Linux

Linux Kernel

13879 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 04.12.2025 16:16:20
  • Zuletzt bearbeitet 06.12.2025 22:15:54

In the Linux kernel, the following vulnerability has been resolved: be2net: pass wrb_params in case of OS2BMC be_insert_vlan_in_pkt() is called with the wrb_params argument being NULL at be_send_pkt_to_bmc() call site.  This may lead to dereferenci...

  • EPSS 0.03%
  • Veröffentlicht 04.12.2025 16:16:20
  • Zuletzt bearbeitet 04.12.2025 17:15:08

In the Linux kernel, the following vulnerability has been resolved: vfat: fix missing sb_min_blocksize() return value checks When emulating an nvme device on qemu with both logical_block_size and physical_block_size set to 8 KiB, but without format...

  • EPSS 0.03%
  • Veröffentlicht 04.12.2025 16:16:20
  • Zuletzt bearbeitet 04.12.2025 17:15:08

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Check the untrusted offset in FF-A memory share Verify the offset to prevent OOB access in the hypervisor FF-A buffer in case an untrusted large enough value [U32_MAX -...

  • EPSS 0.06%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 06.12.2025 22:15:53

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: remove never-working support for setting nsh fields The validation of the set(nsh(...)) action is completely wrong. It runs through the nsh_key_put_from_nlattr() ...

  • EPSS 0.03%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 04.12.2025 17:15:08

In the Linux kernel, the following vulnerability has been resolved: net: core: prevent NULL deref in generic_hwtstamp_ioctl_lower() The ethtool tsconfig Netlink path can trigger a null pointer dereference. A call chain such as: tsconfig_prepare_...

  • EPSS 0.04%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 19.01.2026 13:16:08

In the Linux kernel, the following vulnerability has been resolved: xfrm: also call xfrm_state_delete_tunnel at destroy time for states that were never added In commit b441cf3f8c4b ("xfrm: delete x->tunnel as we delete x"), I missed the case where ...

  • EPSS 0.05%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 06.12.2025 22:15:53

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix a race in mptcp_pm_del_add_timer() mptcp_pm_del_add_timer() can call sk_stop_timer_sync(sk, &entry->add_timer) while another might have free entry already, as reported b...

  • EPSS 0.05%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 06.12.2025 22:15:53

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race condition in mptcp_schedule_work() syzbot reported use-after-free in mptcp_schedule_work() [1] Issue here is that mptcp_schedule_work() schedules a work, then gets...

  • EPSS 0.05%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 06.12.2025 22:15:53

In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Do not sleep in atomic context sg_finish_rem_req() calls blk_rq_unmap_user(). The latter function may sleep. Hence, call sg_finish_rem_req() with interrupts enabled inste...

  • EPSS 0.03%
  • Veröffentlicht 04.12.2025 16:16:19
  • Zuletzt bearbeitet 04.12.2025 17:15:08

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix scx_enable() crash on helper kthread creation failure A crash was observed when the sched_ext selftests runner was terminated with Ctrl+\ while test 15 was running: ...