7.0

CVSS3.1

CVE-2025-38089 - sunrpc: handle SVC_GARBAGE during svc auth processing as auth error

In the Linux kernel, the following vulnerability has been resolved: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error tianshuo han reported a remotely-triggerable crash if the client sends a kernel RPC server a specially crafted packet. If decoding the RPC reply fails in such a …

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 6:38 p.m.

7.0

CVSS3.1

CVE-2025-38088 - powerpc/powernv/memtrace: Fix out of bounds issue in memtrace mmap

In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv/memtrace: Fix out of bounds issue in memtrace mmap memtrace mmap issue has an out of bounds issue. This patch fixes the by checking that the requested mapping region size should stay within the allocated region si…

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 6:38 p.m.

7.0

CVSS3.1

CVE-2025-38087 - net/sched: fix use-after-free in taprio_dev_notifier

In the Linux kernel, the following vulnerability has been resolved: net/sched: fix use-after-free in taprio_dev_notifier Since taprio’s taprio_dev_notifier() isn’t protected by an RCU read-side critical section, a race with advance_sched() can lead to a use-after-free. Adding rcu_read_lock() ins…

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 6:38 p.m.

2.8

CVSS3.1

CVE-2025-32462 - sudo: LPE via host option

Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 9:15 p.m.

5.8

CVSS3.1

CVE-2025-49493 -

Akamai CloudTest before 60 2025.06.02 (12988) allows file inclusion via XML External Entity (XXE) injection.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 8:23 p.m.

9.3

CVSS3.1

CVE-2025-32463 - sudo: LPE via chroot option

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 9:15 p.m.

7.5

CVSS3.1

CVE-2024-53621 -

A buffer overflow in the formSetCfm() function of Tenda AC1206 1200M 11ac US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 8:15 p.m.

6.5

CVSS3.1

CVE-2023-47310 -

A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v7.14 allows incoming IPv6 UDP traceroute packets.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 8:15 p.m.

5.8

CVSS3.1

CVE-2025-52491 -

Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 8:24 p.m.

9.8

CVSS3.1

CVE-2025-45931 -

An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via system() function in the bin/goahead file

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: June 30, 2025, 7:15 p.m.
Total resulsts: 299957
Page 10 of 29,996
Β« previous page Β» next page
Filters