CVE-2025-38688
- EPSS 0.02%
- Veröffentlicht 04.09.2025 15:32:42
- Zuletzt bearbeitet 24.11.2025 19:47:43
In the Linux kernel, the following vulnerability has been resolved: iommufd: Prevent ALIGN() overflow When allocating IOVA the candidate range gets aligned to the target alignment. If the range is close to ULONG_MAX then the ALIGN() can wrap result...
- EPSS 0.07%
- Veröffentlicht 04.09.2025 15:32:41
- Zuletzt bearbeitet 03.11.2025 18:16:35
In the Linux kernel, the following vulnerability has been resolved: comedi: fix race between polling and detaching syzbot reports a use-after-free in comedi in the below link, which is due to comedi gladly removing the allocated async area even tho...
CVE-2025-38686
- EPSS 0.02%
- Veröffentlicht 04.09.2025 15:32:40
- Zuletzt bearbeitet 24.11.2025 19:48:02
In the Linux kernel, the following vulnerability has been resolved: userfaultfd: fix a crash in UFFDIO_MOVE when PMD is a migration entry When UFFDIO_MOVE encounters a migration PMD entry, it proceeds with obtaining a folio and accessing it even th...
- EPSS 0.05%
- Veröffentlicht 04.09.2025 15:32:39
- Zuletzt bearbeitet 03.11.2025 18:16:34
In the Linux kernel, the following vulnerability has been resolved: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit This issue triggers when a userspace program does an ioctl FBIOPUT_CON2FBMAP by passing console number and frame buffer num...
- EPSS 0.05%
- Veröffentlicht 04.09.2025 15:32:38
- Zuletzt bearbeitet 03.11.2025 18:16:34
In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: Fix panic during namespace deletion with VF The existing code move the VF NIC to new namespace when NETDEV_REGISTER is received on netvsc NIC. During deletion of the nam...
- EPSS 0.05%
- Veröffentlicht 04.09.2025 15:32:38
- Zuletzt bearbeitet 03.11.2025 18:16:34
In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: use old 'nbands' while purging unused classes Shuang reported sch_ets test-case [1] crashing in ets_class_qlen_notify() after recent changes from Lion [2]. The prob...
CVE-2025-38682
- EPSS 0.02%
- Veröffentlicht 04.09.2025 15:32:37
- Zuletzt bearbeitet 25.11.2025 22:06:13
In the Linux kernel, the following vulnerability has been resolved: i2c: core: Fix double-free of fwnode in i2c_unregister_device() Before commit df6d7277e552 ("i2c: core: Do not dereference fwnode in struct device"), i2c_unregister_device() only c...
- EPSS 0.05%
- Veröffentlicht 04.09.2025 15:32:36
- Zuletzt bearbeitet 03.11.2025 18:16:34
In the Linux kernel, the following vulnerability has been resolved: mm/ptdump: take the memory hotplug lock inside ptdump_walk_pgd() Memory hot remove unmaps and tears down various kernel page table regions as required. The ptdump code can race wi...
- EPSS 0.04%
- Veröffentlicht 04.09.2025 15:32:35
- Zuletzt bearbeitet 03.11.2025 18:16:34
In the Linux kernel, the following vulnerability has been resolved: media: venus: Fix OOB read due to missing payload bound check Currently, The event_seq_changed() handler processes a variable number of properties sent by the firmware. The number ...
- EPSS 0.05%
- Veröffentlicht 04.09.2025 15:32:35
- Zuletzt bearbeitet 03.11.2025 18:16:34
In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix 1-byte out-of-bounds read in uvc_parse_format() The buffer length check before calling uvc_parse_format() only ensured that the buffer has at least 3 bytes (bu...