5.5

CVSS3.1

CVE-2022-50645 - EDAC/i10nm: fix refcount leak in pci_get_dev_wrapper()

In the Linux kernel, the following vulnerability has been resolved: EDAC/i10nm: fix refcount leak in pci_get_dev_wrapper() As the comment of pci_get_domain_bus_and_slot() says, it returns a PCI device with refcount incremented, so it doesn't need to call an extra pci_dev_get() in pci_get_dev_wrap…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 9, 2025, 6:37 p.m.

7.0

CVSS3.1

CVE-2025-40342 - nvme-fc: use lock accessing port_state and rport state

In the Linux kernel, the following vulnerability has been resolved: nvme-fc: use lock accessing port_state and rport state nvme_fc_unregister_remote removes the remote port on a lport object at any point in time when there is no active association. This races with with the reconnect logic, becaus…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 20, 2025, 8:52 a.m.

7.0

CVSS3.1

CVE-2025-40329 - drm/sched: Fix deadlock in drm_sched_entity_kill_jobs_cb

In the Linux kernel, the following vulnerability has been resolved: drm/sched: Fix deadlock in drm_sched_entity_kill_jobs_cb The Mesa issue referenced below pointed out a possible deadlock: [ 1231.611031] Possible interrupt unsafe locking scenario: [ 1231.611033] CPU0 …

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 9, 2025, 6:36 p.m.

5.5

CVSS3.1

CVE-2023-53822 - wifi: ath11k: Ignore frags from uninitialized peer in dp.

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: Ignore frags from uninitialized peer in dp. When max virtual ap interfaces are configured in all the bands with ACS and hostapd restart is done every 60s, a crash is observed at random times. In this certain scenari…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 20, 2025, 8:51 a.m.

7.0

CVSS3.1

CVE-2023-53841 - devlink: report devlink_port_type_warn source device

In the Linux kernel, the following vulnerability has been resolved: devlink: report devlink_port_type_warn source device devlink_port_type_warn is scheduled for port devlink and warning when the port type is not set. But from this warning it is not easy found out which device (driver) has no devl…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:33 a.m.

5.5

CVSS3.1

CVE-2022-50674 - riscv: vdso: fix NULL deference in vdso_join_timens() when vfork

In the Linux kernel, the following vulnerability has been resolved: riscv: vdso: fix NULL deference in vdso_join_timens() when vfork Testing tools/testing/selftests/timens/vfork_exec.c got below kernel log: [ 6.838454] Unable to handle kernel access to user memory without uaccess routines at …

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 9, 2025, 6:37 p.m.

9.8

CVSS3.1

CVE-2025-65882 -

An issue was discovered in openmptcprouter thru 0.64 in file common/package/utils/sys-upgrade-helper/src/tools/sysupgrade.c in function create_xor_ipad_opad allowing attackers to potentially write arbitrary files or execute arbitrary commands.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 9:30 p.m.

5.5

CVSS3.1

CVE-2023-53805 - kernel: tty: n_gsm: fix UAF in gsm_cleanup_mux

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 9, 2025, 4:17 p.m.

5.4

CVSS3.1

CVE-2025-65300 -

A stored Cross-Site Scripting (XSS) vulnerability exists in the Coohom SaaS Platform feVersion=1760060603897 (2025-10-28) in the Account Settings module, where unsanitized user input in Address fields (City, State, Country/Region) is rendered back to the page. Attackers can inject arbitrary JavaScr…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 7:57 p.m.

6.1

CVSS3.1

CVE-2025-65289 -

A stored Cross site scripting (XSS) vulnerability in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) router allows a remote attacker on the LAN to inject JavaScript into the router's management UI by submitting a malicious hostname. The injected script is stored and later executed in t…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 12, 2025, 2:31 p.m.
Total resulsts: 343948
Page 2231 of 34,395
Β« previous page Β» next page
Filters