5.5

CVSS3.1

CVE-2022-50486 - net: ethernet: ti: Fix return type of netcp_ndo_start_xmit()

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: Fix return type of netcp_ndo_start_xmit() With clang's kernel control flow integrity (kCFI, CONFIG_CFI_CLANG), indirect call targets are validated against the expected function pointer prototype to make sure th…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 12:27 a.m.

5.5

CVSS3.1

CVE-2022-50484 - ALSA: usb-audio: Fix potential memory leaks

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix potential memory leaks When the driver hits -ENOMEM at allocating a URB or a buffer, it aborts and goes to the error path that releases the all previously allocated resources. However, when -ENOMEM hits at t…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2026, 8:05 p.m.

7.8

CVSS3.1

CVE-2025-39951 - um: virtio_uml: Fix use-after-free after put_device in probe

In the Linux kernel, the following vulnerability has been resolved: um: virtio_uml: Fix use-after-free after put_device in probe When register_virtio_device() fails in virtio_uml_probe(), the code sets vu_dev->registered = 1 even though the device was not successfully registered. This can lead to…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2026, 8:03 p.m.

7.8

CVSS3.1

CVE-2025-39945 - cnic: Fix use-after-free bugs in cnic_delete_task

In the Linux kernel, the following vulnerability has been resolved: cnic: Fix use-after-free bugs in cnic_delete_task The original code uses cancel_delayed_work() in cnic_cm_stop_bnx2x_hw(), which does not guarantee that the delayed work item 'delete_task' has fully completed if it was already ru…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2026, 8:56 p.m.

5.5

CVSS3.1

CVE-2025-39934 - drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ

In the Linux kernel, the following vulnerability has been resolved: drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ If the interrupt occurs before resource initialization is complete, the interrupt handler/worker may access uninitialized data such as the I2C tcpc_client device, …

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2026, 8:33 p.m.

5.5

CVSS3.1

CVE-2025-39949 - qed: Don't collect too many protection override GRC elements

In the Linux kernel, the following vulnerability has been resolved: qed: Don't collect too many protection override GRC elements In the protection override dump path, the firmware can return far too many GRC elements, resulting in attempting to write past the end of the previously-kmalloc'ed dump…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 12:36 a.m.

7.0

CVSS3.1

CVE-2022-50487 - kernel: NFSD: Protect against send buffer overflow in NFSv3 READDIR

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 4:15 p.m.

5.5

CVSS3.1

CVE-2025-39936 - crypto: ccp - Always pass in an error pointer to __sev_platform_shutdown_locked()

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Always pass in an error pointer to __sev_platform_shutdown_locked() When 9770b428b1a2 ("crypto: ccp - Move dev_info/err messages for SEV/SNP init and shutdown") moved the error messages dumping so that they don'…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 12:46 a.m.

7.1

CVSS3.1

CVE-2022-50478 - nilfs2: fix shift-out-of-bounds/overflow in nilfs_sb2_bad_offset()

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix shift-out-of-bounds/overflow in nilfs_sb2_bad_offset() Patch series "nilfs2: fix UBSAN shift-out-of-bounds warnings on mount time". The first patch fixes a bug reported by syzbot, and the second one fixes the remaini…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2026, 8:10 p.m.

5.5

CVSS3.1

CVE-2025-39947 - net/mlx5e: Harden uplink netdev access against device unbind

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Harden uplink netdev access against device unbind The function mlx5_uplink_netdev_get() gets the uplink netdevice pointer from mdev->mlx5e_res.uplink_netdev. However, the netdevice can be removed and its pointer cleare…

πŸ“… Published: Oct. 4, 2025, midnight πŸ”„ Last Modified: April 6, 2026, 1:32 p.m.
Total resulsts: 349182
Page 3562 of 34,919
Β« previous page Β» next page
Filters