CVE-2025-38632
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:40
- Zuletzt bearbeitet 26.11.2025 17:11:43
In the Linux kernel, the following vulnerability has been resolved: pinmux: fix race causing mux_owner NULL with active mux_usecount commit 5a3e85c3c397 ("pinmux: Use sequential access to access desc->pinmux data") tried to address the issue when t...
CVE-2025-38631
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:39
- Zuletzt bearbeitet 26.11.2025 17:10:50
In the Linux kernel, the following vulnerability has been resolved: clk: imx95-blk-ctl: Fix synchronous abort When enabling runtime PM for clock suppliers that also belong to a power domain, the following crash is thrown: error: synchronous externa...
CVE-2025-38630
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:38
- Zuletzt bearbeitet 07.01.2026 16:34:15
In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Check fb_add_videomode to prevent null-ptr-deref fb_add_videomode() can fail with -ENOMEM when its internal kmalloc() cannot allocate a struct fb_modelist. If that h...
CVE-2025-38629
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:37
- Zuletzt bearbeitet 26.11.2025 17:10:04
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb: scarlett2: Fix missing NULL check scarlett2_input_select_ctl_info() sets up the string arrays allocated via kasprintf(), but it misses NULL checks, which may lead to NUL...
CVE-2025-38628
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:36
- Zuletzt bearbeitet 26.11.2025 17:09:59
In the Linux kernel, the following vulnerability has been resolved: vdpa/mlx5: Fix release of uninitialized resources on error path The commit in the fixes tag made sure that mlx5_vdpa_free() is the single entrypoint for removing the vdpa device re...
CVE-2025-38627
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:35
- Zuletzt bearbeitet 01.12.2025 11:15:47
In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix UAF of f2fs_inode_info in f2fs_free_dic The decompress_io_ctx may be released asynchronously after I/O completion. If this file is deleted immediately after rea...
CVE-2025-38626
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:34
- Zuletzt bearbeitet 26.11.2025 17:09:44
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to trigger foreground gc during f2fs_map_blocks() in lfs mode w/ "mode=lfs" mount option, generic/299 will cause system panic as below: ------------[ cut here ]---------...
CVE-2025-38625
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:33
- Zuletzt bearbeitet 26.11.2025 17:05:12
In the Linux kernel, the following vulnerability has been resolved: vfio/pds: Fix missing detach_ioas op When CONFIG_IOMMUFD is enabled and a device is bound to the pds_vfio_pci driver, the following WARN_ON() trace is seen and probe fails: WARNIN...
CVE-2025-38623
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:38:49
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Fix surprise plug detection and recovery The existing PowerNV hotplug code did not handle surprise plug events correctly, leading to a complete failure of the hotplug...
CVE-2025-38624
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:37:06
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Clean up allocated IRQs on unplug When the root of a nested PCIe bridge configuration is unplugged, the pnv_php driver leaked the allocated IRQ resources for the chil...