5.5

CVSS3.1

CVE-2025-37910 - ptp: ocp: Fix NULL dereference in Adva board SMA sysfs operations

In the Linux kernel, the following vulnerability has been resolved: ptp: ocp: Fix NULL dereference in Adva board SMA sysfs operations On Adva boards, SMA sysfs store/get operations can call __handle_signal_outputs() or __handle_signal_inputs() while the `irig` and `dcf` pointers are uninitialized…

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: Nov. 17, 2025, 2:45 p.m.

9.8

CVSS3.1

CVE-2025-44896 -

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_bindEdit_post function.

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: May 29, 2025, 3:53 p.m.

7.0

CVSS3.1

CVE-2025-37902 - kernel: dm: fix copying after src array boundaries

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: May 26, 2025, 11:15 a.m.

9.8

CVSS3.1

CVE-2025-44891 -

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_add_post function.

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: May 29, 2025, 3:53 p.m.

9.8

CVSS3.1

CVE-2025-44881 -

A command injection vulnerability in the component /cgi-bin/qos.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 1:20 a.m.

5.5

CVSS3.1

CVE-2025-37911 - bnxt_en: Fix out-of-bound memcpy() during ethtool -w

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix out-of-bound memcpy() during ethtool -w When retrieving the FW coredump using ethtool, it can sometimes cause memory corruption: BUG: KFENCE: memory corruption in __bnxt_get_coredump+0x3ef/0x670 [bnxt_en] Corrupted …

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: Nov. 17, 2025, 2:50 p.m.

5.5

CVSS3.1

CVE-2025-37978 - block: integrity: Do not call set_page_dirty_lock()

In the Linux kernel, the following vulnerability has been resolved: block: integrity: Do not call set_page_dirty_lock() Placing multiple protection information buffers inside the same page can lead to oopses because set_page_dirty_lock() can't be called from interrupt context. Since a protection…

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: Nov. 14, 2025, 5:01 p.m.

9.8

CVSS3.1

CVE-2025-44882 -

A command injection vulnerability in the component /cgi-bin/firewall.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 1:19 a.m.

9.8

CVSS3.1

CVE-2025-44898 -

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_loginAuthlistEdit function.

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: May 29, 2025, 3:52 p.m.

5.5

CVSS3.1

CVE-2025-37961 - ipvs: fix uninit-value for saddr in do_output_route4

In the Linux kernel, the following vulnerability has been resolved: ipvs: fix uninit-value for saddr in do_output_route4 syzbot reports for uninit-value for the saddr argument [1]. commit 4754957f04f5 ("ipvs: do not use random local source address for tunnels") already implies that the input valu…

πŸ“… Published: May 20, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 8:38 p.m.
Total resulsts: 343948
Page 4795 of 34,395
Β« previous page Β» next page
Filters