5.5

CVSS3.1

CVE-2025-38631 - clk: imx95-blk-ctl: Fix synchronous abort

In the Linux kernel, the following vulnerability has been resolved: clk: imx95-blk-ctl: Fix synchronous abort When enabling runtime PM for clock suppliers that also belong to a power domain, the following crash is thrown: error: synchronous external abort: 0000000096000010 [#1] PREEMPT SMP Workqu…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Nov. 26, 2025, 5:10 p.m.

6.5

CVSS3.1

CVE-2025-55637 -

Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to contain a command injection vulnerability via the setddns_pip_system() function.

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Oct. 21, 2025, 1:55 p.m.

5.5

CVSS3.1

CVE-2025-38663 - nilfs2: reject invalid file types when reading inodes

In the Linux kernel, the following vulnerability has been resolved: nilfs2: reject invalid file types when reading inodes To prevent inodes with invalid file types from tripping through the vfs and causing malfunctions or assertion failures, add a missing sanity check when reading an inode from a…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 5:35 p.m.

5.5

CVSS3.1

CVE-2025-38655 - pinctrl: canaan: k230: add NULL check in DT parse

In the Linux kernel, the following vulnerability has been resolved: pinctrl: canaan: k230: add NULL check in DT parse Add a NULL check for the return value of of_get_property() when retrieving the "pinmux" property in the group parser. This avoids a potential NULL pointer dereference if the prope…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Nov. 26, 2025, 4:32 p.m.

5.5

CVSS3.1

CVE-2025-38638 - ipv6: add a retry logic in net6_rt_notify()

In the Linux kernel, the following vulnerability has been resolved: ipv6: add a retry logic in net6_rt_notify() inet6_rt_notify() can be called under RCU protection only. This means the route could be changed concurrently and rt6_fill_node() could return -EMSGSIZE. Re-size the skb when this happ…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Nov. 26, 2025, 4:36 p.m.

5.5

CVSS3.1

CVE-2025-38634 - power: supply: cpcap-charger: Fix null check for power_supply_get_by_name

In the Linux kernel, the following vulnerability has been resolved: power: supply: cpcap-charger: Fix null check for power_supply_get_by_name In the cpcap_usb_detect() function, the power_supply_get_by_name() function may return `NULL` instead of an error pointer. To prevent potential null pointe…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 4:28 p.m.

5.5

CVSS3.1

CVE-2025-38623 - PCI: pnv_php: Fix surprise plug detection and recovery

In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Fix surprise plug detection and recovery The existing PowerNV hotplug code did not handle surprise plug events correctly, leading to a complete failure of the hotplug system after device removal and a required reboo…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 4:38 p.m.

5.5

CVSS3.1

CVE-2025-38622 - net: drop UFO packets in udp_rcv_segment()

In the Linux kernel, the following vulnerability has been resolved: net: drop UFO packets in udp_rcv_segment() When sending a packet with virtio_net_hdr to tun device, if the gso_type in virtio_net_hdr is SKB_GSO_UDP and the gso_size is less than udphdr size, below crash may happen. ----------…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 4:40 p.m.

7.1

CVSS3.1

CVE-2025-38616 - tls: handle data disappearing from under the TLS ULP

In the Linux kernel, the following vulnerability has been resolved: tls: handle data disappearing from under the TLS ULP TLS expects that it owns the receive queue of the TCP socket. This cannot be guaranteed in case the reader of the TCP socket entered before the TLS ULP was installed, or uses s…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Nov. 26, 2025, 5:44 p.m.

10

CVSS3.1

CVE-2022-31491 -

Voltronic Power ViewPower through 1.04-24215, ViewPower Pro through 2.0-22165, and PowerShield Netguard before 1.04-23292 allows a remote attacker to run arbitrary code via an unspecified web interface related to detection of a managed UPS shutting down. An unauthenticated attacker can use this to …

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4174 of 34,919
Β« previous page Β» next page
Filters