0.0

CVE-2025-39815 - RISC-V: KVM: fix stack overrun when loading vlenb

In the Linux kernel, the following vulnerability has been resolved: RISC-V: KVM: fix stack overrun when loading vlenb The userspace load can put up to 2048 bits into an xlen bit stack buffer. We want only xlen bits, so check the size beforehand.

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39814 - ice: fix NULL pointer dereference in ice_unplug_aux_dev() on reset

In the Linux kernel, the following vulnerability has been resolved: ice: fix NULL pointer dereference in ice_unplug_aux_dev() on reset Issuing a reset when the driver is loaded without RDMA support, will results in a crash as it attempts to remove RDMA's non-existent auxbus device: echo 1 > /sys/…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39813 - ftrace: Fix potential warning in trace_printk_seq during ftrace_dump

In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix potential warning in trace_printk_seq during ftrace_dump When calling ftrace_dump_one() concurrently with reading trace_pipe, a WARN_ON_ONCE() in trace_printk_seq() can be triggered due to a race condition. The issue…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39812 - sctp: initialize more fields in sctp_v6_from_sk()

In the Linux kernel, the following vulnerability has been resolved: sctp: initialize more fields in sctp_v6_from_sk() syzbot found that sin6_scope_id was not properly initialized, leading to undefined behavior. Clear sin6_scope_id and sin6_flowinfo. BUG: KMSAN: uninit-value in __sctp_v6_cmp_add…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39811 - drm/xe/vm: Clear the scratch_pt pointer on error

In the Linux kernel, the following vulnerability has been resolved: drm/xe/vm: Clear the scratch_pt pointer on error Avoid triggering a dereference of an error pointer on cleanup in xe_vm_free_scratch() by clearing any scratch_pt error pointer. (cherry picked from commit 358ee50ab565f3c8ea32480e…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39810 - bnxt_en: Fix memory corruption when FW resources change during ifdown

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix memory corruption when FW resources change during ifdown bnxt_set_dflt_rings() assumes that it is always called before any TC has been created. So it doesn't take bp->num_tc into account and assumes that it is alway…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39809 - HID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd ICRS/ISUB length

In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd ICRS/ISUB length The QuickI2C ACPI _DSD methods return ICRS and ISUB data with a trailing byte, making the actual length is one more byte than the structs defined. It caused stack…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39808 - HID: hid-ntrig: fix unable to handle page fault in ntrig_report_version()

In the Linux kernel, the following vulnerability has been resolved: HID: hid-ntrig: fix unable to handle page fault in ntrig_report_version() in ntrig_report_version(), hdev parameter passed from hid_probe(). sending descriptor to /dev/uhid can make hdev->dev.parent->parent to null if hdev->dev.p…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39807 - drm/mediatek: Add error handling for old state CRTC in atomic_disable

In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: Add error handling for old state CRTC in atomic_disable Introduce error handling to address an issue where, after a hotplug event, the cursor continues to update. This situation can lead to a kernel panic due to acc…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.

0.0

CVE-2025-39806 - HID: multitouch: fix slab out-of-bounds access in mt_report_fixup()

In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: fix slab out-of-bounds access in mt_report_fixup() A malicious HID device can trigger a slab out-of-bounds during mt_report_fixup() by passing in report descriptor smaller than 607 bytes. mt_report_fixup() attemp…

πŸ“… Published: Sept. 16, 2025, 1 p.m. πŸ”„ Last Modified: Sept. 16, 2025, 1 p.m.
Total resulsts: 310194
Page 10 of 31,020
Β« previous page Β» next page
Filters