CVE-2025-38117
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:25
- Zuletzt bearbeitet 20.11.2025 21:33:29
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Protect mgmt_pending list with its own lock This uses a mutex to protect from concurrent access of mgmt_pending list which can cause crashes like: ===============...
CVE-2025-38118
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:25
- Zuletzt bearbeitet 17.12.2025 18:29:15
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete This reworks MGMT_OP_REMOVE_ADV_MONITOR to not use mgmt_pending_add to avoid crashes like bellow: ====================...
CVE-2025-38116
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:24
- Zuletzt bearbeitet 20.11.2025 21:33:35
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix uaf in ath12k_core_init() When the execution of ath12k_core_hw_group_assign() or ath12k_core_hw_group_create() fails, the registered notifier chain is not unregis...
CVE-2025-38114
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:23
- Zuletzt bearbeitet 20.11.2025 21:33:43
In the Linux kernel, the following vulnerability has been resolved: e1000: Move cancel_work_sync to avoid deadlock Previously, e1000_down called cancel_work_sync for the e1000 reset task (via e1000_down_and_stop), which takes RTNL. As reported by ...
CVE-2025-38115
- EPSS 0.03%
- Veröffentlicht 03.07.2025 08:35:23
- Zuletzt bearbeitet 17.12.2025 18:13:53
In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: fix a potential crash on gso_skb handling SFQ has an assumption of always being able to queue at least one packet. However, after the blamed commit, sch->q.len...
CVE-2025-38113
- EPSS 0.03%
- Veröffentlicht 03.07.2025 08:35:22
- Zuletzt bearbeitet 17.12.2025 18:28:18
In the Linux kernel, the following vulnerability has been resolved: ACPI: CPPC: Fix NULL pointer dereference when nosmp is used With nosmp in cmdline, other CPUs are not brought up, leaving their cpc_desc_ptr NULL. CPU0's iteration via for_each_pos...
CVE-2025-38112
- EPSS 0.03%
- Veröffentlicht 03.07.2025 08:35:21
- Zuletzt bearbeitet 17.12.2025 18:13:47
In the Linux kernel, the following vulnerability has been resolved: net: Fix TOCTOU issue in sk_is_readable() sk->sk_prot->sock_is_readable is a valid function pointer when sk resides in a sockmap. After the last sk_psock_put() (which usually happe...
CVE-2025-38111
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:20
- Zuletzt bearbeitet 16.12.2025 16:54:27
In the Linux kernel, the following vulnerability has been resolved: net/mdiobus: Fix potential out-of-bounds read/write access When using publicly available tools like 'mdio-tools' to read/write data from/to network interface and its PHY via mdiobu...
CVE-2025-38109
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:19
- Zuletzt bearbeitet 20.11.2025 21:36:33
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix ECVF vports unload on shutdown flow Fix shutdown flow UAF when a virtual function is created on the embedded chip (ECVF) of a BlueField device. In such case the vport...
CVE-2025-38110
- EPSS 0.02%
- Veröffentlicht 03.07.2025 08:35:19
- Zuletzt bearbeitet 20.11.2025 21:36:19
In the Linux kernel, the following vulnerability has been resolved: net/mdiobus: Fix potential out-of-bounds clause 45 read/write access When using publicly available tools like 'mdio-tools' to read/write data from/to network interface and its PHY ...