5.5

CVSS3.1

CVE-2023-53757 - irqchip/irq-mvebu-gicp: Fix refcount leak in mvebu_gicp_probe

In the Linux kernel, the following vulnerability has been resolved: irqchip/irq-mvebu-gicp: Fix refcount leak in mvebu_gicp_probe of_irq_find_parent() returns a node pointer with refcount incremented, We should use of_node_put() on it when not needed anymore. Add missing of_node_put() to avoid re…

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 8, 2025, 6:26 p.m.

5.5

CVSS3.1

CVE-2023-53758 - spi: atmel-quadspi: Free resources even if runtime resume failed in .remove()

In the Linux kernel, the following vulnerability has been resolved: spi: atmel-quadspi: Free resources even if runtime resume failed in .remove() An early error exit in atmel_qspi_remove() doesn't prevent the device unbind. So this results in an spi controller with an unbound parent and unmapped …

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 8, 2025, 6:26 p.m.

5.5

CVSS3.1

CVE-2025-40319 - bpf: Sync pending IRQ work before freeing ring buffer

In the Linux kernel, the following vulnerability has been resolved: bpf: Sync pending IRQ work before freeing ring buffer Fix a race where irq_work can be queued in bpf_ringbuf_commit() but the ring buffer is freed before the work executes. In the syzbot reproducer, a BPF program attached to sche…

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 8, 2025, 6:26 p.m.

5.5

CVSS3.1

CVE-2022-50626 - media: dvb-usb: fix memory leak in dvb_usb_adapter_init()

In the Linux kernel, the following vulnerability has been resolved: media: dvb-usb: fix memory leak in dvb_usb_adapter_init() Syzbot reports a memory leak in "dvb_usb_adapter_init()". The leak is due to not accounting for and freeing current iteration's adapter->priv in case of an error. Currentl…

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:30 p.m.

5.5

CVSS3.1

CVE-2022-50622 - ext4: fix potential memory leak in ext4_fc_record_modified_inode()

In the Linux kernel, the following vulnerability has been resolved: ext4: fix potential memory leak in ext4_fc_record_modified_inode() As krealloc may return NULL, in this case 'state->fc_modified_inodes' may not be freed by krealloc, but 'state->fc_modified_inodes' already set NULL. Then will le…

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:30 p.m.

7.0

CVSS3.1

CVE-2025-40309 - Bluetooth: SCO: Fix UAF on sco_conn_free

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_conn_free BUG: KASAN: slab-use-after-free in sco_conn_free net/bluetooth/sco.c:87 [inline] BUG: KASAN: slab-use-after-free in kref_put include/linux/kref.h:65 [inline] BUG: KASAN: slab-use-after-fre…

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 4:16 p.m.

5.5

CVSS3.1

CVE-2025-40299 - gve: Implement gettimex64 with -EOPNOTSUPP

In the Linux kernel, the following vulnerability has been resolved: gve: Implement gettimex64 with -EOPNOTSUPP gve implemented a ptp_clock for sole use of do_aux_work at this time. ptp_clock_gettime() and ptp_sys_offset() assume every ptp_clock has implemented either gettimex64 or gettime64. Stub…

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 8, 2025, 6:26 p.m.

5.5

CVSS3.1

CVE-2025-40317 - regmap: slimbus: fix bus_context pointer in regmap init calls

In the Linux kernel, the following vulnerability has been resolved: regmap: slimbus: fix bus_context pointer in regmap init calls Commit 4e65bda8273c ("ASoC: wcd934x: fix error handling in wcd934x_codec_parse_data()") revealed the problem in the slimbus regmap. That commit breaks audio playback, …

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 8, 2025, 6:26 p.m.

9.8

CVSS3.1

CVE-2025-64081 -

SQL injection vulnerability in /php/api_patient_schedule.php in SourceCodester Patients Waiting Area Queue Management System v1 allows attackers to execute arbitrary SQL commands via the appointmentID parameter.

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 8, 2025, 10:15 p.m.

6.5

CVSS3.1

CVE-2025-65797 -

Incorrect access control in the Identity Provider service of usememos memos v0.25.2 allows attackers with low-level privileges to arbitrarily modify or delete registered identity providers, leading to an account takeover or Denial of Service (DoS).

πŸ“… Published: Dec. 8, 2025, midnight πŸ”„ Last Modified: Dec. 11, 2025, 12:04 a.m.
Total resulsts: 344676
Page 2333 of 34,468
Β« previous page Β» next page
Filters