5.5

CVSS3.1

CVE-2022-49853 - net: macvlan: fix memory leaks of macvlan_common_newlink

In the Linux kernel, the following vulnerability has been resolved: net: macvlan: fix memory leaks of macvlan_common_newlink kmemleak reports memory leaks in macvlan_common_newlink, as follows: ip link add link eth0 name .. type macvlan mode source macaddr add <MAC-ADDR> kmemleak reports: un…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 5:15 p.m.

4.7

CVSS3.1

CVE-2022-49814 - kcm: close race conditions on sk_receive_queue

In the Linux kernel, the following vulnerability has been resolved: kcm: close race conditions on sk_receive_queue sk->sk_receive_queue is protected by skb queue lock, but for KCM sockets its RX path takes mux->rx_lock to protect more than just skb queue. However, kcm_recvmsg() still only grabs t…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 7, 2025, 6:51 p.m.

5.5

CVSS3.1

CVE-2022-49766 - netlink: Bounds-check struct nlmsgerr creation

In the Linux kernel, the following vulnerability has been resolved: netlink: Bounds-check struct nlmsgerr creation In preparation for FORTIFY_SOURCE doing bounds-check on memcpy(), switch from __nlmsg_put to nlmsg_put(), and explain the bounds check for dealing with the memcpy() across a composit…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:25 p.m.

5.5

CVSS3.1

CVE-2022-49765 - net/9p: use a dedicated spinlock for trans_fd

In the Linux kernel, the following vulnerability has been resolved: net/9p: use a dedicated spinlock for trans_fd Shamelessly copying the explanation from Tetsuo Handa's suggested patch[1] (slightly reworded): syzbot is reporting inconsistent lock state in p9_req_put()[2], for p9_tag_remove() fro…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:25 p.m.

6.3

CVSS3.1

CVE-2025-44846 -

TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the recvUpgradeNewFw function via the fwUrl parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 3:31 p.m.

5.5

CVSS3.1

CVE-2022-49828 - hugetlbfs: don't delete error page from pagecache

In the Linux kernel, the following vulnerability has been resolved: hugetlbfs: don't delete error page from pagecache This change is very similar to the change that was made for shmem [1], and it solves the same problem but for HugeTLBFS instead. Currently, when poison is found in a HugeTLB page…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:25 p.m.

5.5

CVSS3.1

CVE-2025-37756 - net: tls: explicitly disallow disconnect

In the Linux kernel, the following vulnerability has been resolved: net: tls: explicitly disallow disconnect syzbot discovered that it can disconnect a TLS socket and then run into all sort of unexpected corner cases. I have a vague recollection of Eric pointing this out to us a long time ago. Su…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:01 p.m.

5.5

CVSS3.1

CVE-2025-37748 - iommu/mediatek: Fix NULL pointer deference in mtk_iommu_device_group

In the Linux kernel, the following vulnerability has been resolved: iommu/mediatek: Fix NULL pointer deference in mtk_iommu_device_group Currently, mtk_iommu calls during probe iommu_device_register before the hw_list from driver data is initialized. Since iommu probing issue fix, it leads to NUL…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:07 p.m.

5.5

CVSS3.1

CVE-2025-23155 - net: stmmac: Fix accessing freed irq affinity_hint

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Fix accessing freed irq affinity_hint In stmmac_request_irq_multi_msi(), a pointer to the stack variable cpu_mask is passed to irq_set_affinity_hint(). This value is stored in irq_desc->affinity_hint, but once stmmac…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: March 17, 2026, 2:41 p.m.

5.5

CVSS3.1

CVE-2022-49926 - net: dsa: Fix possible memory leaks in dsa_loop_init()

In the Linux kernel, the following vulnerability has been resolved: net: dsa: Fix possible memory leaks in dsa_loop_init() kmemleak reported memory leaks in dsa_loop_init(): kmemleak: 12 new suspected memory leaks unreferenced object 0xffff8880138ce000 (size 2048): comm "modprobe", pid 390, j…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 3:15 p.m.
Total resulsts: 347632
Page 5457 of 34,764
Β« previous page Β» next page
Filters