5.5

CVSS3.1

CVE-2025-38549 - efivarfs: Fix memory leak of efivarfs_fs_info in fs_context error paths

In the Linux kernel, the following vulnerability has been resolved: efivarfs: Fix memory leak of efivarfs_fs_info in fs_context error paths When processing mount options, efivarfs allocates efivarfs_fs_info (sfi) early in fs_context initialization. However, sfi is associated with the superblock a…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 6:10 p.m.

5.5

CVSS3.1

CVE-2025-38542 - net: appletalk: Fix device refcount leak in atrtr_create()

In the Linux kernel, the following vulnerability has been resolved: net: appletalk: Fix device refcount leak in atrtr_create() When updating an existing route entry in atrtr_create(), the old device reference was not being released before assigning the new device, leading to a device refcount lea…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 6:40 p.m.

7.8

CVSS3.1

CVE-2025-38536 - net: airoha: fix potential use-after-free in airoha_npu_get()

In the Linux kernel, the following vulnerability has been resolved: net: airoha: fix potential use-after-free in airoha_npu_get() np->name was being used after calling of_node_put(np), which releases the node and can lead to a use-after-free bug. Previously, of_node_put(np) was called uncondition…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 6:17 p.m.

4.7

CVSS3.1

CVE-2025-38524 - rxrpc: Fix recv-recv race of completed call

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix recv-recv race of completed call If a call receives an event (such as incoming data), the call gets placed on the socket's queue and a thread in recvmsg can be awakened to go and process it. Once the thread has picked…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 9:53 p.m.

5.5

CVSS3.1

CVE-2025-38518 - x86/CPU/AMD: Disable INVLPGB on Zen2

In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Disable INVLPGB on Zen2 AMD Cyan Skillfish (Family 17h, Model 47h, Stepping 0h) has an issue that causes system oopses and panics when performing TLB flush using INVLPGB. However, the problem is that that machine ha…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 9:51 p.m.

4.7

CVSS3.1

CVE-2025-38515 - drm/sched: Increment job count before swapping tail spsc queue

In the Linux kernel, the following vulnerability has been resolved: drm/sched: Increment job count before swapping tail spsc queue A small race exists between spsc_queue_push and the run-job worker, in which spsc_queue_push may return not-first while the run-job worker has already idled due to th…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 5:46 p.m.

5.5

CVSS3.1

CVE-2025-38507 - HID: nintendo: avoid bluetooth suspend/resume stalls

In the Linux kernel, the following vulnerability has been resolved: HID: nintendo: avoid bluetooth suspend/resume stalls Ensure we don't stall or panic the kernel when using bluetooth-connected controllers. This was reported as an issue on android devices using kernel 6.6 due to the resume hook w…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 5:22 p.m.

5.5

CVSS3.1

CVE-2025-38504 - io_uring/zcrx: fix pp destruction warnings

In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix pp destruction warnings With multiple page pools and in some other cases we can have allocated niovs on page pool destruction. Remove a misplaced warning checking that all niovs are returned to zcrx on io_pp_zc…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 5:21 p.m.

5.5

CVSS3.1

CVE-2025-38508 - x86/sev: Use TSC_FACTOR for Secure TSC frequency calculation

In the Linux kernel, the following vulnerability has been resolved: x86/sev: Use TSC_FACTOR for Secure TSC frequency calculation When using Secure TSC, the GUEST_TSC_FREQ MSR reports a frequency based on the nominal P0 frequency, which deviates slightly (typically ~0.2%) from the actual mean TSC …

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 5:22 p.m.

5.5

CVSS3.1

CVE-2023-32249 - ksmbd: not allow guest user on multichannel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: not allow guest user on multichannel This patch return STATUS_NOT_SUPPORTED if binding session is guest.

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 5:57 p.m.
Total resulsts: 349182
Page 4253 of 34,919
Β« previous page Β» next page
Filters