5.5

CVSS3.1

CVE-2025-38282 - kernfs: Relax constraint in draining guard

In the Linux kernel, the following vulnerability has been resolved: kernfs: Relax constraint in draining guard The active reference lifecycle provides the break/unbreak mechanism but the active reference is not truly active after unbreak -- callers don't use it afterwards but it's important for p…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 4:50 p.m.

7.8

CVSS3.1

CVE-2025-38346 - ftrace: Fix UAF when lookup kallsym after ftrace disabled

In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix UAF when lookup kallsym after ftrace disabled The following issue happens with a buggy module: BUG: unable to handle page fault for address: ffffffffc05d0218 PGD 1bd66f067 P4D 1bd66f067 PUD 1bd671067 PMD 101808067 PT…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 5:38 p.m.

7.8

CVSS3.1

CVE-2025-38338 - fs/nfs/read: fix double-unlock bug in nfs_return_empty_folio()

In the Linux kernel, the following vulnerability has been resolved: fs/nfs/read: fix double-unlock bug in nfs_return_empty_folio() Sometimes, when a file was read while it was being truncated by another NFS client, the kernel could deadlock because folio_unlock() was called twice, and the second …

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 12:52 p.m.

7.8

CVSS3.1

CVE-2025-38295 - perf/amlogic: Replace smp_processor_id() with raw_smp_processor_id() in meson_ddr_pmu_create()

In the Linux kernel, the following vulnerability has been resolved: perf/amlogic: Replace smp_processor_id() with raw_smp_processor_id() in meson_ddr_pmu_create() The Amlogic DDR PMU driver meson_ddr_pmu_create() function incorrectly uses smp_processor_id(), which assumes disabled preemption. Thi…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: March 17, 2026, 4 p.m.

8

CVSS3.1

CVE-2025-28243 -

An issue in Alteryx Server v.2023.1.1.460 allows HTML injection via a crafted script to the pages component.

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: July 17, 2025, 1:16 p.m.

6.1

CVSS3.1

CVE-2025-45662 -

A cross-site scripting (XSS) vulnerability in the component /master/login.php of mpgram-web commit 94baadb allows attackers to execute arbitrary Javascript in the context of a user's browser via a crafted payload.

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Oct. 17, 2025, 6:56 p.m.

5.5

CVSS3.1

CVE-2025-38284 - wifi: rtw89: pci: configure manual DAC mode via PCI config API only

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: configure manual DAC mode via PCI config API only To support 36-bit DMA, configure chip proprietary bit via PCI config API or chip DBI interface. However, the PCI device mmap isn't set yet and the DBI is also in…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:36 p.m.

7.8

CVSS3.1

CVE-2025-38317 - wifi: ath12k: Fix buffer overflow in debugfs

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix buffer overflow in debugfs If the user tries to write more than 32 bytes then it results in memory corruption. Fortunately, this is debugfs so it's limited to root users.

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 12:54 p.m.

5.5

CVSS3.1

CVE-2025-38345 - ACPICA: fix acpi operand cache leak in dswstate.c

In the Linux kernel, the following vulnerability has been resolved: ACPICA: fix acpi operand cache leak in dswstate.c ACPICA commit 987a3b5cf7175916e2a4b6ea5b8e70f830dfe732 I found an ACPI cache leak in ACPI early termination and boot continuing case. When early termination occurs due to malici…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:30 p.m.

5.5

CVSS3.1

CVE-2025-38321 - smb: Log an error when close_all_cached_dirs fails

In the Linux kernel, the following vulnerability has been resolved: smb: Log an error when close_all_cached_dirs fails Under low-memory conditions, close_all_cached_dirs() can't move the dentries to a separate list to dput() them once the locks are dropped. This will result in a "Dentry still in …

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:30 p.m.
Total resulsts: 345149
Page 4290 of 34,515
Β« previous page Β» next page
Filters