7.8

CVSS3.1

CVE-2025-38703 - drm/xe: Make dma-fences compliant with the safe access rules

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Make dma-fences compliant with the safe access rules Xe can free some of the data pointed to by the dma-fences it exports. Most notably the timeline name can get freed if userspace closes the associated submit queue. At t…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Nov. 24, 2025, 7:45 p.m.

5.5

CVSS3.1

CVE-2025-38711 - smb/server: avoid deadlock when linking with ReplaceIfExists

In the Linux kernel, the following vulnerability has been resolved: smb/server: avoid deadlock when linking with ReplaceIfExists If smb2_create_link() is called with ReplaceIfExists set and the name does exist then a deadlock will happen. ksmbd_vfs_kern_path_locked() will return with success and…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Jan. 9, 2026, 4:11 p.m.

5.5

CVSS3.1

CVE-2025-38705 - drm/amd/pm: fix null pointer access

In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix null pointer access Writing a string without delimiters (' ', '\n', '\0') to the under gpu_od/fan_ctrl sysfs or pp_power_profile_mode for the CUSTOM profile will result in a null pointer dereference.

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:31 p.m.

5.5

CVSS3.1

CVE-2025-38720 - net: hibmcge: fix rtnl deadlock issue

In the Linux kernel, the following vulnerability has been resolved: net: hibmcge: fix rtnl deadlock issue Currently, the hibmcge netdev acquires the rtnl_lock in pci_error_handlers.reset_prepare() and releases it in pci_error_handlers.reset_done(). However, in the PCI framework: pci_reset_bus - …

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 9:47 p.m.

5.5

CVSS3.1

CVE-2025-38716 - hfs: fix general protection fault in hfs_find_init()

In the Linux kernel, the following vulnerability has been resolved: hfs: fix general protection fault in hfs_find_init() The hfs_find_init() method can trigger the crash if tree pointer is NULL: [ 45.746290][ T9787] Oops: general protection fault, probably for non-canonical address 0xdffffc000…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:31 p.m.

8.1

CVSS3.1

CVE-2025-9566 - Podman: podman kube play command may overwrite host files

There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: April 20, 2026, 4:30 p.m.

5.5

CVSS3.1

CVE-2025-38719 - net: hibmcge: fix the division by zero issue

In the Linux kernel, the following vulnerability has been resolved: net: hibmcge: fix the division by zero issue When the network port is down, the queue is released, and ring->len is 0. In debugfs, hbg_get_queue_used_num() will be called, which may lead to a division by zero issue. This patch a…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Dec. 2, 2025, 8:05 p.m.

5.5

CVSS3.1

CVE-2025-38695 - scsi: lpfc: Check for hdwq null ptr when cleaning up lpfc_vport structure

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Check for hdwq null ptr when cleaning up lpfc_vport structure If a call to lpfc_sli4_read_rev() from lpfc_sli4_hba_setup() fails, the resultant cleanup routine lpfc_sli4_vport_delete_fcp_xri_aborted() may occur before…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Jan. 9, 2026, 5:06 p.m.

5.5

CVSS3.1

CVE-2025-38689 - x86/fpu: Fix NULL dereference in avx512_status()

In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Fix NULL dereference in avx512_status() Problem ------- With CONFIG_X86_DEBUG_FPU enabled, reading /proc/[kthread]/arch_status causes a warning and a NULL pointer dereference. This is because the AVX-512 timestamp code …

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Nov. 24, 2025, 7:47 p.m.

5.5

CVSS3.1

CVE-2025-38694 - media: dvb-frontends: dib7090p: fix null-ptr-deref in dib7090p_rw_on_apb()

In the Linux kernel, the following vulnerability has been resolved: media: dvb-frontends: dib7090p: fix null-ptr-deref in dib7090p_rw_on_apb() In dib7090p_rw_on_apb, msg is controlled by user. When msg[0].buf is null and msg[0].len is zero, former checks on msg[0].buf would be passed. If accessin…

πŸ“… Published: Sept. 4, 2025, midnight πŸ”„ Last Modified: Jan. 22, 2026, 6:40 p.m.
Total resulsts: 349182
Page 4024 of 34,919
Β« previous page Β» next page
Filters