5.5

CVSS3.1

CVE-2023-54312 - samples/bpf: Fix buffer overflow in tcp_basertt

In the Linux kernel, the following vulnerability has been resolved: samples/bpf: Fix buffer overflow in tcp_basertt Using sizeof(nv) or strlen(nv)+1 is correct.

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

5.5

CVSS3.1

CVE-2023-54270 - media: usb: siano: Fix use after free bugs caused by do_submit_urb

In the Linux kernel, the following vulnerability has been resolved: media: usb: siano: Fix use after free bugs caused by do_submit_urb There are UAF bugs caused by do_submit_urb(). One of the KASan reports is shown below: [ 36.403605] BUG: KASAN: use-after-free in worker_thread+0x4a2/0x890 [ …

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

7.0

CVSS3.1

CVE-2022-50849 - pstore: Avoid kcore oops by vmap()ing with VM_IOREMAP

In the Linux kernel, the following vulnerability has been resolved: pstore: Avoid kcore oops by vmap()ing with VM_IOREMAP An oops can be induced by running 'cat /proc/kcore > /dev/null' on devices using pstore with the ram backend because kmap_atomic() assumes lowmem pages are accessible with __v…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

0.0

CVE-2023-54250 - ksmbd: avoid out of bounds access in decode_preauth_ctxt()

In the Linux kernel, the following vulnerability has been resolved: ksmbd: avoid out of bounds access in decode_preauth_ctxt() Confirm that the accessed pneg_ctxt->HashAlgorithms address sits within the SMB request boundary; deassemble_neg_contexts() only checks that the eight byte smb2_neg_conte…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 11:37 a.m.

5.5

CVSS3.1

CVE-2023-54220 - serial: 8250: Fix oops for port->pm on uart_change_pm()

In the Linux kernel, the following vulnerability has been resolved: serial: 8250: Fix oops for port->pm on uart_change_pm() Unloading a hardware specific 8250 driver can produce error "Unable to handle kernel paging request at virtual address" about ten seconds after unloading the driver. This ha…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

5.5

CVSS3.1

CVE-2022-50887 - regulator: core: fix unbalanced of node refcount in regulator_dev_lookup()

In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix unbalanced of node refcount in regulator_dev_lookup() I got the the following report: OF: ERROR: memory leak, expected refcount 1 instead of 2, of_node_get()/of_node_put() unbalanced - destroy cset entry…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

5.5

CVSS3.1

CVE-2023-54244 - ACPI: EC: Fix oops when removing custom query handlers

In the Linux kernel, the following vulnerability has been resolved: ACPI: EC: Fix oops when removing custom query handlers When removing custom query handlers, the handler might still be used inside the EC query workqueue, causing a kernel oops if the module holding the callback function was alre…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 11:36 a.m.

7.0

CVSS3.1

CVE-2023-54239 - iommufd: Check for uptr overflow

In the Linux kernel, the following vulnerability has been resolved: iommufd: Check for uptr overflow syzkaller found that setting up a map with a user VA that wraps past zero can trigger WARN_ONs, particularly from pin_user_pages weirdly returning 0 due to invalid arguments. Prevent creating a p…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

7.0

CVSS3.1

CVE-2022-50852 - wifi: mt76: mt7921: fix use after free in mt7921_acpi_read()

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: fix use after free in mt7921_acpi_read() Don't dereference "sar_root" after it has been freed.

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

9.8

CVSS3.1

CVE-2025-66848 -

JD Cloud NAS routers AX1800 (4.3.1.r4308 and earlier), AX3000 (4.3.1.r4318 and earlier), AX6600 (4.5.1.r4533 and earlier), BE6500 (4.4.1.r4308 and earlier), ER1 (4.5.1.r4518 and earlier), and ER2 (4.5.1.r4518 and earlier) contain an unauthorized remote command execution vulnerability.

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 9, 2026, 7:57 p.m.
Total resulsts: 343749
Page 1822 of 34,375
Β« previous page Β» next page
Filters