7.8

CVSS3.1

CVE-2025-39877 - mm/damon/sysfs: fix use-after-free in state_show()

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: fix use-after-free in state_show() state_show() reads kdamond->damon_ctx without holding damon_sysfs_lock. This allows a use-after-free race: CPU 0 CPU 1 ----- ---…

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 20, 2026, 8:29 p.m.

7.8

CVSS3.1

CVE-2025-39871 - dmaengine: idxd: Remove improper idxd_free

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Remove improper idxd_free The call to idxd_free() introduces a duplicate put_device() leading to a reference count underflow: refcount_t: underflow; use-after-free. WARNING: CPU: 15 PID: 4428 at lib/refcount.c:28…

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 11, 2026, 5:15 p.m.

7.8

CVSS3.1

CVE-2025-39870 - dmaengine: idxd: Fix double free in idxd_setup_wqs()

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix double free in idxd_setup_wqs() The clean up in idxd_setup_wqs() has had a couple bugs because the error handling is a bit subtle. It's simpler to just re-write it in a cleaner way. The issues here are: 1)…

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 20, 2026, 8:40 p.m.

7.8

CVSS3.1

CVE-2025-39873 - can: xilinx_can: xcan_write_frame(): fix use-after-free of transmitted SKB

In the Linux kernel, the following vulnerability has been resolved: can: xilinx_can: xcan_write_frame(): fix use-after-free of transmitted SKB can_put_echo_skb() takes ownership of the SKB and it may be freed during or after the call. However, xilinx_can xcan_write_frame() keeps using SKB after …

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 20, 2026, 8:33 p.m.

5.5

CVSS3.1

CVE-2025-39879 - ceph: always call ceph_shift_unused_folios_left()

In the Linux kernel, the following vulnerability has been resolved: ceph: always call ceph_shift_unused_folios_left() The function ceph_process_folio_batch() sets folio_batch entries to NULL, which is an illegal state. Before folio_batch_release() crashes due to this API violation, the function …

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

5.5

CVSS3.1

CVE-2025-39887 - tracing/osnoise: Fix null-ptr-deref in bitmap_parselist()

In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Fix null-ptr-deref in bitmap_parselist() A crash was observed with the following output: BUG: kernel NULL pointer dereference, address: 0000000000000010 Oops: Oops: 0000 [#1] SMP NOPTI CPU: 2 UID: 0 PID: 92 Comm…

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

5.5

CVSS3.1

CVE-2025-39878 - ceph: fix crash after fscrypt_encrypt_pagecache_blocks() error

In the Linux kernel, the following vulnerability has been resolved: ceph: fix crash after fscrypt_encrypt_pagecache_blocks() error The function move_dirty_folio_in_page_array() was created by commit ce80b76dd327 ("ceph: introduce ceph_process_folio_batch() method") by moving code from ceph_writep…

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

5.5

CVSS3.1

CVE-2025-39875 - igb: Fix NULL pointer dereference in ethtool loopback test

In the Linux kernel, the following vulnerability has been resolved: igb: Fix NULL pointer dereference in ethtool loopback test The igb driver currently causes a NULL pointer dereference when executing the ethtool loopback test. This occurs because there is no associated q_vector for the test ring…

πŸ“… Published: Sept. 23, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

4.8

CVSS4.0

CVE-2025-10823 - axboe fio options.c str_buffer_pattern_cb null pointer dereference

A vulnerability was found in axboe fio up to 3.41. This affects the function str_buffer_pattern_cb of the file options.c. Performing manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been made public and could be used.

πŸ“… Published: Sept. 22, 2025, 11:32 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-10822 - fuyang_lipengjun platform queryAll SysSmsLogController improper authorization

A vulnerability has been found in fuyang_lipengjun platform 1.0. The impacted element is the function SysSmsLogController of the file /sys/smslog/queryAll. Such manipulation leads to improper authorization. The attack may be performed from remote. The exploit has been disclosed to the public and ma…

πŸ“… Published: Sept. 22, 2025, 11:32 p.m. πŸ”„ Last Modified: Oct. 3, 2025, 5:35 p.m.
Total resulsts: 349182
Page 3716 of 34,919
Β« previous page Β» next page
Filters