5.5

CVSS3.1

CVE-2025-54269 - Animate | Out-of-bounds Read (CWE-125)

Animate versions 23.0.13, 24.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a vict…

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:29 p.m.

5.5

CVSS3.1

CVE-2025-54270 - Animate | NULL Pointer Dereference (CWE-476)

Animate versions 23.0.13, 24.0.10 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive memory information. Exploitation of this issue requires user interaction in that a victim mu…

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:29 p.m.

7.0

CVSS3.1

CVE-2025-39977 - futex: Prevent use-after-free during requeue-PI

In the Linux kernel, the following vulnerability has been resolved: futex: Prevent use-after-free during requeue-PI syzbot managed to trigger the following race: T1 T2 futex_wait_requeue_pi() futex_do_wait() schedule() fut…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.

7.8

CVSS3.1

CVE-2025-39967 - fbcon: fix integer overflow in fbcon_do_set_font

In the Linux kernel, the following vulnerability has been resolved: fbcon: fix integer overflow in fbcon_do_set_font Fix integer overflow vulnerabilities in fbcon_do_set_font() where font size calculations could overflow when handling user-controlled font parameters. The vulnerabilities occur wh…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Feb. 26, 2026, 11:06 p.m.

5.5

CVSS3.1

CVE-2025-39990 - bpf: Check the helper function is valid in get_helper_proto

In the Linux kernel, the following vulnerability has been resolved: bpf: Check the helper function is valid in get_helper_proto kernel test robot reported verifier bug [1] where the helper func pointer could be NULL due to disabled config option. As Alexei suggested we could check on that in get…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:32 p.m.

5.5

CVSS3.1

CVE-2025-39987 - can: hi311x: populate ndo_change_mtu() to prevent buffer overflow

In the Linux kernel, the following vulnerability has been resolved: can: hi311x: populate ndo_change_mtu() to prevent buffer overflow Sending an PF_PACKET allows to bypass the CAN framework logic and to directly reach the xmit() function of a CAN driver. The only check which is performed by the P…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.

7.0

CVSS3.1

CVE-2025-39980 - nexthop: Forbid FDB status change while nexthop is in a group

In the Linux kernel, the following vulnerability has been resolved: nexthop: Forbid FDB status change while nexthop is in a group The kernel forbids the creation of non-FDB nexthop groups with FDB nexthops: # ip nexthop add id 1 via 192.0.2.1 fdb # ip nexthop add id 2 group 1 Error: Non FDB n…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.

5.5

CVSS3.1

CVE-2025-39997 - ALSA: usb-audio: fix race condition to UAF in snd_usbmidi_free

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix race condition to UAF in snd_usbmidi_free The previous commit 0718a78f6a9f ("ALSA: usb-audio: Kill timer properly at removal") patched a UAF issue caused by the error timer. However, because the error timer …

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 10:19 a.m.

7.0

CVSS3.1

CVE-2025-39999 - blk-mq: fix blk_mq_tags double free while nr_requests grown

In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix blk_mq_tags double free while nr_requests grown In the case user trigger tags grow by queue sysfs attribute nr_requests, hctx->sched_tags will be freed directly and replaced with a new allocated tags, see blk_mq_tag_u…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:16 a.m.

7.0

CVSS3.1

CVE-2025-39979 - net/mlx5: fs, fix UAF in flow counter release

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fs, fix UAF in flow counter release Fix a kernel trace [1] caused by releasing an HWS action of a local flow counter in mlx5_cmd_hws_delete_fte(), where the HWS action refcount and mutex were not initialized and the cou…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:27 p.m.
Total resulsts: 343040
Page 2801 of 34,304
Β« previous page Β» next page
Filters