5.5

CVSS3.1

CVE-2025-68753 - ALSA: firewire-motu: add bounds check in put_user loop for DSP events

In the Linux kernel, the following vulnerability has been resolved: ALSA: firewire-motu: add bounds check in put_user loop for DSP events In the DSP event handling code, a put_user() loop copies event data. When the user buffer size is not aligned to 4 bytes, it could overwrite beyond the buffer …

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Feb. 9, 2026, 8:32 a.m.

0.0

CVE-2025-68754 - rtc: amlogic-a4: fix double free caused by devm

In the Linux kernel, the following vulnerability has been resolved: rtc: amlogic-a4: fix double free caused by devm The clock obtained via devm_clk_get_enabled() is automatically managed by devres and will be disabled and freed on driver detach. Manually calling clk_disable_unprepare() in error p…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Feb. 9, 2026, 8:32 a.m.

0.0

CVE-2025-68766 - irqchip/mchp-eic: Fix error code in mchp_eic_domain_alloc()

In the Linux kernel, the following vulnerability has been resolved: irqchip/mchp-eic: Fix error code in mchp_eic_domain_alloc() If irq_domain_translate_twocell() sets "hwirq" to >= MCHP_EIC_NIRQ (2) then it results in an out of bounds access. The code checks for invalid values, but doesn't set t…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Feb. 9, 2026, 8:33 a.m.

5.5

CVSS3.1

CVE-2025-68756 - block: Use RCU in blk_mq_[un]quiesce_tagset() instead of set->tag_list_lock

In the Linux kernel, the following vulnerability has been resolved: block: Use RCU in blk_mq_[un]quiesce_tagset() instead of set->tag_list_lock blk_mq_{add,del}_queue_tag_set() functions add and remove queues from tagset, the functions make sure that tagset and queues are marked as shared when tw…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Feb. 9, 2026, 8:33 a.m.

7.8

CVSS3.1

CVE-2025-57836 -

An issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder with weak permissions during installation, allowing a non-admin user to perform DLL hijacking and escalate privileges.

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Jan. 30, 2026, 1:26 a.m.

7.5

CVSS3.1

CVE-2025-67419 -

A Denial of Service (DoS) vulnerability in evershop 2.1.0 and prior allows unauthenticated attackers to exhaust the application server's resources via the "GET /images" API. The application fails to limit the height of the use-element shadow tree or the dimensions of pattern tiles during the proces…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 6:12 p.m.

6.5

CVSS3.1

CVE-2025-67427 -

A Blind Server-Side Request Forgery (SSRF) vulnerability in evershop 2.1.0 and prior allows unauthenticated attackers to force the server to initiate an HTTP request via the "GET /images" API. The vulnerability occurs due to insufficient validation of the "src" query parameter, which permits arbitr…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 6:12 p.m.

7.0

CVSS3.1

CVE-2025-68752 - iavf: Implement settime64 with -EOPNOTSUPP

In the Linux kernel, the following vulnerability has been resolved: iavf: Implement settime64 with -EOPNOTSUPP ptp_clock_settime() assumes every ptp_clock has implemented settime64(). Stub it with -EOPNOTSUPP to prevent a NULL dereference. The fix is similar to commit 329d050bbe63 ("gve: Impleme…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Feb. 9, 2026, 8:32 a.m.

7.1

CVSS3.1

CVE-2025-52519 -

An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, 1580, and 2500. Improper validation of user-space input in the issimian device driver leads to information disclosure and a denial of service.

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Jan. 30, 2026, 1:29 a.m.

0.0

CVE-2025-68760 - iommu/amd: Fix potential out-of-bounds read in iommu_mmio_show

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix potential out-of-bounds read in iommu_mmio_show In iommu_mmio_write(), it validates the user-provided offset with the check: `iommu->dbg_mmio_offset > iommu->mmio_phys_end - 4`. This assumes a 4-byte access. Howeve…

πŸ“… Published: Jan. 5, 2026, midnight πŸ”„ Last Modified: Feb. 9, 2026, 8:33 a.m.
Total resulsts: 344059
Page 1786 of 34,406
Β« previous page Β» next page
Filters