CVE-2025-22044
- EPSS 0.11%
- Veröffentlicht 16.04.2025 14:12:05
- Zuletzt bearbeitet 03.11.2025 20:17:39
In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emite...
CVE-2025-22045
- EPSS 0.1%
- Veröffentlicht 16.04.2025 14:12:05
- Zuletzt bearbeitet 03.11.2025 20:17:39
In the Linux kernel, the following vulnerability has been resolved: x86/mm: Fix flush_tlb_range() when used for zapping normal PMDs On the following path, flush_tlb_range() can be used for zapping normal PMD entries (PMD entries that point to page ...
CVE-2025-22043
- EPSS 0.06%
- Veröffentlicht 16.04.2025 14:12:04
- Zuletzt bearbeitet 14.11.2025 16:50:00
In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for durable handle context Add missing bounds check for durable handle context.
CVE-2025-22042
- EPSS 0.09%
- Veröffentlicht 16.04.2025 14:12:03
- Zuletzt bearbeitet 13.02.2026 15:58:50
In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for create lease context Add missing bounds check for create lease context.
CVE-2025-22041
- EPSS 0.05%
- Veröffentlicht 16.04.2025 14:11:58
- Zuletzt bearbeitet 03.11.2025 20:17:39
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_sessions_deregister() In multichannel mode, UAF issue can occur in session_deregister when the second channel sets up a session through the conne...
CVE-2025-22040
- EPSS 0.05%
- Veröffentlicht 16.04.2025 14:11:57
- Zuletzt bearbeitet 03.11.2025 20:17:39
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix session use-after-free in multichannel connection There is a race condition between session setup and ksmbd_sessions_deregister. The session can be freed before the conn...
CVE-2025-22038
- EPSS 0.05%
- Veröffentlicht 16.04.2025 14:11:56
- Zuletzt bearbeitet 03.11.2025 20:17:38
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate zero num_subauth before sub_auth is accessed Access psid->sub_auth[psid->num_subauth - 1] without checking if num_subauth is non-zero leads to an out-of-bounds read...
CVE-2025-22039
- EPSS 0.04%
- Veröffentlicht 16.04.2025 14:11:56
- Zuletzt bearbeitet 14.11.2025 16:51:45
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix overflow in dacloffset bounds check The dacloffset field was originally typed as int and used in an unchecked addition, which could overflow and bypass the existing boun...
CVE-2025-22037
- EPSS 0.14%
- Veröffentlicht 16.04.2025 14:11:55
- Zuletzt bearbeitet 19.09.2025 15:15:48
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in alloc_preauth_hash() The Client send malformed smb2 negotiate request. ksmbd return error response. Subsequently, the client can send smb2 se...
- EPSS 0.05%
- Veröffentlicht 16.04.2025 14:11:54
- Zuletzt bearbeitet 01.10.2025 17:15:43
In the Linux kernel, the following vulnerability has been resolved: exfat: fix random stack corruption after get_block When get_block is called with a buffer_head allocated on the stack, such as do_mpage_readpage, stack corruption due to buffer_hea...