2.3

CVSS4.0

CVE-2025-10014 - elunez eladmin Email Address updateEmail updateUserEmail improper authorization

A flaw has been found in elunez eladmin up to 2.7. This impacts the function updateUserEmail of the file /api/users/updateEmail/ of the component Email Address Handler. Executing manipulation of the argument id/email can lead to improper authorization. The attack may be performed from remote. Attac…

πŸ“… Published: Sept. 5, 2025, 5:32 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:41 p.m.

0.0

CVE-2025-39726 - s390/ism: fix concurrency management in ism_cmd()

In the Linux kernel, the following vulnerability has been resolved: s390/ism: fix concurrency management in ism_cmd() The s390x ISM device data sheet clearly states that only one request-response sequence is allowable per ISM function at any point in time. Unfortunately as of today the s390/ism …

πŸ“… Published: Sept. 5, 2025, 5:27 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:27 p.m.

0.0

CVE-2025-39725 - mm/vmscan: fix hwpoisoned large folio handling in shrink_folio_list

In the Linux kernel, the following vulnerability has been resolved: mm/vmscan: fix hwpoisoned large folio handling in shrink_folio_list In shrink_folio_list(), the hwpoisoned folio may be large folio, which can't be handled by unmap_poisoned_folio(). For THP, try_to_unmap_one() must be passed wi…

πŸ“… Published: Sept. 5, 2025, 5:27 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:27 p.m.

0.0

CVE-2025-39724 - serial: 8250: fix panic due to PSLVERR

In the Linux kernel, the following vulnerability has been resolved: serial: 8250: fix panic due to PSLVERR When the PSLVERR_RESP_EN parameter is set to 1, the device generates an error response if an attempt is made to read an empty RBR (Receive Buffer Register) while the FIFO is enabled. In ser…

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.

0.0

CVE-2025-39723 - netfs: Fix unbuffered write error handling

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix unbuffered write error handling If all the subrequests in an unbuffered write stream fail, the subrequest collector doesn't update the stream->transferred value and it retains its initial LONG_MAX value. Unfortunately…

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.

0.0

CVE-2025-39722 - crypto: caam - Prevent crash on suspend with iMX8QM / iMX8ULP

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - Prevent crash on suspend with iMX8QM / iMX8ULP Since the CAAM on these SoCs is managed by another ARM core, called the SECO (Security Controller) on iMX8QM and Secure Enclave on iMX8ULP, which also reserves access …

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.

0.0

CVE-2025-39721 - crypto: qat - flush misc workqueue during device shutdown

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - flush misc workqueue during device shutdown Repeated loading and unloading of a device specific QAT driver, for example qat_4xxx, in a tight loop can lead to a crash due to a use-after-free scenario. This occurs whe…

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.

0.0

CVE-2025-39720 - ksmbd: fix refcount leak causing resource not released

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix refcount leak causing resource not released When ksmbd_conn_releasing(opinfo->conn) returns true,the refcount was not decremented properly, causing a refcount leak that prevents the count from reaching zero and the mem…

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.

0.0

CVE-2025-39719 - iio: imu: bno055: fix OOB access of hw_xlate array

In the Linux kernel, the following vulnerability has been resolved: iio: imu: bno055: fix OOB access of hw_xlate array Fix a potential out-of-bounds array access of the hw_xlate array in bno055.c. In bno055_get_regmask(), hw_xlate was iterated over the length of the vals array instead of the len…

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.

0.0

CVE-2025-39718 - vsock/virtio: Validate length in packet header before skb_put()

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: Validate length in packet header before skb_put() When receiving a vsock packet in the guest, only the virtqueue buffer size is validated prior to virtio_vsock_skb_rx_put(). Unfortunately, virtio_vsock_skb_rx_put() …

πŸ“… Published: Sept. 5, 2025, 5:21 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 5:21 p.m.
Total resulsts: 310229
Page 160 of 31,023
Β« previous page Β» next page
Filters