7.8

CVSS3.1

CVE-2025-38464 - tipc: Fix use-after-free in tipc_conn_close().

In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free in tipc_conn_close(). syzbot reported a null-ptr-deref in tipc_conn_close() during netns dismantle. [0] tipc_topsrv_stop() iterates tipc_net(net)->topsrv->conn_idr and calls tipc_conn_close() for each ti…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Dec. 22, 2025, 7:35 p.m.

7.8

CVSS3.1

CVE-2025-38459 - atm: clip: Fix infinite recursive call of clip_push().

In the Linux kernel, the following vulnerability has been resolved: atm: clip: Fix infinite recursive call of clip_push(). syzbot reported the splat below. [0] This happens if we call ioctl(ATMARP_MKIP) more than once. During the first call, clip_mkip() sets clip_push() to vcc->push(), and the …

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Dec. 22, 2025, 9:50 p.m.

5.5

CVSS3.1

CVE-2025-38381 - Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt()

In the Linux kernel, the following vulnerability has been resolved: Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt() The cs40l50_upload_owt() function allocates memory via kmalloc() without checking for allocation failure, which could lead to a NULL pointer dereferenc…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:05 p.m.

6.1

CVSS3.1

CVE-2025-45893 -

OpenCart version 4.1.0.4 is vulnerable to a Stored Cross-Site Scripting (XSS) attack via SVG file uploads used in blog posts. The vulnerability arises because SVG files uploaded through the media manager are not properly sanitized. Attackers can craft a malicious SVG file containing embedded JavaSc…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Aug. 7, 2025, 1:31 a.m.

5.5

CVSS3.1

CVE-2025-38398 - spi: spi-qpic-snand: reallocate BAM transactions

In the Linux kernel, the following vulnerability has been resolved: spi: spi-qpic-snand: reallocate BAM transactions Using the mtd_nandbiterrs module for testing the driver occasionally results in weird things like below. 1. swiotlb mapping fails with the following message: [ 85.926216] qco…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 6:18 p.m.

8.8

CVSS3.1

CVE-2025-45466 -

Unitree Go1 <= Go1_2022_05_11 is vulnerale to Incorrect Access Control due to authentication credentials being hardcoded in plaintext.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Jan. 12, 2026, 4:26 p.m.

6.5

CVSS3.1

CVE-2025-44608 -

CloudClassroom-PHP Project v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Aug. 7, 2025, 1:11 a.m.

5.5

CVSS3.1

CVE-2025-38458 - atm: clip: Fix NULL pointer dereference in vcc_sendmsg()

In the Linux kernel, the following vulnerability has been resolved: atm: clip: Fix NULL pointer dereference in vcc_sendmsg() atmarpd_dev_ops does not implement the send method, which may cause crash as bellow. BUG: kernel NULL pointer dereference, address: 0000000000000000 PGD 0 P4D 0 Oops: Oops…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Dec. 22, 2025, 9:49 p.m.

4.7

CVSS3.1

CVE-2025-38440 - net/mlx5e: Fix race between DIM disable and net_dim()

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix race between DIM disable and net_dim() There's a race between disabling DIM and NAPI callbacks using the dim pointer on the RQ or SQ. If NAPI checks the DIM state bit and sees it still set, it assumes `rq->dim` or…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 6:09 p.m.

5.5

CVSS3.1

CVE-2025-38435 - riscv: vector: Fix context save/restore with xtheadvector

In the Linux kernel, the following vulnerability has been resolved: riscv: vector: Fix context save/restore with xtheadvector Previously only v0-v7 were correctly saved/restored, and the context of v8-v31 are damanged. Correctly save/restore v8-v31 to avoid breaking userspace.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 6:09 p.m.
Total resulsts: 349182
Page 4520 of 34,919
Β« previous page Β» next page
Filters