7.5

CVSS3.1

CVE-2025-38501 - ksmbd: limit repeated connections from clients with the same IP

In the Linux kernel, the following vulnerability has been resolved: ksmbd: limit repeated connections from clients with the same IP Repeated connections from clients with the same IP address may exhaust the max connections and prevent other normal client connections. This patch limit repeated con…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: March 17, 2026, 4:04 p.m.

0.0

CVE-2025-55777 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Sept. 15, 2025, 5:22 p.m.

7.1

CVSS3.1

CVE-2025-38502 - bpf: Fix oob access in cgroup local storage

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix oob access in cgroup local storage Lonial reported that an out-of-bounds access in cgroup local storage can be crafted via tail calls. Given two programs each utilizing a cgroup local storage with a different value size,…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 4:32 p.m.

5.5

CVSS3.1

CVE-2025-38532 - net: libwx: properly reset Rx ring descriptor

In the Linux kernel, the following vulnerability has been resolved: net: libwx: properly reset Rx ring descriptor When device reset is triggered by feature changes such as toggling Rx VLAN offload, wx->do_reset() is called to reinitialize Rx rings. The hardware descriptor ring may retain stale va…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 6:16 p.m.

5.5

CVSS3.1

CVE-2025-38503 - btrfs: fix assertion when building free space tree

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix assertion when building free space tree When building the free space tree with the block group tree feature enabled, we can hit an assertion failure like this: BTRFS info (device loop0 state M): rebuilding free spac…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Jan. 22, 2026, 6:37 p.m.

5.5

CVSS3.1

CVE-2025-38523 - cifs: Fix the smbd_response slab to allow usercopy

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix the smbd_response slab to allow usercopy The handling of received data in the smbdirect client code involves using copy_to_iter() to copy data from the smbd_reponse struct's packet trailer to a folioq buffer provided by…

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 9:53 p.m.

5.5

CVSS3.1

CVE-2025-38516 - pinctrl: qcom: msm: mark certain pins as invalid for interrupts

In the Linux kernel, the following vulnerability has been resolved: pinctrl: qcom: msm: mark certain pins as invalid for interrupts On some platforms, the UFS-reset pin has no interrupt logic in TLMM but is nevertheless registered as a GPIO in the kernel. This enables the user-space to trigger a …

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 5:45 p.m.

7.8

CVSS3.1

CVE-2025-38512 - wifi: prevent A-MSDU attacks in mesh networks

In the Linux kernel, the following vulnerability has been resolved: wifi: prevent A-MSDU attacks in mesh networks This patch is a mitigation to prevent the A-MSDU spoofing vulnerability for mesh networks. The initial update to the IEEE 802.11 standard, in response to the FragAttacks, missed this …

πŸ“… Published: Aug. 16, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 5:58 p.m.

2.3

CVSS4.0

CVE-2017-20199 - Buttercup buttercup-browser-extension Vault access control

A vulnerability was found in Buttercup buttercup-browser-extension up to 0.14.2. Affected by this vulnerability is an unknown functionality of the component Vault Handler. The manipulation results in improper access controls. The attack may be performed from a remote location. A high complexity lev…

πŸ“… Published: Aug. 15, 2025, 11:32 p.m. πŸ”„ Last Modified: Aug. 27, 2025, 4:51 p.m.

4.3

CVSS3.1

CVE-2025-52618 - HCL BigFix SaaS Authentication Service is affected by a SQL injection vulnerability

HCL BigFix SaaS Authentication Service is affected by a SQL injection vulnerability. The vulnerability allows potential attackers to manipulate SQL queries.

πŸ“… Published: Aug. 15, 2025, 10:49 p.m. πŸ”„ Last Modified: Oct. 29, 2025, 8:29 p.m.
Total resulsts: 349182
Page 4255 of 34,919
Β« previous page Β» next page
Filters