9.8

CVSS3.1

CVE-2025-65783 -

An arbitrary file upload vulnerability in the /utils/uploadFile component of Hubert Imoveis e Administracao Ltda Hub v2.0 1.27.3 allows attackers to execute arbitrary code via uploading a crafted PDF file.

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.

5.5

CVSS3.1

CVE-2025-68792 - tpm2-sessions: Fix out of range indexing in name_size

In the Linux kernel, the following vulnerability has been resolved: tpm2-sessions: Fix out of range indexing in name_size 'name_size' does not have any range checks, and it just directly indexes with TPM_ALG_ID, which could lead into memory corruption at worst. Address the issue by only processi…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 17, 2026, 4:16 p.m.

7.0

CVSS3.1

CVE-2025-71080 - ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT On PREEMPT_RT kernels, after rt6_get_pcpu_route() returns NULL, the current task can be preempted. Another task running on the same CPU may then execute rt6_make_pcpu_route…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.

7.0

CVSS3.1

CVE-2025-68815 - net/sched: ets: Remove drr class from the active list if it changes to strict

In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: Remove drr class from the active list if it changes to strict Whenever a user issues an ets qdisc change command, transforming a drr class into a strict one, the ets code isn't checking whether that class was in t…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

7.5

CVSS3.1

CVE-2025-25652 -

In Eptura Archibus 2024.03.01.109, the "Run script" and "Server File" components of the "Database Update Wizard" are vulnerable to directory traversal.

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:25 p.m.

7.0

CVSS3.1

CVE-2025-71093 - e1000: fix OOB in e1000_tbi_should_accept()

In the Linux kernel, the following vulnerability has been resolved: e1000: fix OOB in e1000_tbi_should_accept() In e1000_tbi_should_accept() we read the last byte of the frame via 'data[length - 1]' to evaluate the TBI workaround. If the descriptor- reported length is zero or larger than the actu…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

7.0

CVSS3.1

CVE-2025-68800 - mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats

In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats Cited commit added a dedicated mutex (instead of RTNL) to protect the multicast route list, so that it will not change while the driver periodically trave…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68809 - ksmbd: vfs: fix race on m_flags in vfs_cache

In the Linux kernel, the following vulnerability has been resolved: ksmbd: vfs: fix race on m_flags in vfs_cache ksmbd maintains delete-on-close and pending-delete state in ksmbd_inode->m_flags. In vfs_cache.c this field is accessed under inconsistent locking: some paths read and modify m_flags u…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.

0.0

CVE-2025-68805 - fuse: fix io-uring list corruption for terminated non-committed requests

In the Linux kernel, the following vulnerability has been resolved: fuse: fix io-uring list corruption for terminated non-committed requests When a request is terminated before it has been committed, the request is not removed from the queue's list. This leaves a dangling list entry that leads to…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.

5.5

CVSS3.1

CVE-2025-68794 - iomap: adjust read range correctly for non-block-aligned positions

In the Linux kernel, the following vulnerability has been resolved: iomap: adjust read range correctly for non-block-aligned positions iomap_adjust_read_range() assumes that the position and length passed in are block-aligned. This is not always the case however, as shown in the syzbot generated …

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.
Total resulsts: 327928
Page 77 of 32,793
Β« previous page Β» next page
Filters