CVE-2025-38337
- EPSS 0.03%
- Veröffentlicht 10.07.2025 08:15:08
- Zuletzt bearbeitet 16.12.2025 17:49:12
In the Linux kernel, the following vulnerability has been resolved: jbd2: fix data-race and null-ptr-deref in jbd2_journal_dirty_metadata() Since handle->h_transaction may be a NULL pointer, so we should change it to call is_handle_aborted(handle) ...
CVE-2025-38335
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:07
- Zuletzt bearbeitet 16.12.2025 17:51:51
In the Linux kernel, the following vulnerability has been resolved: Input: gpio-keys - fix a sleep while atomic with PREEMPT_RT When enabling PREEMPT_RT, the gpio_keys_irq_timer() callback runs in hard irq context, but the input_event() takes a spi...
CVE-2025-38336
- EPSS 0.03%
- Veröffentlicht 10.07.2025 08:15:07
- Zuletzt bearbeitet 16.12.2025 17:50:25
In the Linux kernel, the following vulnerability has been resolved: ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330 The controller has a hardware bug that can hard hang the system when doing ATAPI DMAs without any trace of what happened...
CVE-2025-38334
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:06
- Zuletzt bearbeitet 16.12.2025 17:55:43
In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Prevent attempts to reclaim poisoned pages TL;DR: SGX page reclaim touches the page to copy its contents to secondary storage. SGX instructions do not gracefully handle ma...
CVE-2025-38332
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:05
- Zuletzt bearbeitet 19.12.2025 16:56:27
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Use memcpy() for BIOS version The strlcat() with FORTIFY support is triggering a panic because it thinks the target buffer will overflow although the correct target buf...
CVE-2025-38333
- EPSS 0.01%
- Veröffentlicht 10.07.2025 08:15:05
- Zuletzt bearbeitet 18.11.2025 12:53:08
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to bail out in get_new_segment() ------------[ cut here ]------------ WARNING: CPU: 3 PID: 579 at fs/f2fs/segment.c:2832 new_curseg+0x5e8/0x6dc pc : new_curseg+0x5e8/0x6d...
CVE-2025-38331
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:04
- Zuletzt bearbeitet 19.12.2025 16:56:03
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Use TOE/TSO on all TCP It is desireable to push the hardware accelerator to also process non-segmented TCP frames: we pass the skb->len to the "TOE/TSO" off...
CVE-2025-38330
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:03
- Zuletzt bearbeitet 18.11.2025 12:53:20
In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUnit test (ctl cache) KASAN reported out of bounds access - cs_dsp_ctl_cache_init_multiple_offsets(). The code uses mock_coeff_temp...
CVE-2025-38328
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:02
- Zuletzt bearbeitet 16.12.2025 17:56:47
In the Linux kernel, the following vulnerability has been resolved: jffs2: check jffs2_prealloc_raw_node_refs() result in few other places Fuzzing hit another invalid pointer dereference due to the lack of checking whether jffs2_prealloc_raw_node_r...
CVE-2025-38329
- EPSS 0.02%
- Veröffentlicht 10.07.2025 08:15:02
- Zuletzt bearbeitet 18.11.2025 12:53:30
In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUnit test (wmfw info) KASAN reported out of bounds access - cs_dsp_mock_wmfw_add_info(), because the source string length was round...