CVE-2025-38236
- EPSS 0.02%
- Veröffentlicht 08.07.2025 07:35:23
- Zuletzt bearbeitet 18.12.2025 19:23:29
In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs. Jann Horn reported a use-after-free in unix_stream_read_generic(). The following sequences reproduce the issue: $ python3 ...
CVE-2025-38235
- EPSS 0.02%
- Veröffentlicht 06.07.2025 09:11:14
- Zuletzt bearbeitet 18.11.2025 16:03:43
In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix "appletb_backlight" backlight device reference counting During appletb_kbd_probe, probe attempts to get the backlight device by name. When this happens backli...
CVE-2025-38233
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:46
- Zuletzt bearbeitet 18.11.2025 16:16:49
In the Linux kernel, the following vulnerability has been resolved: powerpc64/ftrace: fix clobbered r15 during livepatching While r15 is clobbered always with PPC_FTRACE_OUT_OF_LINE, it is not restored in livepatch sequence leading to not so obviou...
CVE-2025-38234
- EPSS 0.01%
- Veröffentlicht 04.07.2025 13:37:46
- Zuletzt bearbeitet 18.11.2025 16:08:00
In the Linux kernel, the following vulnerability has been resolved: sched/rt: Fix race in push_rt_task Overview ======== When a CPU chooses to call push_rt_task and picks a task to push to another CPU's runqueue then it will call find_lock_lowest_r...
CVE-2025-38232
- EPSS 0.01%
- Veröffentlicht 04.07.2025 13:37:45
- Zuletzt bearbeitet 18.11.2025 16:22:40
In the Linux kernel, the following vulnerability has been resolved: NFSD: fix race between nfsd registration and exports_proc As of now nfsd calls create_proc_exports_entry() at start of init_nfsd and cleanup by remove_proc_entry() at last of exit_...
CVE-2025-38230
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:44
- Zuletzt bearbeitet 18.12.2025 19:31:41
In the Linux kernel, the following vulnerability has been resolved: jfs: validate AG parameters in dbMount() to prevent crashes Validate db_agheight, db_agwidth, and db_agstart in dbMount to catch corrupted metadata early and avoid undefined behavi...
CVE-2025-38231
- EPSS 0.03%
- Veröffentlicht 04.07.2025 13:37:44
- Zuletzt bearbeitet 18.12.2025 19:27:26
In the Linux kernel, the following vulnerability has been resolved: nfsd: Initialize ssc before laundromat_work to prevent NULL dereference In nfs4_state_start_net(), laundromat_work may access nfsd_ssc through nfs4_laundromat -> nfsd4_ssc_expire_u...
CVE-2025-38229
- EPSS 0.03%
- Veröffentlicht 04.07.2025 13:37:43
- Zuletzt bearbeitet 18.12.2025 19:32:41
In the Linux kernel, the following vulnerability has been resolved: media: cxusb: no longer judge rbuf when the write fails syzbot reported a uninit-value in cxusb_i2c_xfer. [1] Only when the write operation of usb_bulk_msg() in dvb_usb_generic_rw...
CVE-2025-38228
- EPSS 0.01%
- Veröffentlicht 04.07.2025 13:37:42
- Zuletzt bearbeitet 18.11.2025 16:37:46
In the Linux kernel, the following vulnerability has been resolved: media: imagination: fix a potential memory leak in e5010_probe() Add video_device_release() to release the memory allocated by video_device_alloc() if something goes wrong.
CVE-2025-38227
- EPSS 0.02%
- Veröffentlicht 04.07.2025 13:37:41
- Zuletzt bearbeitet 18.12.2025 19:38:30
In the Linux kernel, the following vulnerability has been resolved: media: vidtv: Terminating the subsequent process of initialization failure syzbot reported a slab-use-after-free Read in vidtv_mux_init. [1] After PSI initialization fails, the si...