5.5

CVSS3.1

CVE-2025-22010 - RDMA/hns: Fix soft lockup during bt pages loop

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix soft lockup during bt pages loop Driver runs a for-loop when allocating bt pages and mapping them with buffer pages. When a large buffer (e.g. MR over 100GB) is being allocated, it may require a considerable loop co…

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

5.5

CVSS3.1

CVE-2025-22009 - regulator: dummy: force synchronous probing

In the Linux kernel, the following vulnerability has been resolved: regulator: dummy: force synchronous probing Sometimes I get a NULL pointer dereference at boot time in kobject_get() with the following call stack: anatop_regulator_probe() devm_regulator_register() regulator_register() re…

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 5:15 p.m.

5.6

CVSS3.1

CVE-2025-32414 - libxml2: Out-of-Bounds Read in libxml2

In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memory access can occur in the Python API (Python bindings) because of an incorrect return value. This occurs in xmlPythonFileRead and xmlPythonFileReadRaw because of a difference between bytes and characters.

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

5.5

CVSS3.1

CVE-2025-22016 - dpll: fix xa_alloc_cyclic() error handling

In the Linux kernel, the following vulnerability has been resolved: dpll: fix xa_alloc_cyclic() error handling In case of returning 1 from xa_alloc_cyclic() (wrapping) ERR_PTR(1) will be returned, which will cause IS_ERR() to be false. Which can lead to dereference not allocated pointer (pin). F…

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Oct. 28, 2025, 5:09 p.m.

5.5

CVSS3.1

CVE-2025-22011 - ARM: dts: bcm2711: Fix xHCI power-domain

In the Linux kernel, the following vulnerability has been resolved: ARM: dts: bcm2711: Fix xHCI power-domain During s2idle tests on the Raspberry CM4 the VPU firmware always crashes on xHCI power-domain resume: root@raspberrypi:/sys/power# echo freeze > state [ 70.724347] xhci_suspend finished…

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 7:15 p.m.

5.5

CVSS3.1

CVE-2025-22015 - mm/migrate: fix shmem xarray update during migration

In the Linux kernel, the following vulnerability has been resolved: mm/migrate: fix shmem xarray update during migration A shmem folio can be either in page cache or in swap cache, but not at the same time. Namely, once it is in swap cache, folio->mapping should be NULL, and the folio is no long…

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

5.5

CVSS3.1

CVE-2025-22017 - devlink: fix xa_alloc_cyclic() error handling

In the Linux kernel, the following vulnerability has been resolved: devlink: fix xa_alloc_cyclic() error handling In case of returning 1 from xa_alloc_cyclic() (wrapping) ERR_PTR(1) will be returned, which will cause IS_ERR() to be false. Which can lead to dereference not allocated pointer (rel).…

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Oct. 28, 2025, 5:08 p.m.

5.5

CVSS3.1

CVE-2025-22013 - KVM: arm64: Unconditionally save+flush host FPSIMD/SVE/SME state

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Unconditionally save+flush host FPSIMD/SVE/SME state There are several problems with the way hyp code lazily saves the host's FPSIMD/SVE state, including: * Host SVE being discarded unexpectedly due to inconsistent …

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Oct. 28, 2025, 5:16 p.m.

8.8

CVSS3.1

CVE-2024-55354 -

Lucee before 5.4.7.3 LTS and 6 before 6.1.1.118, when an attacker can place files on the server, is vulnerable to a protection mechanism failure that can let an attacker run code that would be expected to be blocked and access resources that would be expected to be protected.

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-22008 - regulator: check that dummy regulator has been probed before using it

In the Linux kernel, the following vulnerability has been resolved: regulator: check that dummy regulator has been probed before using it Due to asynchronous driver probing there is a chance that the dummy regulator hasn't already been probed when first accessing it.

πŸ“… Published: April 8, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 4:15 p.m.
Total resulsts: 349182
Page 5980 of 34,919
Β« previous page Β» next page
Filters