CVE-2025-40014
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:40
- Zuletzt bearbeitet 30.10.2025 16:02:32
In the Linux kernel, the following vulnerability has been resolved: objtool, spi: amd: Fix out-of-bounds stack access in amd_set_spi_freq() If speed_hz < AMD_SPI_MIN_HZ, amd_set_spi_freq() iterates over the entire amd_spi_freq array without breakin...
CVE-2025-40114
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:40
- Zuletzt bearbeitet 01.10.2025 15:15:44
In the Linux kernel, the following vulnerability has been resolved: iio: light: Add check for array bounds in veml6075_read_int_time_ms The array contains only 5 elements, but the index calculated by veml6075_read_int_time_index can range from 0 to...
CVE-2025-39989
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:39
- Zuletzt bearbeitet 06.11.2025 21:33:09
In the Linux kernel, the following vulnerability has been resolved: x86/mce: use is_copy_from_user() to determine copy-from-user context Patch series "mm/hwpoison: Fix regressions in memory failure handling", v4. ## 1. What am I trying to do: Thi...
CVE-2025-39930
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:38
- Zuletzt bearbeitet 06.11.2025 21:33:40
In the Linux kernel, the following vulnerability has been resolved: ASoC: simple-card-utils: Don't use __free(device_node) at graph_util_parse_dai() commit 419d1918105e ("ASoC: simple-card-utils: use __free(device_node) for device node") uses __fre...
CVE-2025-39755
- EPSS 0.01%
- Veröffentlicht 18.04.2025 07:01:37
- Zuletzt bearbeitet 01.10.2025 17:15:46
In the Linux kernel, the following vulnerability has been resolved: staging: gpib: Fix cb7210 pcmcia Oops The pcmcia_driver struct was still only using the old .name initialization in the drv field. This led to a NULL pointer deref Oops in strcmp ...
CVE-2025-39778
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:37
- Zuletzt bearbeitet 01.10.2025 17:15:46
In the Linux kernel, the following vulnerability has been resolved: objtool, nvmet: Fix out-of-bounds stack access in nvmet_ctrl_state_show() The csts_state_names[] array only has six sparse entries, but the iteration code in nvmet_ctrl_state_show(...
CVE-2025-39735
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:36
- Zuletzt bearbeitet 03.11.2025 20:18:47
In the Linux kernel, the following vulnerability has been resolved: jfs: fix slab-out-of-bounds read in ea_get() During the "size_check" label in ea_get(), the code checks if the extended attribute list (xattr) size matches ea_size. If not, it logs...
CVE-2025-39688
- EPSS 0.02%
- Veröffentlicht 18.04.2025 07:01:35
- Zuletzt bearbeitet 06.11.2025 21:34:09
In the Linux kernel, the following vulnerability has been resolved: nfsd: allow SC_STATUS_FREEABLE when searching via nfs4_lookup_stateid() The pynfs DELEG8 test fails when run against nfsd. It acquires a delegation and then lets the lease time out...
CVE-2025-39728
- EPSS 0.03%
- Veröffentlicht 18.04.2025 07:01:35
- Zuletzt bearbeitet 03.11.2025 20:18:47
In the Linux kernel, the following vulnerability has been resolved: clk: samsung: Fix UBSAN panic in samsung_clk_init() With UBSAN_ARRAY_BOUNDS=y, I'm hitting the below panic due to dereferencing `ctx->clk_data.hws` before setting `ctx->clk_data.nu...
CVE-2025-38637
- EPSS 0.03%
- Veröffentlicht 18.04.2025 07:01:34
- Zuletzt bearbeitet 06.11.2025 21:35:04
In the Linux kernel, the following vulnerability has been resolved: net_sched: skbprio: Remove overly strict queue assertions In the current implementation, skbprio enqueue/dequeue contains an assertion that fails under certain conditions when SKBP...