5.5

CVSS3.1

CVE-2025-40072 - fanotify: Validate the return value of mnt_ns_from_dentry() before dereferencing

In the Linux kernel, the following vulnerability has been resolved: fanotify: Validate the return value of mnt_ns_from_dentry() before dereferencing The function do_fanotify_mark() does not validate if mnt_ns_from_dentry() returns NULL before dereferencing mntns->user_ns. This causes a NULL pointโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

5.5

CVSS3.1

CVE-2025-40045 - ASoC: codecs: wcd937x: set the comp soundwire port correctly

In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd937x: set the comp soundwire port correctly For some reason we endup with setting soundwire port for HPHL_COMP and HPHR_COMP as zero, this can potentially result in a memory corruption due to accessing and settinโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

5.5

CVSS3.1

CVE-2025-40028 - binder: fix double-free in dbitmap

In the Linux kernel, the following vulnerability has been resolved: binder: fix double-free in dbitmap A process might fail to allocate a new bitmap when trying to expand its proc->dmap. In that case, dbitmap_grow() fails and frees the old bitmap via dbitmap_free(). However, the driver calls dbitโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

7.0

CVSS3.1

CVE-2025-40044 - fs: udf: fix OOB read in lengthAllocDescs handling

In the Linux kernel, the following vulnerability has been resolved: fs: udf: fix OOB read in lengthAllocDescs handling When parsing Allocation Extent Descriptor, lengthAllocDescs comes from on-disk data and must be validated against the block size. Crafted or corrupted images may set lengthAllocDโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

5.5

CVSS3.1

CVE-2025-40043 - net: nfc: nci: Add parameter validation for packet data

In the Linux kernel, the following vulnerability has been resolved: net: nfc: nci: Add parameter validation for packet data Syzbot reported an uninitialized value bug in nci_init_req, which was introduced by commit 5aca7966d2a7 ("Merge tag 'perf-tools-fixes-for-v6.17-2025-09-16' of git://git.kernโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

7.0

CVSS3.1

CVE-2025-40034 - PCI/AER: Avoid NULL pointer dereference in aer_ratelimit()

In the Linux kernel, the following vulnerability has been resolved: PCI/AER: Avoid NULL pointer dereference in aer_ratelimit() When platform firmware supplies error information to the OS, e.g., via the ACPI APEI GHES mechanism, it may identify an error source device that doesn't advertise an AER โ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

5.5

CVSS3.1

CVE-2025-40077 - f2fs: fix to avoid overflow while left shift operation

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid overflow while left shift operation Should cast type of folio->index from pgoff_t to loff_t to avoid overflow while left shift operation.

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

5.5

CVSS3.1

CVE-2025-40041 - LoongArch: BPF: Sign-extend struct ops return values properly

In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Sign-extend struct ops return values properly The ns_bpf_qdisc selftest triggers a kernel panic: Oops[#1]: CPU 0 Unable to handle kernel paging request at virtual address 0000000000741d58, era == 90000000851bโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

7.0

CVSS3.1

CVE-2025-40071 - tty: n_gsm: Don't block input queue by waiting MSC

In the Linux kernel, the following vulnerability has been resolved: tty: n_gsm: Don't block input queue by waiting MSC Currently gsm_queue() processes incoming frames and when opening a DLC channel it calls gsm_dlci_open() which calls gsm_modem_update(). If basic mode is used it calls gsm_modem_uโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

5.5

CVSS3.1

CVE-2025-40035 - Input: uinput - zero-initialize uinput_ff_upload_compat to avoid info leak

In the Linux kernel, the following vulnerability has been resolved: Input: uinput - zero-initialize uinput_ff_upload_compat to avoid info leak Struct ff_effect_compat is embedded twice inside uinput_ff_upload_compat, contains internal padding. In particular, there is a hole after struct ff_replayโ€ฆ

๐Ÿ“… Published: Oct. 28, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.
Total resulsts: 316969
Page 102 of 31,697
ยซ previous page ยป next page
Filters