{"_key":72},"UBUNTU-CVE-2024-35990",{"_key":74},"USN-6898-1",{"_key":76},"USN-6898-2",{"_key":78},"USN-6898-3",{"_key":80},"USN-6898-4",{"_key":82},"USN-6917-1",{"_key":84},"USN-6919-1",{"_key":86},"USN-6921-1",{"_key":88},"USN-6921-2",{"_key":90},"USN-6927-1",{"_key":92},"USN-6952-1",{"_key":94},"USN-6952-2",{"_key":96},"USN-7019-1",[],[99,100,101,102,103,104,105,106,107,108,109,110],{"_key":44},{"_key":46},{"_key":48},{"_key":50},{"_key":52},{"_key":54},{"_key":58},{"_key":60},{"_key":62},{"_key":64},{"_key":66},{"_key":68},"2024-05-20T09:47:55.736Z","2026-05-12T11:53:29.670Z","Modified",{"cisa_kev":115,"cisa_ransomware":115,"cisa_vendor":9,"epss_severity":116,"epss_score":117,"severity":118,"severity_score":119,"severity_version":120,"severity_source":121,"severity_vector":122,"severity_status":113},false,"low",0.00019,"medium",5.5,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",[124,130,134,138,142,146,150,155,159],{"url":125,"sources":126,"tags":128},"https://git.kernel.org/stable/c/fcdd5bb4a8c81c64c1334d7e0aba41a8829a24de",[127,121],"cve.org",[129],"Patch",{"url":131,"sources":132,"tags":133},"https://git.kernel.org/stable/c/0ccac964520a6f19e355652c8ca38af2a7f27076",[127,121],[129],{"url":135,"sources":136,"tags":137},"https://git.kernel.org/stable/c/8bf574183282d219cfa991f7df37aad491d74c11",[127,121],[129],{"url":139,"sources":140,"tags":141},"https://git.kernel.org/stable/c/8e3c94767cad5150198e4337c8b91f3bb068e14b",[127,121],[129],{"url":143,"sources":144,"tags":145},"https://git.kernel.org/stable/c/c660be571609e03e7d5972343536a736fcb31557",[127,121],[129],{"url":147,"sources":148,"tags":149},"https://git.kernel.org/stable/c/244296cc3a155199a8b080d19e645d7d49081a38",[127,121],[129],{"url":151,"sources":152,"tags":153},"https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html",[127,121],[154],"X Transferred",{"url":156,"sources":157,"tags":158},"https://cert-portal.siemens.com/productcert/html/ssa-265688.html",[127,121],[],{"url":160,"sources":161,"tags":162},"https://cert-portal.siemens.com/productcert/html/ssa-613116.html",[127,121],[],[],{"date":165,"score":117,"percentile":166},"2026-06-04",0.05155,[168,172,175,178,181,184,187,190,193,196,198,201,204,206,209,213,216,219,222,225,228,231,234,237,240,242,244,246,249,252,254,257,259,262,265,268,271,275,278,281,284,287,290,293,296,299,302,305,308,311,314,317,320,323,325,328,331,334,337,340,342,345,348,351,354,357,360,363,366,369,371,374,377,380,383,386,389,392,395,398,401,404,407,410,413,416,418,421,424,427],{"date":169,"score":170,"percentile":171},"2025-11-04",0.00012,0.01165,{"date":173,"score":170,"percentile":174},"2025-11-05",0.0118,{"date":176,"score":170,"percentile":177},"2025-11-06",0.0119,{"date":179,"score":170,"percentile":180},"2025-11-07",0.01192,{"date":182,"score":170,"percentile":183},"2025-11-08",0.01195,{"date":185,"score":170,"percentile":186},"2025-11-09",0.01193,{"date":188,"score":170,"percentile":189},"2025-11-10",0.01184,{"date":191,"score":170,"percentile":192},"2025-11-11",0.01187,{"date":194,"score":170,"percentile":195},"2025-11-12",0.01188,{"date":197,"score":170,"percentile":180},"2025-11-13",{"date":199,"score":170,"percentile":200},"2025-11-14",0.01206,{"date":202,"score":170,"percentile":203},"2025-11-15",0.01222,{"date":205,"score":170,"percentile":203},"2025-11-16",{"date":207,"score":170,"percentile":208},"2025-11-17",0.01215,{"date":210,"score":211,"percentile":212},"2025-11-18",0.0007,0.17403,{"date":214,"score":211,"percentile":215},"2025-11-19",0.17422,{"date":217,"score":211,"percentile":218},"2025-11-20",0.17397,{"date":220,"score":170,"percentile":221},"2025-11-21",0.01265,{"date":223,"score":170,"percentile":224},"2025-11-22",0.0126,{"date":226,"score":170,"percentile":227},"2025-11-23",0.0125,{"date":229,"score":170,"percentile":230},"2025-11-24",0.01245,{"date":