- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:40
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: usb: cdns3: gadget: Use-after-free during failed initialization and exit of cdnsp gadget In the __cdnsp_gadget_init() and cdnsp_gadget_exit() functions, the gadget structure (pdev-...
- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:39
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: ntfs3: pretend $Extend records as regular files Since commit af153bb63a33 ("vfs: catch invalid modes in may_open()") requires any inode be one of S_IFDIR/S_IFLNK/S_IFREG/S_IFCHR/S_...
- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:38
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: jfs: Verify inode mode when loading from disk The inode mode loaded from corrupted disk can be invalid. Do like what commit 0a9e74051313 ("isofs: Verify inode mode when loading fro...
- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:36
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: accel/habanalabs: support mapping cb with vmalloc-backed coherent memory When IOMMU is enabled, dma_alloc_coherent() with GFP_USER may return addresses from the vmalloc range. If s...
- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:35
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: amd/amdkfd: resolve a race in amdgpu_amdkfd_device_fini_sw There is race in amdgpu_amdkfd_device_fini_sw and interrupt. if amdgpu_amdkfd_device_fini_sw run in b/w kfd_cleanup_nodes...
- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:34
- Zuletzt bearbeitet 02.01.2026 16:16:57
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_conn_free BUG: KASAN: slab-use-after-free in sco_conn_free net/bluetooth/sco.c:87 [inline] BUG: KASAN: slab-use-after-free in kref_put include/linux/...
- EPSS 0.05%
- Veröffentlicht 08.12.2025 00:46:33
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bcsp: receive data only if registered Currently, bcsp_recv() can be called even when the BCSP protocol has not been registered. This leads to a NULL pointer dereference,...
- EPSS 0.02%
- Veröffentlicht 08.12.2025 00:46:32
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: exfat: validate cluster allocation bits of the allocation bitmap syzbot created an exfat image with cluster bits not set for the allocation bitmap. exfat-fs reads and uses the allo...
- EPSS 0.06%
- Veröffentlicht 08.12.2025 00:46:31
- Zuletzt bearbeitet 08.12.2025 18:26:19
In the Linux kernel, the following vulnerability has been resolved: orangefs: fix xattr related buffer overflow... Willy Tarreau <w@1wt.eu> forwarded me a message from Disclosure <disclosure@aisle.com> with the following warning: > The helper `xat...
- EPSS 0.03%
- Veröffentlicht 08.12.2025 00:46:30
- Zuletzt bearbeitet 02.01.2026 16:16:57
In the Linux kernel, the following vulnerability has been resolved: 9p/trans_fd: p9_fd_request: kick rx thread if EPOLLIN p9_read_work() doesn't set Rworksched and doesn't do schedule_work(m->rq) if list_empty(&m->req_list). However, if the pipe i...