7.8

CVSS3.1

CVE-2022-50413 - wifi: mac80211: fix use-after-free

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix use-after-free We've already freed the assoc_data at this point, so need to use another copy of the AP (MLD) address instead.

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:15 p.m.

5.5

CVSS3.1

CVE-2022-50402 - drivers/md/md-bitmap: check the return value of md_bitmap_get_counter()

In the Linux kernel, the following vulnerability has been resolved: drivers/md/md-bitmap: check the return value of md_bitmap_get_counter() Check the return value of md_bitmap_get_counter() in case it returns NULL pointer, which will result in a null pointer dereference. v2: update the check to …

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:15 p.m.

5.5

CVSS3.1

CVE-2022-50392 - ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe()

In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe() The node returned by of_parse_phandle() with refcount incremented, of_node_put() needs be called when finish using it. So add it in the error…

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

7.8

CVSS3.1

CVE-2022-50410 - NFSD: Protect against send buffer overflow in NFSv2 READ

In the Linux kernel, the following vulnerability has been resolved: NFSD: Protect against send buffer overflow in NFSv2 READ Since before the git era, NFSD has conserved the number of pages held by each nfsd thread by combining the RPC receive and send buffers into a single array of pages. This w…

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:15 p.m.

5.5

CVSS3.1

CVE-2022-50397 - net/ieee802154: reject zero-sized raw_sendmsg()

In the Linux kernel, the following vulnerability has been resolved: net/ieee802154: reject zero-sized raw_sendmsg() syzbot is hitting skb_assert_len() warning at raw_sendmsg() for ieee802154 socket. What commit dc633700f00f726e ("net/af_packet: check len when min_header_len equals to 0") does als…

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Sept. 19, 2025, 4 p.m.

3.7

CVSS3.1

CVE-2025-59692 -

PureVPN client applications on Linux through September 2025 mishandle firewalling. They flush the system's existing iptables rules and apply default ACCEPT policies when connecting to a VPN server. This removes firewall rules that may have been configured manually or by other software (e.g., UFW, c…

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2023-53386 - Bluetooth: Fix potential use-after-free when clear keys

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix potential use-after-free when clear keys Similar to commit c5d2b6fa26b5 ("Bluetooth: Fix use-after-free in hci_remove_ltk/hci_remove_irk"). We can not access k after kfree_rcu() call.

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

5.5

CVSS3.1

CVE-2023-53385 - media: mdp3: Fix resource leaks in of_find_device_by_node

In the Linux kernel, the following vulnerability has been resolved: media: mdp3: Fix resource leaks in of_find_device_by_node Use put_device to release the object get through of_find_device_by_node, avoiding resource leaks.

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

5.5

CVSS3.1

CVE-2023-53438 - x86/MCE: Always save CS register on AMD Zen IF Poison errors

In the Linux kernel, the following vulnerability has been resolved: x86/MCE: Always save CS register on AMD Zen IF Poison errors The Instruction Fetch (IF) units on current AMD Zen-based systems do not guarantee a synchronous #MC is delivered for poison consumption errors. Therefore, MCG_STATUS[E…

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.

7.8

CVSS3.1

CVE-2022-50412 - drm: bridge: adv7511: unregister cec i2c device after cec adapter

In the Linux kernel, the following vulnerability has been resolved: drm: bridge: adv7511: unregister cec i2c device after cec adapter cec_unregister_adapter() assumes that the underlying adapter ops are callable. For example, if the CEC adapter currently has a valid physical address, then the unr…

πŸ“… Published: Sept. 18, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 8:15 p.m.
Total resulsts: 349182
Page 3786 of 34,919
Β« previous page Β» next page
Filters