5.5

CVSS3.1

CVE-2023-53518 - PM / devfreq: Fix leak in devfreq_dev_release()

In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Fix leak in devfreq_dev_release() srcu_init_notifier_head() allocates resources that need to be released with a srcu_cleanup_notifier_head() call. Reported by kmemleak.

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 23, 2026, 8:07 p.m.

7.8

CVSS3.1

CVE-2023-53516 - macvlan: add forgotten nla_policy for IFLA_MACVLAN_BC_CUTOFF

In the Linux kernel, the following vulnerability has been resolved: macvlan: add forgotten nla_policy for IFLA_MACVLAN_BC_CUTOFF The previous commit 954d1fa1ac93 ("macvlan: Add netlink attribute for broadcast cutoff") added one additional attribute named IFLA_MACVLAN_BC_CUTOFF to allow broadcast โ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: April 6, 2026, 2:45 p.m.

5.5

CVSS3.1

CVE-2023-53513 - nbd: fix incomplete validation of ioctl arg

In the Linux kernel, the following vulnerability has been resolved: nbd: fix incomplete validation of ioctl arg We tested and found an alarm caused by nbd_ioctl arg without verification. The UBSAN warning calltrace like below: UBSAN: Undefined behaviour in fs/buffer.c:1709:35 signed integer overโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: April 6, 2026, 2:45 p.m.

7.8

CVSS3.1

CVE-2023-53508 - ublk: fail to start device if queue setup is interrupted

In the Linux kernel, the following vulnerability has been resolved: ublk: fail to start device if queue setup is interrupted In ublk_ctrl_start_dev(), if wait_for_completion_interruptible() is interrupted by signal, queues aren't setup successfully yet, so we have to fail UBLK_CMD_START_DEV, otheโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 23, 2026, 1:59 a.m.

7.8

CVSS3.1

CVE-2023-53506 - udf: Do not bother merging very long extents

In the Linux kernel, the following vulnerability has been resolved: udf: Do not bother merging very long extents When merging very long extents we try to push as much length as possible to the first extent. However this is unnecessarily complicated and not really worth the trouble. Furthermore thโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 23, 2026, 2:04 a.m.

5.5

CVSS3.1

CVE-2023-53503 - ext4: allow ext4_get_group_info() to fail

In the Linux kernel, the following vulnerability has been resolved: ext4: allow ext4_get_group_info() to fail Previously, ext4_get_group_info() would treat an invalid group number as BUG(), since in theory it should never happen. However, if a malicious attaker (or fuzzer) modifies the superblocโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: April 6, 2026, 2:45 p.m.

4.7

CVSS3.1

CVE-2023-53501 - iommu/amd/iommu_v2: Fix pasid_state refcount dec hit 0 warning on pasid unbind

In the Linux kernel, the following vulnerability has been resolved: iommu/amd/iommu_v2: Fix pasid_state refcount dec hit 0 warning on pasid unbind When unbinding pasid - a race condition exists vs outstanding page faults. To prevent this, the pasid_state object contains a refcount. * set to โ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 23, 2026, 2:05 a.m.

5.5

CVSS3.1

CVE-2023-53499 - virtio_net: Fix error unwinding of XDP initialization

In the Linux kernel, the following vulnerability has been resolved: virtio_net: Fix error unwinding of XDP initialization When initializing XDP in virtnet_open(), some rq xdp initialization may hit an error causing net device open failed. However, previous rqs have already initialized XDP and enaโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 16, 2026, 8:51 p.m.

5.5

CVSS3.1

CVE-2023-53498 - drm/amd/display: Fix potential null dereference

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix potential null dereference The adev->dm.dc pointer can be NULL and dereferenced in amdgpu_dm_fini() without checking. Add a NULL pointer check before calling dc_dmub_srv_destroy(). Found by Linux Verificatiโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 16, 2026, 8:49 p.m.

5.5

CVSS3.1

CVE-2023-53496 - x86/platform/uv: Use alternate source for socket to node data

In the Linux kernel, the following vulnerability has been resolved: x86/platform/uv: Use alternate source for socket to node data The UV code attempts to build a set of tables to allow it to do bidirectional socket<=>node lookups. But when nr_cpus is set to a smaller number than actually presentโ€ฆ

๐Ÿ“… Published: Oct. 1, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 16, 2026, 8:47 p.m.
Total resulsts: 349182
Page 3620 of 34,919
ยซ previous page ยป next page
Filters