- EPSS 0.02%
- Veröffentlicht 12.11.2025 10:24:36
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: xsk: Harden userspace-supplied xdp_desc validation Turned out certain clearly invalid values passed in xdp_desc from userspace can pass xp_{,un}aligned_validate_desc() and then lea...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:24:36
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: xen/events: Return -EEXIST for bound VIRQs Change find_virq() to return -EEXIST when a VIRQ is bound to a different CPU than the one passed in. With that, remove the BUG_ON() from...
- EPSS 0.02%
- Veröffentlicht 12.11.2025 10:24:36
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: mailbox: zynqmp-ipi: Fix SGI cleanup on unbind The driver incorrectly determines SGI vs SPI interrupts by checking IRQ number < 16, which fails with dynamic IRQ allocation. During ...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:23:29
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: EDAC/i10nm: Skip DIMM enumeration on a disabled memory controller When loading the i10nm_edac driver on some Intel Granite Rapids servers, a call trace may appear as follows: UB...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:23:29
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU in ip6_output() Use RCU in ip6_output() in order to use dst_dev_rcu() to prevent possible UAF. We can remove rcu_read_lock()/rcu_read_unlock() pairs from ip6_finish_...
- EPSS 0.06%
- Veröffentlicht 12.11.2025 10:23:28
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: mm: hugetlb: avoid soft lockup when mprotect to large memory area When calling mprotect() to a large hugetlb memory area in our customer's workload (~300GB hugetlb memory), soft lo...
- EPSS 0.06%
- Veröffentlicht 12.11.2025 10:23:28
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping When an invalid value is passed via quirk option, currently bytcr_rt5640 driver only shows an error message but leaves as...
- EPSS 0.02%
- Veröffentlicht 12.11.2025 10:23:28
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: debugfs: Fix legacy mode page table dump logic In legacy mode, SSPTPTR is ignored if TT is not 00b or 01b. SSPTPTR maybe uninitialized or zero in that case and may caus...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:23:28
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: mtk-cci: Fix potential error pointer dereference in probe() The drv->sram_reg pointer could be set to ERR_PTR(-EPROBE_DEFER) which would lead to a error pointer deref...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:23:27
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). get_netdev_for_sock() is called during setsockopt(), so not under RCU. Using sk_dst_get(sk)->dev could trigger ...