7.8

CVSS3.1

CVE-2025-37839 - jbd2: remove wrong sb->s_sequence check

In the Linux kernel, the following vulnerability has been resolved: jbd2: remove wrong sb->s_sequence check Journal emptiness is not determined by sb->s_sequence == 0 but rather by sb->s_start == 0 (which is set a few lines above). Furthermore 0 is a valid transaction ID so the check can spurious…

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:29 p.m.

7.8

CVSS3.1

CVE-2025-37869 - drm/xe: Use local fence in error path of xe_migrate_clear

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Use local fence in error path of xe_migrate_clear The intent of the error path in xe_migrate_clear is to wait on locally generated fence and then return. The code is waiting on m->fence which could be the local fence but …

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 8:37 p.m.

5.5

CVSS3.1

CVE-2025-37865 - net: dsa: mv88e6xxx: fix -ENOENT when deleting VLANs and MST is unsupported

In the Linux kernel, the following vulnerability has been resolved: net: dsa: mv88e6xxx: fix -ENOENT when deleting VLANs and MST is unsupported Russell King reports that on the ZII dev rev B, deleting a bridge VLAN from a user port fails with -ENOENT: https://lore.kernel.org/netdev/Z_lQXNP0s5-IiJ…

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 8:13 p.m.

5.5

CVSS3.1

CVE-2025-37876 - netfs: Only create /proc/fs/netfs with CONFIG_PROC_FS

In the Linux kernel, the following vulnerability has been resolved: netfs: Only create /proc/fs/netfs with CONFIG_PROC_FS When testing a special config: CONFIG_NETFS_SUPPORTS=y CONFIG_PROC_FS=n The system crashes with something like: [ 3.766197] ------------[ cut here ]------------ [ 3.7…

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 7:52 p.m.

2.9

CVSS3.1

CVE-2025-47736 -

dialect/mod.rs in the libsql-sqlite3-parser crate through 0.13.0 before 14f422a for Rust can crash if the input is not valid UTF-8.

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: May 12, 2025, 5:32 p.m.

5.5

CVSS3.1

CVE-2025-37855 - drm/amd/display: Guard Possible Null Pointer Dereference

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Guard Possible Null Pointer Dereference [WHY] In some situations, dc->res_pool may be null. [HOW] Check if pointer is null before dereference.

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 17, 2025, 12:51 p.m.

5.5

CVSS3.1

CVE-2025-37873 - eth: bnxt: fix missing ring index trim on error path

In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: fix missing ring index trim on error path Commit under Fixes converted tx_prod to be free running but missed masking it on the Tx error path. This crashes on error conditions, for example when DMA mapping fails.

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 7:51 p.m.

5.5

CVSS3.1

CVE-2025-37875 - igc: fix PTM cycle trigger logic

In the Linux kernel, the following vulnerability has been resolved: igc: fix PTM cycle trigger logic Writing to clear the PTM status 'valid' bit while the PTM cycle is triggered results in unreliable PTM operation. To fix this, clear the PTM 'trigger' and status after each PTM transaction. The i…

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 7:52 p.m.

5.5

CVSS3.1

CVE-2025-37867 - RDMA/core: Silence oversized kvmalloc() warning

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Silence oversized kvmalloc() warning syzkaller triggered an oversized kvmalloc() warning. Silence it by adding __GFP_NOWARN. syzkaller log: WARNING: CPU: 7 PID: 518 at mm/util.c:665 __kvmalloc_node_noprof+0x175/0x180…

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 8:15 p.m.

8.8

CVSS3.1

CVE-2025-29509 -

Jan v0.5.14 and before is vulnerable to remote code execution (RCE) when the user clicks on a rendered link in the conversation, due to opening external website in the app and the exposure of electronAPI, with a lack of filtering of URL when calling shell.openExternal().

πŸ“… Published: May 9, 2025, midnight πŸ”„ Last Modified: May 12, 2025, 5:32 p.m.
Total resulsts: 342654
Page 4832 of 34,266
Β« previous page Β» next page
Filters