7.8

CVSS3.1

CVE-2025-39849 - wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() If the ssid->datalen is more than IEEE80211_MAX_SSID_LEN (32) it would lead to memory corruption so add some bounds checking.

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Jan. 20, 2026, 3:17 p.m.

7.1

CVSS3.1

CVE-2025-39840 - audit: fix out-of-bounds read in audit_compare_dname_path()

In the Linux kernel, the following vulnerability has been resolved: audit: fix out-of-bounds read in audit_compare_dname_path() When a watch on dir=/ is combined with an fsnotify event for a single-character name directly under / (e.g., creating /a), an out-of-bounds read can occur in audit_compa…

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

7.8

CVSS3.1

CVE-2025-39863 - wifi: brcmfmac: fix use-after-free when rescheduling brcmf_btcoex_info work

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: fix use-after-free when rescheduling brcmf_btcoex_info work The brcmf_btcoex_detach() only shuts down the btcoex timer, if the flag timer_on is false. However, the brcmf_btcoex_timerfunc(), which runs as timer han…

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 11:16 a.m.

5.5

CVSS3.1

CVE-2025-39852 - net/tcp: Fix socket memory leak in TCP-AO failure handling for IPv6

In the Linux kernel, the following vulnerability has been resolved: net/tcp: Fix socket memory leak in TCP-AO failure handling for IPv6 When tcp_ao_copy_all_matching() fails in tcp_v6_syn_recv_sock() it just exits the function. This ends up causing a memory-leak: unreferenced object 0xffff000028…

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

7.8

CVSS3.1

CVE-2025-39866 - fs: writeback: fix use-after-free in __mark_inode_dirty()

In the Linux kernel, the following vulnerability has been resolved: fs: writeback: fix use-after-free in __mark_inode_dirty() An use-after-free issue occurred when __mark_inode_dirty() get the bdi_writeback that was in the progress of switching. CPU: 1 PID: 562 Comm: systemd-random- Not tainted …

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2026, 2:33 a.m.

5.4

CVSS3.1

CVE-2025-59717 -

In the @digitalocean/do-markdownit package through 1.16.1 (in npm), the callout and fence_environment plugins perform .includes substring matching if allowedClasses or allowedEnvironments is a string (instead of an array).

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Oct. 8, 2025, 4:23 p.m.

5.5

CVSS3.1

CVE-2025-39856 - net: ethernet: ti: am65-cpsw-nuss: Fix null pointer dereference for ndev

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw-nuss: Fix null pointer dereference for ndev In the TX completion packet stage of TI SoCs with CPSW2G instance, which has single external ethernet port, ndev is accessed without being initialized if no…

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

9

CVSS3.1

CVE-2025-48703 -

CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1205 allows unauthenticated remote code execution via shell metacharacters in the t_total parameter in a filemanager changePerm request. A valid non-root username must be known.

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Feb. 26, 2026, 5:48 p.m.

6.4

CVSS3.1

CVE-2025-59712 -

Snipe-IT before 8.1.18 allows XSS.

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Sept. 23, 2025, 4:57 p.m.

6.5

CVSS3.1

CVE-2025-57296 -

Tenda AC6 router firmware 15.03.05.19 contains a command injection vulnerability in the formSetIptv function, which processes requests to the /goform/SetIPTVCfg web interface. When handling the list and vlanId parameters, the sub_ADBC0 helper function concatenates these user-supplied values into nv…

πŸ“… Published: Sept. 19, 2025, midnight πŸ”„ Last Modified: Sept. 25, 2025, 7:34 p.m.
Total resulsts: 349182
Page 3774 of 34,919
Β« previous page Β» next page
Filters