7.1

CVSS3.1

CVE-2025-37780 - isofs: Prevent the use of too small fid

In the Linux kernel, the following vulnerability has been resolved: isofs: Prevent the use of too small fid syzbot reported a slab-out-of-bounds Read in isofs_fh_to_parent. [1] The handle_bytes value passed in by the reproducing program is equal to 12. In handle_to_path(), only 12 bytes of memor…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 6, 2025, 7:11 p.m.

4.7

CVSS3.1

CVE-2022-49920 - netfilter: nf_tables: netlink notifier might race to release objects

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: netlink notifier might race to release objects commit release path is invoked via call_rcu and it runs lockless to release the objects after rcu grace period. The netlink notifier handler might win race to r…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 3:15 p.m.

6.5

CVSS3.1

CVE-2025-44842 -

TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the msg_process function via the Port parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 3:30 p.m.

5.5

CVSS3.1

CVE-2022-49832 - pinctrl: devicetree: fix null pointer dereferencing in pinctrl_dt_to_map

In the Linux kernel, the following vulnerability has been resolved: pinctrl: devicetree: fix null pointer dereferencing in pinctrl_dt_to_map Here is the BUG report by KASAN about null pointer dereference: BUG: KASAN: null-ptr-deref in strcmp+0x2e/0x50 Read of size 1 at addr 0000000000000000 by t…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 10, 2025, 7:57 p.m.

5.5

CVSS3.1

CVE-2025-37754 - drm/i915/huc: Fix fence not released on early probe errors

In the Linux kernel, the following vulnerability has been resolved: drm/i915/huc: Fix fence not released on early probe errors HuC delayed loading fence, introduced with commit 27536e03271da ("drm/i915/huc: track delayed HuC load with a fence"), is registered with object tracker early on driver p…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 6, 2025, 9:28 p.m.

5.5

CVSS3.1

CVE-2025-23143 - net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod.

In the Linux kernel, the following vulnerability has been resolved: net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod. When I ran the repro [0] and waited a few seconds, I observed two LOCKDEP splats: a warning immediately followed by a null-ptr-deref. [1] Reproduction Steps: …

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 5, 2025, 10:05 p.m.

5.5

CVSS3.1

CVE-2022-49793 - iio: trigger: sysfs: fix possible memory leak in iio_sysfs_trig_init()

In the Linux kernel, the following vulnerability has been resolved: iio: trigger: sysfs: fix possible memory leak in iio_sysfs_trig_init() dev_set_name() allocates memory for name, it need be freed when device_add() fails, call put_device() to give up the reference that hold in device_initialize(…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 6, 2025, 10:07 p.m.

7.8

CVSS3.1

CVE-2022-49910 - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_reassemble_sdu

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free caused by l2cap_reassemble_sdu Fix the race condition between the following two flows that run in parallel: 1. l2cap_reassemble_sdu -> chan->ops->recv (l2cap_sock_recv_cb) -> __sock_queue_…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 11, 2025, 1:38 a.m.

6.3

CVSS3.1

CVE-2025-44847 -

TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the setWebWlanIdx function via the webWlanIdx parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 3:31 p.m.

7.8

CVSS3.1

CVE-2022-49763 - ntfs: fix use-after-free in ntfs_attr_find()

In the Linux kernel, the following vulnerability has been resolved: ntfs: fix use-after-free in ntfs_attr_find() Patch series "ntfs: fix bugs about Attribute", v2. This patchset fixes three bugs relative to Attribute in record: Patch 1 adds a sanity check to ensure that, attrs_offset field in f…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:25 p.m.
Total resulsts: 347632
Page 5456 of 34,764
Β« previous page Β» next page
Filters