CVE-2025-23160
- EPSS 0.03%
- Veröffentlicht 01.05.2025 12:55:45
- Zuletzt bearbeitet 06.11.2025 21:32:32
In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Fix a resource leak related to the scp device in FW initialization On Mediatek devices with a system companion processor (SCP) the mtk_scp structure has to...
CVE-2025-23159
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:44
- Zuletzt bearbeitet 05.11.2025 17:53:57
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi: add a check to handle OOB in sfr region sfr->buf_size is in shared memory and can be modified by malicious user. OOB write is possible when the size is made high...
CVE-2025-23157
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:43
- Zuletzt bearbeitet 05.11.2025 17:56:19
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: add check to avoid out of bound access There is a possibility that init_codecs is invoked multiple times during manipulated payload from video firmware. I...
CVE-2025-23158
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:43
- Zuletzt bearbeitet 05.11.2025 17:55:11
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi: add check to handle incorrect queue size qsize represents size of shared queued between driver and video firmware. Firmware can modify this value to an invalid l...
CVE-2025-23156
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:42
- Zuletzt bearbeitet 05.11.2025 17:57:13
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: refactor hfi packet parsing logic words_count denotes the number of words in total payload, while data points to payload of various property within it. Wh...
CVE-2025-23155
- EPSS 0.03%
- Veröffentlicht 01.05.2025 12:55:41
- Zuletzt bearbeitet 24.11.2025 10:16:00
In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Fix accessing freed irq affinity_hint In stmmac_request_irq_multi_msi(), a pointer to the stack variable cpu_mask is passed to irq_set_affinity_hint(). This value is s...
CVE-2025-23153
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:40
- Zuletzt bearbeitet 05.11.2025 15:25:35
In the Linux kernel, the following vulnerability has been resolved: arm/crc-t10dif: fix use of out-of-scope array in crc_t10dif_arch() Fix a silly bug where an array was used outside of its scope.
CVE-2025-23154
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:40
- Zuletzt bearbeitet 05.11.2025 15:26:29
In the Linux kernel, the following vulnerability has been resolved: io_uring/net: fix io_req_post_cqe abuse by send bundle [ 114.987980][ T5313] WARNING: CPU: 6 PID: 5313 at io_uring/io_uring.c:872 io_req_post_cqe+0x12e/0x4f0 [ 114.991597][ T5313...
CVE-2025-23152
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:39
- Zuletzt bearbeitet 06.11.2025 16:26:53
In the Linux kernel, the following vulnerability has been resolved: arm64/crc-t10dif: fix use of out-of-scope array in crc_t10dif_arch() Fix a silly bug where an array was used outside of its scope.
CVE-2025-23150
- EPSS 0.02%
- Veröffentlicht 01.05.2025 12:55:38
- Zuletzt bearbeitet 05.11.2025 18:03:36
In the Linux kernel, the following vulnerability has been resolved: ext4: fix off-by-one error in do_split Syzkaller detected a use-after-free issue in ext4_insert_dentry that was caused by out-of-bounds access due to incorrect splitting in do_spli...