CVE-2025-38183
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:10
- Zuletzt bearbeitet 18.12.2025 16:49:42
In the Linux kernel, the following vulnerability has been resolved: net: lan743x: fix potential out-of-bounds write in lan743x_ptp_io_event_clock_get() Before calling lan743x_ptp_io_event_clock_get(), the 'channel' value is checked against the maxi...
CVE-2025-38182
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:09
- Zuletzt bearbeitet 19.11.2025 21:00:39
In the Linux kernel, the following vulnerability has been resolved: ublk: santizize the arguments from userspace when adding a device Sanity check the values for queue depth and number of queues we get from userspace when adding a device.
CVE-2025-38180
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:08
- Zuletzt bearbeitet 18.12.2025 15:36:58
In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imb...
CVE-2025-38181
- EPSS 0.03%
- Veröffentlicht 04.07.2025 13:37:08
- Zuletzt bearbeitet 18.12.2025 16:49:32
In the Linux kernel, the following vulnerability has been resolved: calipso: Fix null-ptr-deref in calipso_req_{set,del}attr(). syzkaller reported a null-ptr-deref in sock_omalloc() while allocating a CALIPSO option. [0] The NULL is of struct soc...
CVE-2025-38179
- EPSS 0.01%
- Veröffentlicht 04.07.2025 13:37:07
- Zuletzt bearbeitet 19.11.2025 21:01:36
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix max_sge overflow in smb_extract_folioq_to_rdma() This fixes the following problem: [ 749.901015] [ T8673] run fstests cifs/001 at 2025-06-17 09:40:30 [ 750.34...
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:06
- Zuletzt bearbeitet 28.07.2025 05:15:44
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-38177
- EPSS 0.03%
- Veröffentlicht 04.07.2025 12:47:09
- Zuletzt bearbeitet 18.12.2025 16:48:54
In the Linux kernel, the following vulnerability has been resolved: sch_hfsc: make hfsc_qlen_notify() idempotent hfsc_qlen_notify() is not idempotent either and not friendly to its callers, like fq_codel_dequeue(). Let's make it idempotent to ease ...
CVE-2025-38176
- EPSS 0.01%
- Veröffentlicht 04.07.2025 10:39:57
- Zuletzt bearbeitet 19.11.2025 21:03:50
In the Linux kernel, the following vulnerability has been resolved: binder: fix use-after-free in binderfs_evict_inode() Running 'stress-ng --binderfs 16 --timeout 300' under KASAN-enabled kernel, I've noticed the following: BUG: KASAN: slab-use-a...
CVE-2025-38175
- EPSS 0.01%
- Veröffentlicht 04.07.2025 10:39:56
- Zuletzt bearbeitet 19.11.2025 21:04:54
In the Linux kernel, the following vulnerability has been resolved: binder: fix yet another UAF in binder_devices Commit e77aff5528a18 ("binderfs: fix use-after-free in binder_devices") addressed a use-after-free where devices could be released wit...
CVE-2025-38174
- EPSS 0.03%
- Veröffentlicht 04.07.2025 10:39:55
- Zuletzt bearbeitet 18.12.2025 16:46:25
In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Do not double dequeue a configuration request Some of our devices crash in tb_cfg_request_dequeue(): general protection fault, probably for non-canonical address 0xd...