0.0

CVE-2025-38652 - f2fs: fix to avoid out-of-boundary access in devs.path

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in devs.path - touch /mnt/f2fs/012345678901234567890123456789012345678901234567890123 - truncate -s $((1024*1024*1024)) \ /mnt/f2fs/01234567890123456789012345678901234567890123456789012…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38651 - landlock: Fix warning from KUnit tests

In the Linux kernel, the following vulnerability has been resolved: landlock: Fix warning from KUnit tests get_id_range() expects a positive value as first argument but get_random_u8() can return 0. Fix this by clamping it. Validated by running the test in a for loop for 1000 times. Note that …

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38650 - hfsplus: remove mutex_lock check in hfsplus_free_extents

In the Linux kernel, the following vulnerability has been resolved: hfsplus: remove mutex_lock check in hfsplus_free_extents Syzbot reported an issue in hfsplus filesystem: ------------[ cut here ]------------ WARNING: CPU: 0 PID: 4400 at fs/hfsplus/extents.c:346 hfsplus_free_extents+0x700/0xad…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38649 - arm64: dts: qcom: qcs615: fix a crash issue caused by infinite loop for Coresight

In the Linux kernel, the following vulnerability has been resolved: arm64: dts: qcom: qcs615: fix a crash issue caused by infinite loop for Coresight An infinite loop has been created by the Coresight devices. When only a source device is enabled, the coresight_find_activated_sysfs_sink function …

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38648 - spi: stm32: Check for cfg availability in stm32_spi_probe

In the Linux kernel, the following vulnerability has been resolved: spi: stm32: Check for cfg availability in stm32_spi_probe The stm32_spi_probe function now includes a check to ensure that the pointer returned by of_device_get_match_data is not NULL before accessing its members. This resolves a…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38647 - wifi: rtw89: sar: drop lockdep assertion in rtw89_set_sar_from_acpi

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: sar: drop lockdep assertion in rtw89_set_sar_from_acpi The following assertion is triggered on the rtw89 driver startup. It looks meaningless to hold wiphy lock on the early init stage so drop the assertion. WARNIN…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38646 - wifi: rtw89: avoid NULL dereference when RX problematic packet on unsupported 6 GHz band

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: avoid NULL dereference when RX problematic packet on unsupported 6 GHz band With a quite rare chance, RX report might be problematic to make SW think a packet is received on 6 GHz band even if the chip does not suppo…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38645 - net/mlx5: Check device memory pointer before usage

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Check device memory pointer before usage Add a NULL check before accessing device memory to prevent a crash if dev->dm allocation in mlx5_init_once() fails.

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38644 - wifi: mac80211: reject TDLS operations when station is not associated

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: reject TDLS operations when station is not associated syzbot triggered a WARN in ieee80211_tdls_oper() by sending NL80211_TDLS_ENABLE_LINK immediately after NL80211_CMD_CONNECT, before association completed and wi…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.

0.0

CVE-2025-38643 - wifi: cfg80211: Add missing lock in cfg80211_check_and_end_cac()

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Add missing lock in cfg80211_check_and_end_cac() Callers of wdev_chandef() must hold the wiphy mutex. But the worker cfg80211_propagate_cac_done_wk() never takes the lock. Which triggers the warning below with th…

πŸ“… Published: Aug. 22, 2025, 4 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 4 p.m.
Total resulsts: 306861
Page 19 of 30,687
Β« previous page Β» next page
Filters