7.8

CVSS3.1

CVE-2025-38131 - coresight: prevent deactivate active config while enabling the config

In the Linux kernel, the following vulnerability has been resolved: coresight: prevent deactivate active config while enabling the config While enable active config via cscfg_csdev_enable_active_config(), active config could be deactivated via configfs' sysfs interface. This could make UAF issue โ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 17, 2025, 6:12 p.m.

5.5

CVSS3.1

CVE-2025-38130 - drm/connector: only call HDMI audio helper plugged cb if non-null

In the Linux kernel, the following vulnerability has been resolved: drm/connector: only call HDMI audio helper plugged cb if non-null On driver remove, sound/soc/codecs/hdmi-codec.c calls the plugged_cb with NULL as the callback function and codec_dev, as seen in its hdmi_remove function. The HDโ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 20, 2025, 9:22 p.m.

5.5

CVSS3.1

CVE-2025-38128 - Bluetooth: MGMT: reject malformed HCI_CMD_SYNC commands

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: reject malformed HCI_CMD_SYNC commands In 'mgmt_hci_cmd_sync()', check whether the size of parameters passed in 'struct mgmt_cp_hci_cmd_sync' matches the total size of the data (i.e. 'sizeof(struct mgmt_cp_hci_cmโ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 20, 2025, 9:31 p.m.

5.5

CVSS3.1

CVE-2025-38126 - net: stmmac: make sure that ptp_rate is not 0 before configuring timestamping

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: make sure that ptp_rate is not 0 before configuring timestamping The stmmac platform drivers that do not open-code the clk_ptp_rate value after having retrieved the default one from the device-tree can end up with 0 โ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 17, 2025, 6:12 p.m.

5.5

CVSS3.1

CVE-2025-38121 - wifi: iwlwifi: mld: avoid panic on init failure

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: avoid panic on init failure In case of an error during init, in_hw_restart will be set, but it will never get cleared. Instead, we will retry to init again, and then we will act like we are in a restart when wโ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 20, 2025, 9:33 p.m.

7.8

CVSS3.1

CVE-2025-38118 - Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete This reworks MGMT_OP_REMOVE_ADV_MONITOR to not use mgmt_pending_add to avoid crashes like bellow: ================================================================== BUโ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 17, 2025, 6:29 p.m.

7.8

CVSS3.1

CVE-2025-38116 - wifi: ath12k: fix uaf in ath12k_core_init()

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix uaf in ath12k_core_init() When the execution of ath12k_core_hw_group_assign() or ath12k_core_hw_group_create() fails, the registered notifier chain is not unregistered properly. Its memory is freed after rmmod, โ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 20, 2025, 9:33 p.m.

5.5

CVSS3.1

CVE-2025-38115 - net_sched: sch_sfq: fix a potential crash on gso_skb handling

In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: fix a potential crash on gso_skb handling SFQ has an assumption of always being able to queue at least one packet. However, after the blamed commit, sch->q.len can be inflated by packets in sch->gso_skb, and โ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 17, 2025, 6:13 p.m.

5.5

CVSS3.1

CVE-2025-38113 - ACPI: CPPC: Fix NULL pointer dereference when nosmp is used

In the Linux kernel, the following vulnerability has been resolved: ACPI: CPPC: Fix NULL pointer dereference when nosmp is used With nosmp in cmdline, other CPUs are not brought up, leaving their cpc_desc_ptr NULL. CPU0's iteration via for_each_possible_cpu() dereferences these NULL pointers, cauโ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 17, 2025, 6:28 p.m.

5.5

CVSS3.1

CVE-2025-38114 - e1000: Move cancel_work_sync to avoid deadlock

In the Linux kernel, the following vulnerability has been resolved: e1000: Move cancel_work_sync to avoid deadlock Previously, e1000_down called cancel_work_sync for the e1000 reset task (via e1000_down_and_stop), which takes RTNL. As reported by users and syzbot, a deadlock is possible in the fโ€ฆ

๐Ÿ“… Published: July 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 20, 2025, 9:33 p.m.
Total resulsts: 349182
Page 4810 of 34,919
ยซ previous page ยป next page
Filters