0.0

CVE-2025-38200 - i40e: fix MMIO write access to an invalid page in i40e_clear_hw

In the Linux kernel, the following vulnerability has been resolved: i40e: fix MMIO write access to an invalid page in i40e_clear_hw When the device sends a specific input, an integer underflow can occur, leading to MMIO write access to an invalid page. Prevent the integer underflow by changing t…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38198 - fbcon: Make sure modelist not set on unregistered console

In the Linux kernel, the following vulnerability has been resolved: fbcon: Make sure modelist not set on unregistered console It looks like attempting to write to the "store_modes" sysfs node will run afoul of unregistered consoles: UBSAN: array-index-out-of-bounds in drivers/video/fbdev/core/fb…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38197 - platform/x86: dell_rbu: Fix list usage

In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell_rbu: Fix list usage Pass the correct list head to list_for_each_entry*() when looping through the packet list. Without this patch, reading the packet data via sysfs will show the data incorrectly (because it s…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38196 - io_uring/rsrc: validate buffer count with offset for cloning

In the Linux kernel, the following vulnerability has been resolved: io_uring/rsrc: validate buffer count with offset for cloning syzbot reports that it can trigger a WARN_ON() for kmalloc() attempt that's too big: WARNING: CPU: 0 PID: 6488 at mm/slub.c:5024 __kvmalloc_node_noprof+0x520/0x640 mm/…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38195 - LoongArch: Fix panic caused by NULL-PMD in huge_pte_offset()

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix panic caused by NULL-PMD in huge_pte_offset() ERROR INFO: CPU 25 Unable to handle kernel paging request at virtual address 0x0 ... Call Trace: [<900000000023c30c>] huge_pte_offset+0x3c/0x58 [<900000000…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38194 - jffs2: check that raw node were preallocated before writing summary

In the Linux kernel, the following vulnerability has been resolved: jffs2: check that raw node were preallocated before writing summary Syzkaller detected a kernel bug in jffs2_link_node_ref, caused by fault injection in jffs2_prealloc_raw_node_refs. jffs2_sum_write_sumnode doesn't check return v…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38190 - atm: Revert atm_account_tx() if copy_from_iter_full() fails.

In the Linux kernel, the following vulnerability has been resolved: atm: Revert atm_account_tx() if copy_from_iter_full() fails. In vcc_sendmsg(), we account skb->truesize to sk->sk_wmem_alloc by atm_account_tx(). It is expected to be reverted by atm_pop_raw() later called by vcc->dev->ops->send…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38187 - drm/nouveau: fix a use-after-free in r535_gsp_rpc_push()

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix a use-after-free in r535_gsp_rpc_push() The RPC container is released after being passed to r535_gsp_rpc_send(). When sending the initial fragment of a large RPC and passing the caller's RPC container, the conta…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38186 - bnxt_en: Fix double invocation of bnxt_ulp_stop()/bnxt_ulp_start()

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix double invocation of bnxt_ulp_stop()/bnxt_ulp_start() Before the commit under the Fixes tag below, bnxt_ulp_stop() and bnxt_ulp_start() were always invoked in pairs. After that commit, the new bnxt_ulp_restart() can…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.

0.0

CVE-2025-38184 - tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer

In the Linux kernel, the following vulnerability has been resolved: tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer The reproduction steps: 1. create a tun interface 2. enable l2 bearer 3. TIPC_NL_UDP_GET_REMOTEIP with media name set to tun tipc: Started in network mode tipc…

πŸ“… Published: July 4, 2025, 1:37 p.m. πŸ”„ Last Modified: July 4, 2025, 2:15 p.m.
Total resulsts: 300551
Page 7 of 30,056
Β« previous page Β» next page
Filters