5.5

CVSS3.1

CVE-2025-39850 - vxlan: Fix NPD in {arp,neigh}_reduce() when using nexthop objects

In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix NPD in {arp,neigh}_reduce() when using nexthop objects When the "proxy" option is enabled on a VXLAN device, the device will suppress ARP requests and IPv6 Neighbor Solicitation messages if it is able to reply on behalโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

5.3

CVSS3.1

CVE-2025-56869 -

Directory traversal vulnerability in Sync In server thru 1.1.1 allowing authenticated attackers to gain read and write access to the system via FilesManager.saveMultipart function in backend/src/applications/files/services/files-manager.service.ts, and FilesManager.compress function in backend/src/โ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 5:12 p.m.

6.3

CVSS3.1

CVE-2025-55910 -

CMSEasy v7.7.8.0 and before is vulnerable to Arbitrary file deletion in database_admin.php.

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Sept. 25, 2025, 7:34 p.m.

7.1

CVSS3.1

CVE-2025-39853 - i40e: Fix potential invalid access when MAC list is empty

In the Linux kernel, the following vulnerability has been resolved: i40e: Fix potential invalid access when MAC list is empty list_first_entry() never returns NULL - if the list is empty, it still returns a pointer to an invalid object, leading to potential invalid memory access when dereferencedโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 20, 2026, 3:16 p.m.

5.5

CVSS3.1

CVE-2025-39847 - ppp: fix memory leak in pad_compress_skb

In the Linux kernel, the following vulnerability has been resolved: ppp: fix memory leak in pad_compress_skb If alloc_skb() fails in pad_compress_skb(), it returns NULL without releasing the old skb. The caller does: skb = pad_compress_skb(ppp, skb); if (!skb) goto drop; drop: โ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 20, 2026, 3:20 p.m.

5.5

CVSS3.1

CVE-2025-39845 - x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings()

In the Linux kernel, the following vulnerability has been resolved: x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings() Define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings() to ensure page tables are properly synchronized when calling p*d_populate_kernel(). Forโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 20, 2026, 3:23 p.m.

5.5

CVSS3.1

CVE-2025-39842 - ocfs2: prevent release journal inode after journal shutdown

In the Linux kernel, the following vulnerability has been resolved: ocfs2: prevent release journal inode after journal shutdown Before calling ocfs2_delete_osb(), ocfs2_journal_shutdown() has already been executed in ocfs2_dismount_volume(), so osb->journal must be NULL. Therefore, the followingโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 20, 2026, 3:26 p.m.

7.8

CVSS3.1

CVE-2025-39837 - platform/x86: asus-wmi: Fix racy registrations

In the Linux kernel, the following vulnerability has been resolved: platform/x86: asus-wmi: Fix racy registrations asus_wmi_register_driver() may be called from multiple drivers concurrently, which can lead to the racy list operations, eventually corrupting the memory and hitting Oops on some ASUโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

5.5

CVSS3.1

CVE-2025-39843 - mm: slub: avoid wake up kswapd in set_track_prepare

In the Linux kernel, the following vulnerability has been resolved: mm: slub: avoid wake up kswapd in set_track_prepare set_track_prepare() can incur lock recursion. The issue is that it is called from hrtimer_start_range_ns holding the per_cpu(hrtimer_bases)[n].lock, but when enabled CONFIG_DEBUโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 20, 2026, 3:25 p.m.

5.5

CVSS3.1

CVE-2025-39858 - eth: mlx4: Fix IS_ERR() vs NULL check bug in mlx4_en_create_rx_ring

In the Linux kernel, the following vulnerability has been resolved: eth: mlx4: Fix IS_ERR() vs NULL check bug in mlx4_en_create_rx_ring Replace NULL check with IS_ERR() check after calling page_pool_create() since this function returns error pointers (ERR_PTR). Using NULL check could lead to invaโ€ฆ

๐Ÿ“… Published: Sept. 19, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.
Total resulsts: 349182
Page 3773 of 34,919
ยซ previous page ยป next page
Filters