7.8

CVSS3.1

CVE-2025-54279 - Animate | Use After Free (CWE-416)

Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:27 p.m.

5.5

CVSS3.1

CVE-2025-54269 - Animate | Out-of-bounds Read (CWE-125)

Animate versions 23.0.13, 24.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a vict…

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:29 p.m.

5.5

CVSS3.1

CVE-2025-54270 - Animate | NULL Pointer Dereference (CWE-476)

Animate versions 23.0.13, 24.0.10 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive memory information. Exploitation of this issue requires user interaction in that a victim mu…

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:29 p.m.

5.5

CVSS3.1

CVE-2025-39974 - tracing/osnoise: Fix slab-out-of-bounds in _parse_integer_limit()

In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Fix slab-out-of-bounds in _parse_integer_limit() When config osnoise cpus by write() syscall, the following KASAN splat may be observed: BUG: KASAN: slab-out-of-bounds in _parse_integer_limit+0x103/0x130 Read of…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:27 p.m.

5.5

CVSS3.1

CVE-2025-39967 - fbcon: fix integer overflow in fbcon_do_set_font

In the Linux kernel, the following vulnerability has been resolved: fbcon: fix integer overflow in fbcon_do_set_font Fix integer overflow vulnerabilities in fbcon_do_set_font() where font size calculations could overflow when handling user-controlled font parameters. The vulnerabilities occur wh…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.

7.0

CVSS3.1

CVE-2025-39970 - i40e: fix input validation logic for action_meta

In the Linux kernel, the following vulnerability has been resolved: i40e: fix input validation logic for action_meta Fix condition to check 'greater or equal' to prevent OOB dereference.

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.

7.0

CVSS3.1

CVE-2025-39966 - iommufd: Fix race during abort for file descriptors

In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix race during abort for file descriptors fput() doesn't actually call file_operations release() synchronously, it puts the file on a work queue and it will be released eventually. This is normally fine, except for iom…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:27 p.m.

7.0

CVSS3.1

CVE-2025-39982 - Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync This fixes the following UFA in hci_acl_create_conn_sync where a connection still pending is command submission (conn->state == BT_OPEN) maybe freed, also since this also …

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.

7.0

CVSS3.1

CVE-2025-39993 - media: rc: fix races with imon_disconnect()

In the Linux kernel, the following vulnerability has been resolved: media: rc: fix races with imon_disconnect() Syzbot reports a KASAN issue as below: BUG: KASAN: use-after-free in __create_pipe include/linux/usb.h:1945 [inline] BUG: KASAN: use-after-free in send_packet+0xa2d/0xbc0 drivers/media/…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 19, 2025, 2:48 p.m.

7.0

CVSS3.1

CVE-2025-39971 - i40e: fix idx validation in config queues msg

In the Linux kernel, the following vulnerability has been resolved: i40e: fix idx validation in config queues msg Ensure idx is within range of active/initialized TCs when iterating over vf->ch[idx] in i40e_vc_config_queues_msg().

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: Oct. 20, 2025, 1:26 p.m.
Total resulsts: 314798
Page 52 of 31,480
Β« previous page Β» next page
Filters