7.8

CVSS3.1

CVE-2025-39740 - drm/xe/migrate: prevent potential UAF

In the Linux kernel, the following vulnerability has been resolved: drm/xe/migrate: prevent potential UAF If we hit the error path, the previous fence (if there is one) has already been put() prior to this, so doing a fence_wait could lead to UAF. Tweak the flow to do to the put() until after we …

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 9:01 p.m.

5.5

CVSS3.1

CVE-2025-39775 - mm/mremap: fix WARN with uffd that has remap events disabled

In the Linux kernel, the following vulnerability has been resolved: mm/mremap: fix WARN with uffd that has remap events disabled Registering userfaultd on a VMA that spans at least one PMD and then mremap()'ing that VMA can trigger a WARN when recovering from a failed page table move due to a pag…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 7:54 p.m.

5.5

CVSS3.1

CVE-2025-39747 - drm/msm: Add error handling for krealloc in metadata setup

In the Linux kernel, the following vulnerability has been resolved: drm/msm: Add error handling for krealloc in metadata setup Function msm_ioctl_gem_info_set_metadata() now checks for krealloc failure and returns -ENOMEM, avoiding potential NULL pointer dereference. Explicitly avoids __GFP_NOFAI…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 6:07 p.m.

5.5

CVSS3.1

CVE-2025-39758 - RDMA/siw: Fix the sendmsg byte count in siw_tcp_sendpages

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix the sendmsg byte count in siw_tcp_sendpages Ever since commit c2ff29e99a76 ("siw: Inline do_tcp_sendpages()"), we have been doing this: static int siw_tcp_sendpages(struct socket *s, struct page **page, int offset,…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 26, 2025, 4:24 p.m.

5.5

CVSS3.1

CVE-2025-39780 - sched/ext: Fix invalid task state transitions on class switch

In the Linux kernel, the following vulnerability has been resolved: sched/ext: Fix invalid task state transitions on class switch When enabling a sched_ext scheduler, we may trigger invalid task state transitions, resulting in warnings like the following (which can be easily reproduced by running…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 7:08 p.m.

7.8

CVSS3.1

CVE-2025-39788 - scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS_TYPE

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS_TYPE On Google gs101, the number of UTP transfer request slots (nutrs) is 32, and in this case the driver ends up programming the UTRL_NEXUS_TYPE incorrectly as 0. This is bec…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Jan. 16, 2026, 8:25 p.m.

7.1

CVSS3.1

CVE-2025-39786 - iio: adc: ad7173: fix channels index for syscalib_mode

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7173: fix channels index for syscalib_mode Fix the index used to look up the channel when accessing the syscalib_mode attribute. The address field is a 0-based index (same as scan_index) that it used to access the cha…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 6:44 p.m.

5.5

CVSS3.1

CVE-2025-39785 - drm/hisilicon/hibmc: fix irq_request()'s irq name variable is local

In the Linux kernel, the following vulnerability has been resolved: drm/hisilicon/hibmc: fix irq_request()'s irq name variable is local The local variable is passed in request_irq (), and there will be use after free problem, which will make request_irq failed. Using the global irq name instead o…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 6:47 p.m.

5.5

CVSS3.1

CVE-2025-39784 - PCI: Fix link speed calculation on retrain failure

In the Linux kernel, the following vulnerability has been resolved: PCI: Fix link speed calculation on retrain failure When pcie_failed_link_retrain() fails to retrain, it tries to revert to the previous link speed. However it calculates that speed from the Link Control 2 register without maskin…

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 6:49 p.m.

5.5

CVSS3.1

CVE-2025-39771 - regulator: pca9450: Use devm_register_sys_off_handler

In the Linux kernel, the following vulnerability has been resolved: regulator: pca9450: Use devm_register_sys_off_handler With module test, there is error dump: ------------[ cut here ]------------ notifier callback pca9450_i2c_restart_handler already registered WARNING: kernel/notifier.c:23 …

πŸ“… Published: Sept. 11, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 7:55 p.m.
Total resulsts: 349182
Page 3913 of 34,919
Β« previous page Β» next page
Filters