CVE-2025-38474
- EPSS 0.06%
- Veröffentlicht 28.07.2025 11:21:35
- Zuletzt bearbeitet 22.12.2025 19:29:20
In the Linux kernel, the following vulnerability has been resolved: usb: net: sierra: check for no status endpoint The driver checks for having three endpoints and having bulk in and out endpoints, but not that the third endpoint is interrupt input...
CVE-2025-38473
- EPSS 0.06%
- Veröffentlicht 28.07.2025 11:21:34
- Zuletzt bearbeitet 22.12.2025 19:29:46
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_cb() syzbot reported null-ptr-deref in l2cap_sock_resume_cb(). [0] l2cap_sock_resume_cb() has a similar problem that was fixed b...
CVE-2025-38472
- EPSS 0.05%
- Veröffentlicht 28.07.2025 11:21:33
- Zuletzt bearbeitet 22.12.2025 19:34:52
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: fix crash due to removal of uninitialised entry A crash in conntrack was reported while trying to unlink the conntrack entry from the hash bucket list: ...
CVE-2025-38470
- EPSS 0.06%
- Veröffentlicht 28.07.2025 11:21:32
- Zuletzt bearbeitet 22.12.2025 19:34:23
In the Linux kernel, the following vulnerability has been resolved: net: vlan: fix VLAN 0 refcount imbalance of toggling filtering during runtime Assuming the "rx-vlan-filter" feature is enabled on a net device, the 8021q module will automatically ...
CVE-2025-38471
- EPSS 0.05%
- Veröffentlicht 28.07.2025 11:21:32
- Zuletzt bearbeitet 22.12.2025 19:34:36
In the Linux kernel, the following vulnerability has been resolved: tls: always refresh the queue when reading sock After recent changes in net-next TCP compacts skbs much more aggressively. This unearthed a bug in TLS where we may try to operate o...
CVE-2025-38469
- EPSS 0.02%
- Veröffentlicht 28.07.2025 11:21:30
- Zuletzt bearbeitet 19.11.2025 17:58:18
In the Linux kernel, the following vulnerability has been resolved: KVM: x86/xen: Fix cleanup logic in emulation of Xen schedop poll hypercalls kvm_xen_schedop_poll does a kmalloc_array() when a VM polls the host for more than one event channel pot...
CVE-2025-38468
- EPSS 0.06%
- Veröffentlicht 28.07.2025 11:12:20
- Zuletzt bearbeitet 22.12.2025 19:36:42
In the Linux kernel, the following vulnerability has been resolved: net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree htb_lookup_leaf has a BUG_ON that can trigger with the following: tc qdisc del dev lo root tc qdisc add dev ...
CVE-2025-38467
- EPSS 0.04%
- Veröffentlicht 25.07.2025 16:15:33
- Zuletzt bearbeitet 22.12.2025 19:36:36
In the Linux kernel, the following vulnerability has been resolved: drm/exynos: exynos7_drm_decon: add vblank check in IRQ handling If there's support for another console device (such as a TTY serial), the kernel occasionally panics during boot. Th...
CVE-2025-38462
- EPSS 0.04%
- Veröffentlicht 25.07.2025 16:15:32
- Zuletzt bearbeitet 22.12.2025 21:52:34
In the Linux kernel, the following vulnerability has been resolved: vsock: Fix transport_{g2h,h2g} TOCTOU vsock_find_cid() and vsock_dev_do_ioctl() may race with module unload. transport_{g2h,h2g} may become NULL after the NULL check. Introduce vs...
CVE-2025-38463
- EPSS 0.01%
- Veröffentlicht 25.07.2025 16:15:32
- Zuletzt bearbeitet 19.11.2025 17:57:59
In the Linux kernel, the following vulnerability has been resolved: tcp: Correct signedness in skb remaining space calculation Syzkaller reported a bug [1] where sk->sk_forward_alloc can overflow. When we send data, if an skb exists at the tail of...