5.5

CVSS3.1

CVE-2025-38595 - xen: fix UAF in dmabuf_exp_from_pages()

In the Linux kernel, the following vulnerability has been resolved: xen: fix UAF in dmabuf_exp_from_pages() [dma_buf_fd() fixes; no preferences regarding the tree it goes through - up to xen folks] As soon as we'd inserted a file reference into descriptor table, another thread could close it. T…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

5.3

CVSS3.1

CVE-2025-51529 -

Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin through version 2.29 allows remote attackers to cause a denial of service (database server resource exhaustion) via unlimited database write operations to the wp_ajax_nopriv_cacsp_i…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 8:15 p.m.

7.0

CVSS3.1

CVE-2025-38606 - wifi: ath12k: Avoid accessing uninitialized arvif->ar during beacon miss

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Avoid accessing uninitialized arvif->ar during beacon miss During beacon miss handling, ath12k driver iterates over active virtual interfaces (vifs) and attempts to access the radio object (ar) via arvif->deflink->a…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

7.0

CVSS3.1

CVE-2025-38604 - wifi: rtl818x: Kill URBs before clearing tx status queue

In the Linux kernel, the following vulnerability has been resolved: wifi: rtl818x: Kill URBs before clearing tx status queue In rtl8187_stop() move the call of usb_kill_anchored_urbs() before clearing b_tx_status.queue. This change prevents callbacks from using already freed skb due to anchor was…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

5.5

CVSS3.1

CVE-2025-38598 - drm/amdgpu: fix use-after-free in amdgpu_userq_suspend+0x51a/0x5a0

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix use-after-free in amdgpu_userq_suspend+0x51a/0x5a0 [ +0.000020] BUG: KASAN: slab-use-after-free in amdgpu_userq_suspend+0x51a/0x5a0 [amdgpu] [ +0.000817] Read of size 8 at addr ffff88812eec8c58 by task amd_pci_u…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

7.0

CVSS3.1

CVE-2025-38601 - wifi: ath11k: clear initialized flag for deinit-ed srng lists

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: clear initialized flag for deinit-ed srng lists In a number of cases we see kernel panics on resume due to ath11k kernel page fault, which happens under the following circumstances: 1) First ath11k_hal_dump_srng_st…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

5.5

CVSS3.1

CVE-2025-38603 - drm/amdgpu: fix slab-use-after-free in amdgpu_userq_mgr_fini+0x70c

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix slab-use-after-free in amdgpu_userq_mgr_fini+0x70c The issue was reproduced on NV10 using IGT pci_unplug test. It is expected that `amdgpu_driver_postclose_kms()` is called prior to `amdgpu_drm_release()`. However…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

6.5

CVSS3.1

CVE-2025-50891 -

Adform Site Tracking 1.1 allows attackers to inject HTML or execute arbitrary code via cookie hijacking.

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 8:15 p.m.

5.5

CVSS3.1

CVE-2025-38564 - perf/core: Handle buffer mapping fail correctly in perf_mmap()

In the Linux kernel, the following vulnerability has been resolved: perf/core: Handle buffer mapping fail correctly in perf_mmap() After successful allocation of a buffer or a successful attachment to an existing buffer perf_mmap() tries to map the buffer read only into the page table. If that fa…

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.

5.5

CVSS3.1

CVE-2025-38586 - bpf, arm64: Fix fp initialization for exception boundary

In the Linux kernel, the following vulnerability has been resolved: bpf, arm64: Fix fp initialization for exception boundary In the ARM64 BPF JIT when prog->aux->exception_boundary is set for a BPF program, find_used_callee_regs() is not called because for a program acting as exception boundary, …

πŸ“… Published: Aug. 19, 2025, midnight πŸ”„ Last Modified: Aug. 19, 2025, 5:15 p.m.
Total resulsts: 306379
Page 40 of 30,638
Β« previous page Β» next page
Filters