5.4

CVSS3.1

CVE-2025-49604 -

For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and ameba-rtos-d before commit c2bfd8216a1cbc19ad2ab5f48f372ecea756d67a on 2025/07/03. In the WLAN driver defragment function, lack of validation of the size of fragmented Wi-F…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2025-38250 - Bluetooth: hci_core: Fix use-after-free in vhci_flush()

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix use-after-free in vhci_flush() syzbot reported use-after-free in vhci_flush() without repro. [0] From the splat, a thread close()d a vhci file descriptor while its device was being used by iotcl() on ano…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 11:16 a.m.

7.8

CVSS3.1

CVE-2025-38239 - scsi: megaraid_sas: Fix invalid node index

In the Linux kernel, the following vulnerability has been resolved: scsi: megaraid_sas: Fix invalid node index On a system with DRAM interleave enabled, out-of-bound access is detected: megaraid_sas 0000:3f:00.0: requested/available msix 128/128 poll_queue 0 ------------[ cut here ]------------ …

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 5:15 p.m.

6.5

CVSS3.1

CVE-2021-27961 -

evesys 7.1 (2152) through 8.0 (2202) allows Reflected XSS via the indexeva.php action parameter.

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-38264 - nvme-tcp: sanitize request list handling

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: sanitize request list handling Validate the request in nvme_tcp_handle_r2t() to ensure it's not part of any list, otherwise a malicious R2T PDU might inject a loop in request list processing.

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 6:22 p.m.

5.5

CVSS3.1

CVE-2025-38258 - mm/damon/sysfs-schemes: free old damon_sysfs_scheme_filter->memcg_path on write

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: free old damon_sysfs_scheme_filter->memcg_path on write memcg_path_store() assigns a newly allocated memory buffer to filter->memcg_path, without deallocating the previously allocated and assigned memory b…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:52 p.m.

5.5

CVSS3.1

CVE-2025-38241 - mm/shmem, swap: fix softlockup with mTHP swapin

In the Linux kernel, the following vulnerability has been resolved: mm/shmem, swap: fix softlockup with mTHP swapin Following softlockup can be easily reproduced on my test machine with: echo always > /sys/kernel/mm/transparent_hugepage/hugepages-64kB/enabled swapon /dev/zram0 # zram0 is a 48G s…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 3:51 p.m.

5.5

CVSS3.1

CVE-2025-38263 - bcache: fix NULL pointer in cache_set_flush()

In the Linux kernel, the following vulnerability has been resolved: bcache: fix NULL pointer in cache_set_flush() 1. LINE#1794 - LINE#1887 is some codes about function of bch_cache_set_alloc(). 2. LINE#2078 - LINE#2142 is some codes about function of register_cache_set(). 3. register_cache_…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 4:58 p.m.

4.1

CVSS3.1

CVE-2025-52357 -

Cross-Site Scripting (XSS) vulnerability exists in the ping diagnostic feature of FiberHome FD602GW-DX-R410 router (firmware V2.2.14), allowing an authenticated attacker to execute arbitrary JavaScript code in the context of the router s web interface. The vulnerability is triggered via user-suppli…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-44526 -

Realtek RTL8762EKF-EVB RTL8762E SDK V1.4.0 was discovered to utilize insufficient permission checks on critical fields within Bluetooth Low Energy (BLE) data packets. This issue allows attackers to cause a Denial of Service (DoS) via a crafted LL_Length_Req packet.

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: July 18, 2025, 5:48 p.m.
Total resulsts: 347619
Page 4555 of 34,762
Β« previous page Β» next page
Filters