- EPSS 0.05%
- Veröffentlicht 12.11.2025 21:56:27
- Zuletzt bearbeitet 14.11.2025 16:42:30
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix metadata_dst leak __bpf_redirect_neigh_v{4,6} Cilium has a BPF egress gateway feature which forces outgoing K8s Pod traffic to pass through dedicated egress gateways which...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 21:56:26
- Zuletzt bearbeitet 14.11.2025 16:42:30
In the Linux kernel, the following vulnerability has been resolved: crypto: skcipher - Fix reqsize handling Commit afddce13ce81d ("crypto: api - Add reqsize to crypto_alg") introduced cra_reqsize field in crypto_alg struct to replace type specific ...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 21:56:25
- Zuletzt bearbeitet 14.11.2025 16:42:30
In the Linux kernel, the following vulnerability has been resolved: mailbox: zynqmp-ipi: Fix out-of-bounds access in mailbox cleanup loop The cleanup loop was starting at the wrong array index, causing out-of-bounds access. Start the loop at the co...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 21:56:25
- Zuletzt bearbeitet 14.11.2025 16:42:30
In the Linux kernel, the following vulnerability has been resolved: x86/kvm: Force legacy PCI hole to UC when overriding MTRRs for TDX/SNP When running as an SNP or TDX guest under KVM, force the legacy PCI hole, i.e. memory between Top of Lower Us...
- EPSS 0.05%
- Veröffentlicht 12.11.2025 21:56:24
- Zuletzt bearbeitet 14.11.2025 16:42:30
In the Linux kernel, the following vulnerability has been resolved: pid: Add a judgment for ns null in pid_nr_ns __task_pid_nr_ns ns = task_active_pid_ns(current); pid_nr_ns(rcu_dereference(*task_pid_ptr(task, type)), ns); ...
- EPSS 0.04%
- Veröffentlicht 12.11.2025 21:56:24
- Zuletzt bearbeitet 14.11.2025 16:42:30
In the Linux kernel, the following vulnerability has been resolved: ext4: verify orphan file size is not too big In principle orphan file can be arbitrarily large. However orphan replay needs to traverse it all and we also pin all its buffers in me...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:53:50
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: idpf: cleanup remaining SKBs in PTP flows When the driver requests Tx timestamp value, one of the first steps is to clone SKB using skb_get. It increases the reference counter for ...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:53:50
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: tls: wait for pending async decryptions if tls_strp_msg_hold fails Async decryption calls tls_strp_msg_hold to create a clone of the input skb to hold references to the memory it u...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:53:50
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Fix bootlog initialization ordering As soon as we queue MHI buffers to receive the bootlog from the device, we could be receiving data. Therefore all the resources need...
- EPSS 0.03%
- Veröffentlicht 12.11.2025 10:53:49
- Zuletzt bearbeitet 12.11.2025 16:19:12
In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Treat remaining == 0 as error in find_and_map_user_pages() Currently, if find_and_map_user_pages() takes a DMA xfer request from the user with a length field set to 0, ...