0.0

CVE-2025-38590 - net/mlx5e: Remove skb secpath if xfrm state is not found

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Remove skb secpath if xfrm state is not found Hardware returns a unique identifier for a decrypted packet's xfrm state, this state is looked up in an xarray. However, the state might have been freed by the time of this…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38589 - neighbour: Fix null-ptr-deref in neigh_flush_dev().

In the Linux kernel, the following vulnerability has been resolved: neighbour: Fix null-ptr-deref in neigh_flush_dev(). kernel test robot reported null-ptr-deref in neigh_flush_dev(). [0] The cited commit introduced per-netdev neighbour list and converted neigh_flush_dev() to use it instead of t…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38588 - ipv6: prevent infinite loop in rt6_nlmsg_size()

In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent infinite loop in rt6_nlmsg_size() While testing prior patch, I was able to trigger an infinite loop in rt6_nlmsg_size() in the following place: list_for_each_entry_rcu(sibling, &f6i->fib6_siblings, fib6_siblings…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38587 - ipv6: fix possible infinite loop in fib6_info_uses_dev()

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible infinite loop in fib6_info_uses_dev() fib6_info_uses_dev() seems to rely on RCU without an explicit protection. Like the prior fix in rt6_nlmsg_size(), we need to make sure fib6_del_route() or fib6_add_rt2node…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38586 - bpf, arm64: Fix fp initialization for exception boundary

In the Linux kernel, the following vulnerability has been resolved: bpf, arm64: Fix fp initialization for exception boundary In the ARM64 BPF JIT when prog->aux->exception_boundary is set for a BPF program, find_used_callee_regs() is not called because for a program acting as exception boundary, …

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38585 - staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int()

In the Linux kernel, the following vulnerability has been resolved: staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() When gmin_get_config_var() calls efi.get_variable() and the EFI variable is larger than the expected buffer size, two behaviors combine to create a stack bu…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38584 - padata: Fix pd UAF once and for all

In the Linux kernel, the following vulnerability has been resolved: padata: Fix pd UAF once and for all There is a race condition/UAF in padata_reorder that goes back to the initial commit. A reference count is taken at the start of the process in padata_do_parallel, and released at the end in p…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38583 - clk: xilinx: vcu: unregister pll_post only if registered correctly

In the Linux kernel, the following vulnerability has been resolved: clk: xilinx: vcu: unregister pll_post only if registered correctly If registration of pll_post is failed, it will be set to NULL or ERR, unregistering same will fail with following call trace: Unable to handle kernel NULL pointe…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38582 - RDMA/hns: Fix double destruction of rsv_qp

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix double destruction of rsv_qp rsv_qp may be double destroyed in error flow, first in free_mr_init(), and then in hns_roce_exit(). Fix it by moving the free_mr_init() call into hns_roce_v2_init(). list_del corruption…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.

0.0

CVE-2025-38581 - crypto: ccp - Fix crash when rebind ccp device for ccp.ko

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix crash when rebind ccp device for ccp.ko When CONFIG_CRYPTO_DEV_CCP_DEBUGFS is enabled, rebinding the ccp device causes the following crash: $ echo '0000:0a:00.2' > /sys/bus/pci/drivers/ccp/unbind $ echo '0000:0…

πŸ“… Published: Aug. 19, 2025, 5:03 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:03 p.m.
Total resulsts: 306372
Page 33 of 30,638
Β« previous page Β» next page
Filters