5.5

CVSS3.1

CVE-2025-71115 - um: init cpu_tasks[] earlier

In the Linux kernel, the following vulnerability has been resolved: um: init cpu_tasks[] earlier This is currently done in uml_finishsetup(), but e.g. with KCOV enabled we'll crash because some init code can call into e.g. memparse(), which has coverage annotations, and then the checks in check_k…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 7 p.m.

7.1

CVSS3.1

CVE-2025-71116 - libceph: make decode_pool() more resilient against corrupted osdmaps

In the Linux kernel, the following vulnerability has been resolved: libceph: make decode_pool() more resilient against corrupted osdmaps If the osdmap is (maliciously) corrupted such that the encoded length of ceph_pg_pool envelope is less than what is expected for a particular encoding version, …

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 6:59 p.m.

4.6

CVSS3.1

CVE-2025-67399 -

An issue in AIRTH SMART HOME AQI MONITOR Bootloader v.1.005 allows a physically proximate attacker to obtain sensitive information via the UART port of the BK7231N controller (Wi-Fi and BLE module) on the device is open to access

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: Feb. 12, 2026, 5:54 p.m.

5.5

CVSS3.1

CVE-2025-71124 - drm/msm/a6xx: move preempt_prepare_postamble after error check

In the Linux kernel, the following vulnerability has been resolved: drm/msm/a6xx: move preempt_prepare_postamble after error check Move the call to preempt_prepare_postamble() after verifying that preempt_postamble_ptr is valid. If preempt_postamble_ptr is NULL, dereferencing it in preempt_prepar…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 6:48 p.m.

5.5

CVSS3.1

CVE-2025-71130 - drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer

In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer Initialize the eb.vma array with values of 0 when the eb structure is first set up. In particular, this sets the eb->vma[i].vma pointers to NULL, simplifyin…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 6:53 p.m.

5.5

CVSS3.1

CVE-2025-71125 - tracing: Do not register unsupported perf events

In the Linux kernel, the following vulnerability has been resolved: tracing: Do not register unsupported perf events Synthetic events currently do not have a function to register perf events. This leads to calling the tracepoint register functions with a NULL function pointer which triggers: --…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 6:49 p.m.

5.5

CVSS3.1

CVE-2025-71138 - drm/msm/dpu: Add missing NULL pointer check for pingpong interface

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Add missing NULL pointer check for pingpong interface It is checked almost always in dpu_encoder_phys_wb_setup_ctl(), but in a single place the check is missing. Also use convenient locals instead of phys_enc->* wher…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 6:03 p.m.

7.1

CVSS3.1

CVE-2025-71133 - RDMA/irdma: avoid invalid read in irdma_net_event

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: avoid invalid read in irdma_net_event irdma_net_event() should not dereference anything from "neigh" (alias "ptr") until it has checked that the event is NETEVENT_NEIGH_UPDATE. Other events come with different structu…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 6:04 p.m.

5.4

CVSS3.1

CVE-2025-63644 -

A stored cross-site scripting (XSS) vulnerability exists in pH7Software pH7-Social-Dating-CMS 17.9.1 in the user profile Description field.

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: Jan. 23, 2026, 2:44 p.m.

5.5

CVSS3.1

CVE-2025-71144 - mptcp: ensure context reset on disconnect()

In the Linux kernel, the following vulnerability has been resolved: mptcp: ensure context reset on disconnect() After the blamed commit below, if the MPC subflow is already in TCP_CLOSE status or has fallback to TCP at mptcp_disconnect() time, mptcp_do_fastclose() skips setting the `send_fastclos…

πŸ“… Published: Jan. 14, 2026, midnight πŸ”„ Last Modified: Feb. 26, 2026, 6:41 p.m.
Total resulsts: 346944
Page 1919 of 34,695
Β« previous page Β» next page
Filters