0.0

CVE-2025-38572 - ipv6: reject malicious packets in ipv6_gso_segment()

In the Linux kernel, the following vulnerability has been resolved: ipv6: reject malicious packets in ipv6_gso_segment() syzbot was able to craft a packet with very long IPv6 extension headers leading to an overflow of skb->transport_header. This 16bit field has a limited range. Add skb_reset_t…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38571 - sunrpc: fix client side handling of tls alerts

In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix client side handling of tls alerts A security exploit was discovered in NFS over TLS in tls_alert_recv due to its assumption that there is valid data in the msghdr's iterator's kvec. Instead, this patch proposes the …

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38570 - eth: fbnic: unlink NAPIs from queues on error to open

In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: unlink NAPIs from queues on error to open CI hit a UaF in fbnic in the AF_XDP portion of the queues.py test. The UaF is in the __sk_mark_napi_id_once() call in xsk_bind(), NAPI has been freed. Looks like the device fa…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38569 - benet: fix BUG when creating VFs

In the Linux kernel, the following vulnerability has been resolved: benet: fix BUG when creating VFs benet crashes as soon as SRIOV VFs are created: kernel BUG at mm/vmalloc.c:3457! Oops: invalid opcode: 0000 [#1] SMP KASAN NOPTI CPU: 4 UID: 0 PID: 7408 Comm: test.sh Kdump: loaded Not tainted…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38568 - net/sched: mqprio: fix stack out-of-bounds write in tc entry parsing

In the Linux kernel, the following vulnerability has been resolved: net/sched: mqprio: fix stack out-of-bounds write in tc entry parsing TCA_MQPRIO_TC_ENTRY_INDEX is validated using NLA_POLICY_MAX(NLA_U32, TC_QOPT_MAX_QUEUE), which allows the value TC_QOPT_MAX_QUEUE (16). This leads to a 4-byte o…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38567 - nfsd: avoid ref leak in nfsd_open_local_fh()

In the Linux kernel, the following vulnerability has been resolved: nfsd: avoid ref leak in nfsd_open_local_fh() If two calls to nfsd_open_local_fh() race and both successfully call nfsd_file_acquire_local(), they will both get an extra reference to the net to accompany the file reference stored …

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38566 - sunrpc: fix handling of server side tls alerts

In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix handling of server side tls alerts Scott Mayhew discovered a security exploit in NFS over TLS in tls_alert_recv() due to its assumption it can read data from the msg iterator's kvec.. kTLS implementation splits TLS n…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38565 - perf/core: Exit early on perf_mmap() fail

In the Linux kernel, the following vulnerability has been resolved: perf/core: Exit early on perf_mmap() fail When perf_mmap() fails to allocate a buffer, it still invokes the event_mapped() callback of the related event. On X86 this might increase the perf_rdpmc_allowed reference counter. But no…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38564 - perf/core: Handle buffer mapping fail correctly in perf_mmap()

In the Linux kernel, the following vulnerability has been resolved: perf/core: Handle buffer mapping fail correctly in perf_mmap() After successful allocation of a buffer or a successful attachment to an existing buffer perf_mmap() tries to map the buffer read only into the page table. If that fa…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38563 - perf/core: Prevent VMA split of buffer mappings

In the Linux kernel, the following vulnerability has been resolved: perf/core: Prevent VMA split of buffer mappings The perf mmap code is careful about mmap()'ing the user page with the ringbuffer and additionally the auxiliary buffer, when the event supports it. Once the first mapping is establi…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.
Total resulsts: 306525
Page 50 of 30,653
Β« previous page Β» next page
Filters