232,"score":170,"percentile":233},"2025-11-25",0.01238,{"date":235,"score":170,"percentile":236},"2025-11-26",0.01176,{"date":238,"score":170,"percentile":239},"2025-11-27",0.01173,{"date":241,"score":170,"percentile":174},"2025-11-28",{"date":243,"score":170,"percentile":208},"2025-11-29",{"date":245,"score":170,"percentile":203},"2025-11-30",{"date":247,"score":170,"percentile":248},"2025-12-01",0.01251,{"date":250,"score":170,"percentile":251},"2025-12-02",0.01246,{"date":253,"score":170,"percentile":227},"2025-12-03",{"date":255,"score":170,"percentile":256},"2025-12-04",0.01223,{"date":258,"score":170,"percentile":233},"2025-12-05",{"date":260,"score":170,"percentile":261},"2025-12-06",0.0124,{"date":263,"score":170,"percentile":264},"2025-12-07",0.01239,{"date":266,"score":170,"percentile":267},"2025-12-08",0.01241,{"date":269,"score":170,"percentile":270},"2025-12-09",0.01253,{"date":272,"score":273,"percentile":274},"2025-12-10",0.0002,0.04637,{"date":276,"score":273,"percentile":277},"2025-12-11",0.04631,{"date":279,"score":273,"percentile":280},"2025-12-12",0.04645,{"date":282,"score":273,"percentile":283},"2025-12-13",0.04686,{"date":285,"score":273,"percentile":286},"2025-12-14",0.04676,{"date":288,"score":273,"percentile":289},"2025-12-15",0.04634,{"date":291,"score":273,"percentile":292},"2025-12-16",0.0464,{"date":294,"score":273,"percentile":295},"2025-12-17",0.04696,{"date":297,"score":273,"percentile":298},"2025-12-18",0.04732,{"date":300,"score":273,"percentile":301},"2025-12-19",0.04719,{"date":303,"score":273,"percentile":304},"2025-12-20",0.04712,{"date":306,"score":273,"percentile":307},"2025-12-21",0.04737,{"date":309,"score":273,"percentile":310},"2025-12-22",0.04674,{"date":312,"score":273,"percentile":313},"2025-12-23",0.04684,{"date":315,"score":273,"percentile":316},"2025-12-24",0.04707,{"date":318,"score":273,"percentile":319},"2025-12-25",0.04745,{"date":321,"score":273,"percentile":322},"2025-12-26",0.04746,{"date":324,"score":273,"percentile":319},"2025-12-27",{"date":326,"score":273,"percentile":327},"2025-12-28",0.04739,{"date":329,"score":273,"percentile":330},"2025-12-29",0.04733,{"date":332,"score":273,"percentile":333},"2025-12-30",0.04673,{"date":335,"score":273,"percentile":336},"2025-12-31",0.04691,{"date":338,"score":273,"percentile":339},"2026-01-01",0.04769,{"date":341,"score":273,"percentile":339},"2026-01-02",{"date":343,"score":273,"percentile":344},"2026-01-03",0.04753,{"date":346,"score":273,"percentile":347},"2026-01-04",0.04652,{"date":349,"score":273,"percentile":350},"2026-01-05",0.04588,{"date":352,"score":273,"percentile":353},"2026-01-06",0.04585,{"date":355,"score":273,"percentile":356},"2026-01-07",0.04603,{"date":358,"score":273,"percentile":359},"2026-01-08",0.04633,{"date":361,"score":273,"percentile":362},"2026-01-09",0.04632,{"date":364,"score":273,"percentile":365},"2026-01-10",0.04639,{"date":367,"score":273,"percentile":368},"2026-01-11",0.04623,{"date":370,"score":273,"percentile":289},"2026-01-12",{"date":372,"score":273,"percentile":373},"2026-01-13",0.04625,{"date":375,"score":273,"percentile":376},"2026-01-14",0.04669,{"date":378,"score":273,"percentile":379},"2026-01-15",0.04577,{"date":381,"score":273,"percentile":382},"2026-01-16",0.04543,{"date":384,"score":273,"percentile":385},"2026-01-17",0.04544,{"date":387,"score":273,"percentile":388},"2026-01-18",0.04528,{"date":390,"score":273,"percentile":391},"2026-01-19",0.04482,{"date":393,"score":273,"percentile":394},"2026-01-20",0.04437,{"date":396,"score":273,"percentile":397},"2026-01-21",0.04427,{"date":399,"score":273,"percentile":400},"2026-01-22",0.04411,{"date":402,"score":273,"percentile":403},"2026-01-23",0.0446,{"date":405,"score":273,"percentile":406},"2026-01-24",0.04504,{"date":408,"score":273,"percentile":409},"2026-01-25",0.04499,{"date":411