0.0

CVE-2025-68797 - char: applicom: fix NULL pointer dereference in ac_ioctl

In the Linux kernel, the following vulnerability has been resolved: char: applicom: fix NULL pointer dereference in ac_ioctl Discovered by Atuin - Automated Vulnerability Discovery Engine. In ac_ioctl, the validation of IndexCard and the check for a valid RamIO pointer are skipped when cmd is 6.…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68796 - f2fs: fix to avoid updating zero-sized extent in extent cache

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid updating zero-sized extent in extent cache As syzbot reported: F2FS-fs (loop0): __update_extent_tree_range: extent len is zero, type: 0, extent [0, 0, 0], age [0, 0] ------------[ cut here ]------------ kernel…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

5.5

CVSS3.1

CVE-2025-68788 - fsnotify: do not generate ACCESS/MODIFY events on child for special files

In the Linux kernel, the following vulnerability has been resolved: fsnotify: do not generate ACCESS/MODIFY events on child for special files inotify/fanotify do not allow users with no read access to a file to subscribe to events (e.g. IN_ACCESS/IN_MODIFY), but they do allow the same user to sub…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68787 - netrom: Fix memory leak in nr_sendmsg()

In the Linux kernel, the following vulnerability has been resolved: netrom: Fix memory leak in nr_sendmsg() syzbot reported a memory leak [1]. When function sock_alloc_send_skb() return NULL in nr_output(), the original skb is not freed, which was allocated in nr_sendmsg(). Fix this by freeing i…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

5.5

CVSS3.1

CVE-2025-68785 - net: openvswitch: fix middle attribute validation in push_nsh() action

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix middle attribute validation in push_nsh() action The push_nsh() action structure looks like this: OVS_ACTION_ATTR_PUSH_NSH(OVS_KEY_ATTR_NSH(OVS_NSH_KEY_ATTR_BASE,...)) The outermost OVS_ACTION_ATTR_PUSH_N…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68773 - spi: fsl-cpm: Check length parity before switching to 16 bit mode

In the Linux kernel, the following vulnerability has been resolved: spi: fsl-cpm: Check length parity before switching to 16 bit mode Commit fc96ec826bce ("spi: fsl-cpm: Use 16 bit mode for large transfers with even size") failed to make sure that the size is really even before switching to 16 bi…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:18 p.m.

0.0

CVE-2025-68767 - hfsplus: Verify inode mode when loading from disk

In the Linux kernel, the following vulnerability has been resolved: hfsplus: Verify inode mode when loading from disk syzbot is reporting that S_IFMT bits of inode->i_mode can become bogus when the S_IFMT bits of the 16bits "mode" field loaded from disk are corrupted. According to [1], the permi…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:18 p.m.

5.5

CVSS3.1

CVE-2025-71090 - nfsd: fix nfsd_file reference leak in nfsd4_add_rdaccess_to_wrdeleg()

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfsd_file reference leak in nfsd4_add_rdaccess_to_wrdeleg() nfsd4_add_rdaccess_to_wrdeleg() unconditionally overwrites fp->fi_fds[O_RDONLY] with a newly acquired nfsd_file. However, if the client already has a SHARE_ACC…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.

7.0

CVSS3.1

CVE-2025-71080 - ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT On PREEMPT_RT kernels, after rt6_get_pcpu_route() returns NULL, the current task can be preempted. Another task running on the same CPU may then execute rt6_make_pcpu_route…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.

0.0

CVE-2025-71074 - functionfs: fix the open/removal races

In the Linux kernel, the following vulnerability has been resolved: functionfs: fix the open/removal races ffs_epfile_open() can race with removal, ending up with file->private_data pointing to freed object. There is a total count of opened files on functionfs (both ep0 and dynamic ones) and whe…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.
Total resulsts: 327943
Page 81 of 32,795
Β« previous page Β» next page
Filters