5.5

CVSS3.1

CVE-2025-38251 - atm: clip: prevent NULL deref in clip_push()

In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket() calls clip_push() with a NULL skb. If clip_devs is NULL, clip_push() then crashes when reading skb->truesize.

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 5:08 p.m.

7.1

CVSS3.1

CVE-2025-38249 - ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3()

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3() In snd_usb_get_audioformat_uac3(), the length value returned from snd_usb_ctl_msg() is used directly for memory allocation without validation. This length …

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 5:11 p.m.

5.5

CVSS3.1

CVE-2025-38238 - scsi: fnic: Fix crash in fnic_wq_cmpl_handler when FDMI times out

In the Linux kernel, the following vulnerability has been resolved: scsi: fnic: Fix crash in fnic_wq_cmpl_handler when FDMI times out When both the RHBA and RPA FDMI requests time out, fnic reuses a frame to send ABTS for each of them. On send completion, this causes an attempt to free the same f…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 3:54 p.m.

6.5

CVSS3.1

CVE-2025-44525 -

Texas Instruments CC2652RB LaunchPad SimpleLink CC13XX CC26XX SDK 7.41.00.17 was discovered to utilize insufficient permission checks on critical fields within Bluetooth Low Energy (BLE) data packets. This issue allows attackers to cause a Denial of Service (DoS) via a crafted LL_Length_Req packet.

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-38258 - mm/damon/sysfs-schemes: free old damon_sysfs_scheme_filter->memcg_path on write

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: free old damon_sysfs_scheme_filter->memcg_path on write memcg_path_store() assigns a newly allocated memory buffer to filter->memcg_path, without deallocating the previously allocated and assigned memory b…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:52 p.m.

5.5

CVSS3.1

CVE-2025-38252 - cxl/ras: Fix CPER handler device confusion

In the Linux kernel, the following vulnerability has been resolved: cxl/ras: Fix CPER handler device confusion By inspection, cxl_cper_handle_prot_err() is making a series of fragile assumptions that can lead to crashes: 1/ It assumes that endpoints identified in the record are a CXL-type-3 d…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 9:01 p.m.

5.5

CVSS3.1

CVE-2025-38241 - mm/shmem, swap: fix softlockup with mTHP swapin

In the Linux kernel, the following vulnerability has been resolved: mm/shmem, swap: fix softlockup with mTHP swapin Following softlockup can be easily reproduced on my test machine with: echo always > /sys/kernel/mm/transparent_hugepage/hugepages-64kB/enabled swapon /dev/zram0 # zram0 is a 48G s…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 3:51 p.m.

5.5

CVSS3.1

CVE-2025-38263 - bcache: fix NULL pointer in cache_set_flush()

In the Linux kernel, the following vulnerability has been resolved: bcache: fix NULL pointer in cache_set_flush() 1. LINE#1794 - LINE#1887 is some codes about function of bch_cache_set_alloc(). 2. LINE#2078 - LINE#2142 is some codes about function of register_cache_set(). 3. register_cache_…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 4:58 p.m.

5.5

CVSS3.1

CVE-2025-38243 - btrfs: fix invalid inode pointer dereferences during log replay

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix invalid inode pointer dereferences during log replay In a few places where we call read_one_inode(), if we get a NULL pointer we end up jumping into an error path, or fallthrough in case of __add_inode_ref(), where we …

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 3:37 p.m.

5.5

CVSS3.1

CVE-2025-38261 - riscv: save the SR_SUM status over switches

In the Linux kernel, the following vulnerability has been resolved: riscv: save the SR_SUM status over switches When threads/tasks are switched we need to ensure the old execution's SR_SUM state is saved and the new thread has the old SR_SUM state restored. The issue was seen under heavy load es…

πŸ“… Published: July 9, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 8:14 p.m.
Total resulsts: 349182
Page 4712 of 34,919
Β« previous page Β» next page
Filters