7.0

CVSS3.1

CVE-2022-50829 - wifi: ath9k: hif_usb: Fix use-after-free in ath9k_hif_usb_reg_in_cb()

In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: hif_usb: Fix use-after-free in ath9k_hif_usb_reg_in_cb() It is possible that skb is freed in ath9k_htc_rx_msg(), then usb_submit_urb() fails and we try to free skb again. It causes use-after-free bug. Moreover, if al…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

7.0

CVSS3.1

CVE-2023-54302 - RDMA/irdma: Fix data race on CQP completion stats

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix data race on CQP completion stats CQP completion statistics is read lockesly in irdma_wait_event and irdma_check_cqp_progress while it can be updated in the completion thread irdma_sc_ccq_get_cqe_info on another C…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

0.0

CVE-2023-54203 - ksmbd: fix slab-out-of-bounds in init_smb2_rsp_hdr

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds in init_smb2_rsp_hdr When smb1 mount fails, KASAN detect slab-out-of-bounds in init_smb2_rsp_hdr like the following one. For smb1 negotiate(56bytes) , init_smb2_rsp_hdr() for smb2 is called. The issu…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

5.5

CVSS3.1

CVE-2023-54170 - keys: Fix linking a duplicate key to a keyring's assoc_array

In the Linux kernel, the following vulnerability has been resolved: keys: Fix linking a duplicate key to a keyring's assoc_array When making a DNS query inside the kernel using dns_query(), the request code can in rare cases end up creating a duplicate index key in the assoc_array of the destinat…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

3.5

CVSS3.1

CVE-2025-66823 -

An HTML Injection vulnerability in TrueConf server 5.5.2.10813 in the conference description field allows an attacker to inject arbitrary HTML in the Create/Edit conference functionality. The payload will be triggered when the victim opens the Conference Info page ([conference url]/info).

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 3:39 p.m.

7.5

CVSS3.1

CVE-2025-61557 -

nixseparatedebuginfod before v0.4.1 is vulnerable to Directory Traversal.

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:26 p.m.

7.0

CVSS3.1

CVE-2023-54229 - wifi: ath11k: fix registration of 6Ghz-only phy without the full channel range

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix registration of 6Ghz-only phy without the full channel range Because of what seems to be a typo, a 6Ghz-only phy for which the BDF does not allow the 7115Mhz channel will fail to register: WARNING: CPU: 2 PID…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 11:36 a.m.

5.5

CVSS3.1

CVE-2023-54224 - btrfs: fix lockdep splat and potential deadlock after failure running delayed items

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix lockdep splat and potential deadlock after failure running delayed items When running delayed items we are holding a delayed node's mutex and then we will attempt to modify a subvolume btree to insert/update/delete the…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 12:15 p.m.

5.5

CVSS3.1

CVE-2023-54200 - netfilter: nf_tables: always release netdev hooks from notifier

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always release netdev hooks from notifier This reverts "netfilter: nf_tables: skip netdev events generated on netns removal". The problem is that when a veth device is released, the veth release callback wi…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

0.0

CVE-2023-54175 - i2c: xiic: xiic_xfer(): Fix runtime PM leak on error path

In the Linux kernel, the following vulnerability has been resolved: i2c: xiic: xiic_xfer(): Fix runtime PM leak on error path The xiic_xfer() function gets a runtime PM reference when the function is entered. This reference is released when the function is exited. There is currently one error pat…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.
Total resulsts: 343825
Page 1822 of 34,383
Β« previous page Β» next page
Filters