5.5

CVSS3.1

CVE-2025-38407 - riscv: cpu_ops_sbi: Use static array for boot_data

In the Linux kernel, the following vulnerability has been resolved: riscv: cpu_ops_sbi: Use static array for boot_data Since commit 6b9f29b81b15 ("riscv: Enable pcpu page first chunk allocator"), if NUMA is enabled, the page percpu allocator may be used on very sparse configurations, or when requ…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 6:19 p.m.

5.5

CVSS3.1

CVE-2025-38436 - drm/scheduler: signal scheduled fence when kill job

In the Linux kernel, the following vulnerability has been resolved: drm/scheduler: signal scheduled fence when kill job When an entity from application B is killed, drm_sched_entity_kill() removes all jobs belonging to that entity through drm_sched_entity_kill_jobs_work(). If application A's job …

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: April 20, 2026, 4 p.m.

7.0

CVSS3.1

CVE-2025-38380 - kernel: i2c/designware: Fix an initialization issue

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Sept. 17, 2025, 1:51 p.m.

7.8

CVSS3.1

CVE-2025-38411 - netfs: Fix double put of request

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix double put of request If a netfs request finishes during the pause loop, it will have the ref that belongs to the IN_PROGRESS flag removed at that point - however, if it then goes to the final wait loop, that will *als…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 6:23 p.m.

0.0

CVE-2025-29630 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue; there is no indication that an applicable SSH private key has ever been compromised. Notes: none.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: April 3, 2026, 8:16 p.m.

7.1

CVSS3.1

CVE-2025-38446 - clk: imx: Fix an out-of-bounds access in dispmix_csr_clk_dev_data

In the Linux kernel, the following vulnerability has been resolved: clk: imx: Fix an out-of-bounds access in dispmix_csr_clk_dev_data When num_parents is 4, __clk_register() occurs an out-of-bounds when accessing parent_names member. Use ARRAY_SIZE() instead of hardcode number here. BUG: KASAN:…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 5:48 p.m.

5.5

CVSS3.1

CVE-2025-38406 - wifi: ath6kl: remove WARN on bad firmware input

In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: remove WARN on bad firmware input If the firmware gives bad input, that's nothing to do with the driver's stack at this point etc., so the WARN_ON() doesn't add any value. Additionally, this is one of the top syzbot…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:30 p.m.

5.5

CVSS3.1

CVE-2025-38424 - perf: Fix sample vs do_exit()

In the Linux kernel, the following vulnerability has been resolved: perf: Fix sample vs do_exit() Baisheng Gao reported an ARM64 crash, which Mark decoded as being a synchronous external abort -- most likely due to trying to access MMIO in bad ways. The crash further shows perf trying to do a us…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 6:35 p.m.

7.8

CVSS3.1

CVE-2025-38377 - rose: fix dangling neighbour pointers in rose_rt_device_down()

In the Linux kernel, the following vulnerability has been resolved: rose: fix dangling neighbour pointers in rose_rt_device_down() There are two bugs in rose_rt_device_down() that can cause use-after-free: 1. The loop bound `t->count` is modified within the loop, which can cause the loop to t…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 5:20 p.m.

9.4

CVSS3.1

CVE-2025-29628 -

A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 leaving the string vulnerable to interception and modification through a Man-in-t…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4523 of 34,919
Β« previous page Β» next page
Filters