7.0

CVSS3.1

CVE-2025-38168 - perf: arm-ni: Unregister PMUs on probe failure

In the Linux kernel, the following vulnerability has been resolved: perf: arm-ni: Unregister PMUs on probe failure When a resource allocation fails in one clock domain of an NI device, we need to properly roll back all previously registered perf PMUs in other clock domains of the same device. Ot…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.5

CVSS3.1

CVE-2025-38165 - bpf, sockmap: Fix panic when calling skb_linearize

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix panic when calling skb_linearize The panic can be reproduced by executing the command: ./bench sockmap -c 2 -p 1 -a --rx-verdict-ingress --rx-strp 100000 Then a kernel panic was captured: ''' [ 657.460555] ker…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

7.0

CVSS3.1

CVE-2025-38160 - clk: bcm: rpi: Add NULL check in raspberrypi_clk_register()

In the Linux kernel, the following vulnerability has been resolved: clk: bcm: rpi: Add NULL check in raspberrypi_clk_register() devm_kasprintf() returns NULL when memory allocation fails. Currently, raspberrypi_clk_register() does not check for this case, which results in a NULL pointer dereferen…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

7.0

CVSS3.1

CVE-2025-38159 - wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds Set the size to 6 instead of 2, since 'para' array is passed to 'rtw_fw_bt_wifi_control(rtwdev, para[0], &para[1])', which reads 5 bytes: void rtw_fw_bt_wifi…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.5

CVSS3.1

CVE-2025-38158 - hisi_acc_vfio_pci: fix XQE dma address error

In the Linux kernel, the following vulnerability has been resolved: hisi_acc_vfio_pci: fix XQE dma address error The dma addresses of EQE and AEQE are wrong after migration and results in guest kernel-mode encryption services failure. Comparing the definition of hardware registers, we found that…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

7.0

CVSS3.1

CVE-2025-38157 - wifi: ath9k_htc: Abort software beacon handling if disabled

In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: Abort software beacon handling if disabled A malicious USB device can send a WMI_SWBA_EVENTID event from an ath9k_htc-managed device before beaconing has been enabled. This causes a device-by-zero error in the dr…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.5

CVSS3.1

CVE-2025-38156 - wifi: mt76: mt7996: Fix null-ptr-deref in mt7996_mmio_wed_init()

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Fix null-ptr-deref in mt7996_mmio_wed_init() devm_ioremap() returns NULL on error. Currently, mt7996_mmio_wed_init() does not check for this case, which results in a NULL pointer dereference. Prevent null poi…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.5

CVSS3.1

CVE-2025-38155 - wifi: mt76: mt7915: Fix null-ptr-deref in mt7915_mmio_wed_init()

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: Fix null-ptr-deref in mt7915_mmio_wed_init() devm_ioremap() returns NULL on error. Currently, mt7915_mmio_wed_init() does not check for this case, which results in a NULL pointer dereference. Prevent null poi…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.5

CVSS3.1

CVE-2025-38153 - net: usb: aqc111: fix error handling of usbnet read calls

In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: fix error handling of usbnet read calls Syzkaller, courtesy of syzbot, identified an error (see report [1]) in aqc111 driver, caused by incomplete sanitation of usb read calls' results. This problem is quite sim…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.5

CVSS3.1

CVE-2025-38151 - RDMA/cma: Fix hang when cma_netevent_callback fails to queue_work

In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Fix hang when cma_netevent_callback fails to queue_work The cited commit fixed a crash when cma_netevent_callback was called for a cma_id while work on that id from a previous call had not yet started. The work item was…

πŸ“… Published: July 3, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.
Total resulsts: 300270
Page 8 of 30,027
Β« previous page Β» next page
Filters