0.0

CVE-2025-38561 - ksmbd: fix Preauh_HashValue race condition

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If client send multiple session setup requests to ksmbd, Preauh_HashValue race condition could happen. There is no need to free sess->Preauh_HashValue at session setup phase. It can be f…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38560 - x86/sev: Evict cache lines during SNP memory validation

In the Linux kernel, the following vulnerability has been resolved: x86/sev: Evict cache lines during SNP memory validation An SNP cache coherency vulnerability requires a cache line eviction mitigation when validating memory after a page state change to private. The specific mitigation is to tou…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38559 - platform/x86/intel/pmt: fix a crashlog NULL pointer access

In the Linux kernel, the following vulnerability has been resolved: platform/x86/intel/pmt: fix a crashlog NULL pointer access Usage of the intel_pmt_read() for binary sysfs, requires a pcidev. The current use of the endpoint value is only valid for telemetry endpoint usage. Without the ep, the …

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38558 - usb: gadget: uvc: Initialize frame-based format color matching descriptor

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Initialize frame-based format color matching descriptor Fix NULL pointer crash in uvcg_framebased_make due to uninitialized color matching descriptor for frame-based format which was added in commit f5e7bdd34aca…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38557 - HID: apple: validate feature-report field count to prevent NULL pointer dereference

In the Linux kernel, the following vulnerability has been resolved: HID: apple: validate feature-report field count to prevent NULL pointer dereference A malicious HID device with quirk APPLE_MAGIC_BACKLIGHT can trigger a NULL pointer dereference whilst the power feature-report is toggled and sen…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38556 - HID: core: Harden s32ton() against conversion to 0 bits

In the Linux kernel, the following vulnerability has been resolved: HID: core: Harden s32ton() against conversion to 0 bits Testing by the syzbot fuzzer showed that the HID core gets a shift-out-of-bounds exception when it tries to convert a 32-bit quantity to a 0-bit quantity. Ideally this shou…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38555 - usb: gadget : fix use-after-free in composite_dev_cleanup()

In the Linux kernel, the following vulnerability has been resolved: usb: gadget : fix use-after-free in composite_dev_cleanup() 1. In func configfs_composite_bind() -> composite_os_desc_req_prepare(): if kmalloc fails, the pointer cdev->os_desc_req will be freed but not set to NULL. Then it will …

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

0.0

CVE-2025-38554 - mm: fix a UAF when vma->mm is freed after vma->vm_refcnt got dropped

In the Linux kernel, the following vulnerability has been resolved: mm: fix a UAF when vma->mm is freed after vma->vm_refcnt got dropped By inducing delays in the right places, Jann Horn created a reproducer for a hard to hit UAF issue that became possible after VMAs were allowed to be recycled b…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

5.3

CVSS4.0

CVE-2025-9148 - CodePhiliaX Chat2DB JDBC Connection DataSourceController.java sql injection

A vulnerability was found in CodePhiliaX Chat2DB up to 0.3.7. This affects an unknown function of the file ai/chat2db/server/web/api/controller/data/source/DataSourceController.java of the component JDBC Connection Handler. The manipulation results in sql injection. The attack can be executed remot…

πŸ“… Published: Aug. 19, 2025, 5:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:02 p.m.

5.1

CVSS4.0

CVE-2025-54880 - Mermaid does not properly sanitize architecture diagram iconText leading to XSS

Mermaid is a JavaScript based diagramming and charting tool that uses Markdown-inspired text definitions and a renderer to create and modify complex diagrams. In the default configuration of mermaid 11.9.0 and earlier, user supplied input for architecture diagram icons is passed to the d3 html() me…

πŸ“… Published: Aug. 19, 2025, 4:58 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 5:09 p.m.
Total resulsts: 306547
Page 53 of 30,655
Β« previous page Β» next page
Filters