7.0

CVSS3.1

CVE-2025-71098 - ip6_gre: make ip6gre_header() robust

In the Linux kernel, the following vulnerability has been resolved: ip6_gre: make ip6gre_header() robust Over the years, syzbot found many ways to crash the kernel in ip6gre_header() [1]. This involves team or bonding drivers ability to dynamically change their dev->needed_headroom and/or dev->h…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

7.0

CVSS3.1

CVE-2025-71094 - net: usb: asix: validate PHY address before use

In the Linux kernel, the following vulnerability has been resolved: net: usb: asix: validate PHY address before use The ASIX driver reads the PHY address from the USB device via asix_read_phy_addr(). A malicious or faulty device can return an invalid address (>= PHY_MAX_ADDR), which causes a warn…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

5.5

CVSS3.1

CVE-2025-71075 - scsi: aic94xx: fix use-after-free in device removal path

In the Linux kernel, the following vulnerability has been resolved: scsi: aic94xx: fix use-after-free in device removal path The asd_pci_remove() function fails to synchronize with pending tasklets before freeing the asd_ha structure, leading to a potential use-after-free vulnerability. When a d…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

7.0

CVSS3.1

CVE-2025-68819 - media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg()

In the Linux kernel, the following vulnerability has been resolved: media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg() rlen value is a user-controlled value, but dtv5100_i2c_msg() does not check the size of the rlen value. Therefore, if it is set to a value larger than sizeof(st->dat…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

5.6

CVSS3.1

CVE-2025-68816 - net/mlx5: fw_tracer, Validate format string parameters

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fw_tracer, Validate format string parameters Add validation for format string parameters in the firmware tracer to prevent potential security vulnerabilities and crashes from malformed format strings received from firmw…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68808 - media: vidtv: initialize local pointers upon transfer of memory ownership

In the Linux kernel, the following vulnerability has been resolved: media: vidtv: initialize local pointers upon transfer of memory ownership vidtv_channel_si_init() creates a temporary list (program, service, event) and ownership of the memory itself is transferred to the PAT/SDT/EIT tables thro…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68796 - f2fs: fix to avoid updating zero-sized extent in extent cache

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid updating zero-sized extent in extent cache As syzbot reported: F2FS-fs (loop0): __update_extent_tree_range: extent len is zero, type: 0, extent [0, 0, 0], age [0, 0] ------------[ cut here ]------------ kernel…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:19 p.m.

0.0

CVE-2025-68773 - spi: fsl-cpm: Check length parity before switching to 16 bit mode

In the Linux kernel, the following vulnerability has been resolved: spi: fsl-cpm: Check length parity before switching to 16 bit mode Commit fc96ec826bce ("spi: fsl-cpm: Use 16 bit mode for large transfers with even size") failed to make sure that the size is really even before switching to 16 bi…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:18 p.m.

0.0

CVE-2025-68767 - hfsplus: Verify inode mode when loading from disk

In the Linux kernel, the following vulnerability has been resolved: hfsplus: Verify inode mode when loading from disk syzbot is reporting that S_IFMT bits of inode->i_mode can become bogus when the S_IFMT bits of the 16bits "mode" field loaded from disk are corrupted. According to [1], the permi…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 19, 2026, 12:18 p.m.

0.0

CVE-2025-71101 - platform/x86: hp-bioscfg: Fix out-of-bounds array access in ACPI package parsing

In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: Fix out-of-bounds array access in ACPI package parsing The hp_populate_*_elements_from_package() functions in the hp-bioscfg driver contain out-of-bounds array access vulnerabilities. These functions pa…

πŸ“… Published: Jan. 13, 2026, midnight πŸ”„ Last Modified: Jan. 14, 2026, 4:26 p.m.
Total resulsts: 327948
Page 82 of 32,795
Β« previous page Β» next page
Filters