6.9

CVSS4.0

CVE-2025-14209 - Campcodes School File Management System update_query.php sql injection

A weakness has been identified in Campcodes School File Management System 1.0. This impacts an unknown function of the file /update_query.php. This manipulation of the argument stud_id causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and …

πŸ“… Published: Dec. 8, 2025, 1:32 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:32 a.m.

0.0

CVE-2023-53769 - virt/coco/sev-guest: Double-buffer messages

In the Linux kernel, the following vulnerability has been resolved: virt/coco/sev-guest: Double-buffer messages The encryption algorithms read and write directly to shared unencrypted memory, which may leak information as well as permit the host to tamper with the message integrity. Instead, copy…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53768 - regmap-irq: Fix out-of-bounds access when allocating config buffers

In the Linux kernel, the following vulnerability has been resolved: regmap-irq: Fix out-of-bounds access when allocating config buffers When allocating the 2D array for handling IRQ type registers in regmap_add_irq_chip_fwnode(), the intent is to allocate a matrix with num_config_bases rows and n…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53767 - wifi: ath12k: fix memory leak in ath12k_qmi_driver_event_work()

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix memory leak in ath12k_qmi_driver_event_work() Currently the buffer pointed by event is not freed in case ATH12K_FLAG_UNREGISTERING bit is set, this causes memory leak. Add a goto skip instead of return, to ensu…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53766 - FS: JFS: Check for read-only mounted filesystem in txBegin

In the Linux kernel, the following vulnerability has been resolved: FS: JFS: Check for read-only mounted filesystem in txBegin This patch adds a check for read-only mounted filesystem in txBegin before starting a transaction potentially saving from NULL pointer deref.

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53765 - dm cache: free background tracker's queued work in btracker_destroy

In the Linux kernel, the following vulnerability has been resolved: dm cache: free background tracker's queued work in btracker_destroy Otherwise the kernel can BUG with: [ 2245.426978] ============================================================================= [ 2245.435155] BUG bt_work (Tain…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53764 - wifi: ath12k: Handle lock during peer_id find

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Handle lock during peer_id find ath12k_peer_find_by_id() requires that the caller hold the ab->base_lock. Currently the WBM error path does not hold the lock and calling that function, leads to the following lockdep…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53763 - Revert "f2fs: fix to do sanity check on extent cache correctly"

In the Linux kernel, the following vulnerability has been resolved: Revert "f2fs: fix to do sanity check on extent cache correctly" syzbot reports a f2fs bug as below: UBSAN: array-index-out-of-bounds in fs/f2fs/f2fs.h:3275:19 index 1409 is out of range for type '__le32[923]' (aka 'unsigned int[…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53762 - Bluetooth: hci_sync: Fix UAF in hci_disconnect_all_sync

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix UAF in hci_disconnect_all_sync Use-after-free can occur in hci_disconnect_all_sync if a connection is deleted by concurrent processing of a controller event. To prevent this the code now tries to iterate…

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.

0.0

CVE-2023-53761 - USB: usbtmc: Fix direction for 0-length ioctl control messages

In the Linux kernel, the following vulnerability has been resolved: USB: usbtmc: Fix direction for 0-length ioctl control messages The syzbot fuzzer found a problem in the usbtmc driver: When a user submits an ioctl for a 0-length control transfer, the driver does not check that the direction is …

πŸ“… Published: Dec. 8, 2025, 1:19 a.m. πŸ”„ Last Modified: Dec. 8, 2025, 1:19 a.m.
Total resulsts: 320555
Page 1 of 32,056
Β» next page
Filters