4.1

CVSS3.1

CVE-2025-52357 -

Cross-Site Scripting (XSS) vulnerability exists in the ping diagnostic feature of FiberHome FD602GW-DX-R410 router (firmware V2.2.14), allowing an authenticated attacker to execute arbitrary JavaScript code in the context of the router s web interface. The vulnerability is triggered via user-suppli…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS3.1

CVE-2025-49604 -

For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and ameba-rtos-d before commit c2bfd8216a1cbc19ad2ab5f48f372ecea756d67a on 2025/07/03. In the WLAN driver defragment function, lack of validation of the size of fragmented Wi-F…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-38243 - btrfs: fix invalid inode pointer dereferences during log replay

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix invalid inode pointer dereferences during log replay In a few places where we call read_one_inode(), if we get a NULL pointer we end up jumping into an error path, or fallthrough in case of __add_inode_ref(), where we …

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 3:37 p.m.

5.5

CVSS3.1

CVE-2025-38251 - atm: clip: prevent NULL deref in clip_push()

In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket() calls clip_push() with a NULL skb. If clip_devs is NULL, clip_push() then crashes when reading skb->truesize.

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 5:08 p.m.

5.5

CVSS3.1

CVE-2025-38244 - smb: client: fix potential deadlock when reconnecting channels

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when reconnecting channels Fix cifs_signal_cifsd_for_reconnect() to take the correct lock order and prevent the following deadlock from happening ==============================================…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 8:13 p.m.

7.5

CVSS3.1

CVE-2025-52364 -

Insecure Permissions vulnerability in Tenda CP3 Pro Firmware V22.5.4.93 allows the telnet service (telnetd) by default at boot via the initialization script /etc/init.d/eth.sh. This allows remote attackers to connect to the device s shell over the network, potentially without authentication if defa…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Aug. 7, 2025, 6:02 p.m.

5.5

CVSS3.1

CVE-2025-38261 - riscv: save the SR_SUM status over switches

In the Linux kernel, the following vulnerability has been resolved: riscv: save the SR_SUM status over switches When threads/tasks are switched we need to ensure the old execution's SR_SUM state is saved and the new thread has the old SR_SUM state restored. The issue was seen under heavy load es…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 8:14 p.m.

5.5

CVSS3.1

CVE-2025-38255 - lib/group_cpus: fix NULL pointer dereference from group_cpus_evenly()

In the Linux kernel, the following vulnerability has been resolved: lib/group_cpus: fix NULL pointer dereference from group_cpus_evenly() While testing null_blk with configfs, echo 0 > poll_queues will trigger following panic: BUG: kernel NULL pointer dereference, address: 0000000000000010 Oops:…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:58 p.m.

5.5

CVSS3.1

CVE-2025-38256 - io_uring/rsrc: fix folio unpinning

In the Linux kernel, the following vulnerability has been resolved: io_uring/rsrc: fix folio unpinning syzbot complains about an unmapping failure: [ 108.070381][ T14] kernel BUG at mm/gup.c:71! [ 108.070502][ T14] Internal error: Oops - BUG: 00000000f2000800 [#1] SMP [ 108.123672][ T1…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:58 p.m.

5.5

CVSS3.1

CVE-2025-38254 - drm/amd/display: Add sanity checks for drm_edid_raw()

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add sanity checks for drm_edid_raw() When EDID is retrieved via drm_edid_raw(), it doesn't guarantee to return proper EDID bytes the caller wants: it may be either NULL (that leads to an Oops) or with too long by…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 9 p.m.
Total resulsts: 347632
Page 4557 of 34,764
Β« previous page Β» next page
Filters