4.7

CVSS3.1

CVE-2023-53401 - mm: kmem: fix a NULL pointer dereference in obj_stock_flush_required()

In the Linux kernel, the following vulnerability has been resolved: mm: kmem: fix a NULL pointer dereference in obj_stock_flush_required() KCSAN found an issue in obj_stock_flush_required(): stock->cached_objcg can be reset between the check and dereference: =====================================โ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

7.8

CVSS3.1

CVE-2023-53373 - crypto: seqiv - Handle EBUSY correctly

In the Linux kernel, the following vulnerability has been resolved: crypto: seqiv - Handle EBUSY correctly As it is seqiv only handles the special return value of EINPROGERSS, which means that in all other cases it will free data related to the request. However, as the caller of seqiv may specifโ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

8

CVSS3.1

CVE-2025-57295 -

H3C devices running firmware version NX15V100R015 are vulnerable to unauthorized access due to insecure default credentials. The root user account has no password set, and the H3C user account uses the default password "admin," both stored in the /etc/shadow file. Attackers with network access can โ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 5:23 p.m.

5.5

CVSS3.1

CVE-2022-50385 - NFS: Fix an Oops in nfs_d_automount()

In the Linux kernel, the following vulnerability has been resolved: NFS: Fix an Oops in nfs_d_automount() When mounting from a NFSv4 referral, path->dentry can end up being a negative dentry, so derive the struct nfs_server from the dentry itself instead.

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

7.8

CVSS3.1

CVE-2022-50408 - wifi: brcmfmac: fix use-after-free bug in brcmf_netdev_start_xmit()

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: fix use-after-free bug in brcmf_netdev_start_xmit() > ret = brcmf_proto_tx_queue_data(drvr, ifp->ifidx, skb); may be schedule, and then complete before the line > ndev->stats.tx_bytes += skb->len; [ 46.912801โ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 8:15 p.m.

5.5

CVSS3.1

CVE-2022-50396 - net: sched: fix memory leak in tcindex_set_parms

In the Linux kernel, the following vulnerability has been resolved: net: sched: fix memory leak in tcindex_set_parms Syzkaller reports a memory leak as follows: ==================================== BUG: memory leak unreferenced object 0xffff88810c287f00 (size 256): comm "syz-executor105", pid 3โ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

5.5

CVSS3.1

CVE-2022-50390 - drm/ttm: fix undefined behavior in bit shift for TTM_TT_FLAG_PRIV_POPULATED

In the Linux kernel, the following vulnerability has been resolved: drm/ttm: fix undefined behavior in bit shift for TTM_TT_FLAG_PRIV_POPULATED Shifting signed 32-bit value by 31 bits is undefined, so changing significant bit to unsigned. The UBSAN warning calltrace like below: UBSAN: shift-out-โ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: March 17, 2026, 4:35 p.m.

5.5

CVSS3.1

CVE-2022-50380 - mm: /proc/pid/smaps_rollup: fix no vma's null-deref

In the Linux kernel, the following vulnerability has been resolved: mm: /proc/pid/smaps_rollup: fix no vma's null-deref Commit 258f669e7e88 ("mm: /proc/pid/smaps_rollup: convert to single value seq_file") introduced a null-deref if there are no vma's in the task in show_smaps_rollup.

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 7:16 p.m.

5.5

CVSS3.1

CVE-2022-50416 - irqchip/wpcm450: Fix memory leak in wpcm450_aic_of_init()

In the Linux kernel, the following vulnerability has been resolved: irqchip/wpcm450: Fix memory leak in wpcm450_aic_of_init() If of_iomap() failed, 'aic' should be freed before return. Otherwise there is a memory leak.

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 8:15 p.m.

5.5

CVSS3.1

CVE-2023-53439 - net: skb_partial_csum_set() fix against transport header magic value

In the Linux kernel, the following vulnerability has been resolved: net: skb_partial_csum_set() fix against transport header magic value skb->transport_header uses the special 0xFFFF value to mark if the transport header was set or not. We must prevent callers to accidentaly set skb->transport_hโ€ฆ

๐Ÿ“… Published: Sept. 18, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 8:16 p.m.
Total resulsts: 349182
Page 3796 of 34,919
ยซ previous page ยป next page
Filters