5.3

CVSS3.1

CVE-2025-71225 - md: suspend array while updating raid_disks via sysfs

In the Linux kernel, the following vulnerability has been resolved: md: suspend array while updating raid_disks via sysfs In raid1_reshape(), freeze_array() is called before modifying the r1bio memory pool (conf->r1bio_pool) and conf->raid_disks, and unfreeze_array() is called after the update is…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 8:44 p.m.

5.5

CVSS3.1

CVE-2025-71230 - hfs: ensure sb->s_fs_info is always cleaned up

In the Linux kernel, the following vulnerability has been resolved: hfs: ensure sb->s_fs_info is always cleaned up When hfs was converted to the new mount api a bug was introduced by changing the allocation pattern of sb->s_fs_info. If setup_bdev_super() fails after a new superblock has been allo…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 5:18 p.m.

5.5

CVSS3.1

CVE-2026-23228 - smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection()

In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthread_run() failure in ksmbd_tcp_new_connection(), the transport is freed via free_transport(), which does not decrement active_num_conn, leaking this co…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 1:27 p.m.

5.5

CVSS3.1

CVE-2025-71227 - wifi: mac80211: don't WARN for connections on invalid channels

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: don't WARN for connections on invalid channels It's not clear (to me) how exactly syzbot managed to hit this, but it seems conceivable that e.g. regulatory changed and has disabled a channel between scanning (chan…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 8:40 p.m.

7.5

CVSS3.1

CVE-2025-70147 -

Missing authentication in /admin/student.php and /admin/teacher.php in ProjectWorlds Online Time Table Generator 1.0 allows remote attackers to obtain sensitive information (including plaintext password field values) via direct HTTP GET requests to these endpoints without a valid session.

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 20, 2026, 8:07 p.m.

5.5

CVSS3.1

CVE-2026-23217 - riscv: trace: fix snapshot deadlock with sbi ecall

In the Linux kernel, the following vulnerability has been resolved: riscv: trace: fix snapshot deadlock with sbi ecall If sbi_ecall.c's functions are traceable, echo "__sbi_ecall:snapshot" > /sys/kernel/tracing/set_ftrace_filter may get the kernel into a deadlock. (Functions in sbi_ecall.c are…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 5:36 p.m.

5.5

CVSS3.1

CVE-2026-23213 - drm/amd/pm: Disable MMIO access during SMU Mode 1 reset

In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Disable MMIO access during SMU Mode 1 reset During Mode 1 reset, the ASIC undergoes a reset cycle and becomes temporarily inaccessible via PCIe. Any attempt to access MMIO registers during this window (e.g., from inte…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 8:35 p.m.

5.5

CVSS3.1

CVE-2025-71236 - scsi: qla2xxx: Validate sp before freeing associated memory

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate sp before freeing associated memory System crash with the following signature [154563.214890] nvme nvme2: NVME-FC{1}: controller connect complete [154564.169363] qla2xxx [0000:b0:00.1]-3002:2: nvme: Sched:…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 2:59 p.m.

6.5

CVSS3.1

CVE-2025-65519 -

mayswind ezbookkeeping versions 1.2.0 and earlier contain a critical vulnerability in JSON and XML file import processing. The application fails to validate nesting depth during parsing operations, allowing authenticated attackers to trigger denial of service conditions by uploading deeply nested m…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 20, 2026, 8:08 p.m.

5.5

CVSS3.1

CVE-2025-71229 - wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon()

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon() rtw_core_enable_beacon() reads 4 bytes from an address that is not a multiple of 4. This results in a crash on some systems. Do 1 byte reads/writes instead. Unable to…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 5:27 p.m.
Total resulsts: 343926
Page 1076 of 34,393
Β« previous page Β» next page
Filters