,"score":273,"percentile":412},"2026-01-26",0.04486,{"date":414,"score":273,"percentile":415},"2026-01-27",0.04475,{"date":417,"score":273,"percentile":403},"2026-01-28",{"date":419,"score":273,"percentile":420},"2026-01-29",0.04477,{"date":422,"score":273,"percentile":423},"2026-01-30",0.04485,{"date":425,"score":273,"percentile":426},"2026-01-31",0.04463,{"date":428,"score":273,"percentile":429},"2026-02-01",0.04579,[431],{"source":121,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":432,"cvss_v4_0":9},{"baseScore":119,"baseSeverity":433,"vectorString":122,"impactScore":434,"exploitabilityScore":435},"MEDIUM",6,4.6,[437,466],{"ecosystem":9,"name":438,"vendor":439,"product":439,"cpe_part":440,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":441},"Linux","linux","a",[442,449,452,455,458,461,464],{"version":443,"is_range":444,"range_type":127,"version_start":445,"version_start_type":446,"version_end":447,"version_end_type":448,"fixed_in":9},">= 7cbb0c63de3fc218fd06ecfedb477772a4d12f76, \u003C fcdd5bb4a8c81c64c1334d7e0aba41a8829a24de",true,"7cbb0c63de3fc218fd06ecfedb477772a4d12f76","including","fcdd5bb4a8c81c64c1334d7e0aba41a8829a24de","excluding",{"version":450,"is_range":444,"range_type":127,"version_start":445,"version_start_type":446,"version_end":451,"version_end_type":448,"fixed_in":9},">= 7cbb0c63de3fc218fd06ecfedb477772a4d12f76, \u003C 0ccac964520a6f19e355652c8ca38af2a7f27076","0ccac964520a6f19e355652c8ca38af2a7f27076",{"version":453,"is_range":444,"range_type":127,"version_start":445,"version_start_type":446,"version_end":454,"version_end_type":448,"fixed_in":9},">= 7cbb0c63de3fc218fd06ecfedb477772a4d12f76, \u003C 8bf574183282d219cfa991f7df37aad491d74c11","8bf574183282d219cfa991f7df37aad491d74c11",{"version":456,"is_range":444,"range_type":127,"version_start":445,"version_start_type":446,"version_end":457,"version_end_type":448,"fixed_in":9},">= 7cbb0c63de3fc218fd06ecfedb477772a4d12f76, \u003C 8e3c94767cad5150198e4337c8b91f3bb068e14b","8e3c94767cad5150198e4337c8b91f3bb068e14b",{"version":459,"is_range":444,"range_type":127,"version_start":445,"version_start_type":446,"version_end":460,"version_end_type":448,"fixed_in":9},">= 7cbb0c63de3fc218fd06ecfedb477772a4d12f76, \u003C c660be571609e03e7d5972343536a736fcb31557","c660be571609e03e7d5972343536a736fcb31557",{"version":462,"is_range":444,"range_type":127,"version_start":445,"version_start_type":446,"version_end":463,"version_end_type":448,"fixed_in":9},">= 7cbb0c63de3fc218fd06ecfedb477772a4d12f76, \u003C 244296cc3a155199a8b080d19e645d7d49081a38","244296cc3a155199a8b080d19e645d7d49081a38",{"version":465,"is_range":115,"range_type":127,"version_start":465,"version_start_type":446,"version_end":465,"version_end_type":446,"fixed_in":9},"5.9",{"ecosystem":9,"name":467,"vendor":439,"product":468,"cpe_part":469,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":470},"linux kernel","linux_kernel","o",[471,475,479,483,487],{"version":472,"is_range":444,"range_type":473,"version_start":465,"version_start_type":446,"version_end":474,"version_end_type":448,"fixed_in":9},"gte5.9_lt5.10.216","cpe","5.10.216",{"version":476,"is_range":444,"range_type":473,"version_start":477,"version_start_type":446,"version_end":478,"version_end_type":448,"fixed_in":9},"gte5.11_lt5.15.158","5.11","5.15.158",{"version":480,"is_range":444,"range_type":473,"version_start":481,"version_start_type":446,"version_end":482,"version_end_type":448,"fixed_in":9},"gte5.16_lt6.1.90","5.16","6.1.90",{"version":484,"is_range":444,"range_type":473,"version_start":485,"version_start_type":446,"version_end":486,"version_end_type":448,"fixed_in":9},"gte6.2_lt6.6.30","6.2","6.6.30",{"version":488,"is_range":444,"range_type":473,"version_start":489,"version_start_type":446,"version_end":490,"version_end_type":448,"fixed_in":9},"gte6.7_lt6.8.9","6.7","6.8.9"]