CVE-2025-39691
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:57
- Zuletzt bearbeitet 08.01.2026 16:10:25
In the Linux kernel, the following vulnerability has been resolved: fs/buffer: fix use-after-free when call bh_read() helper There's issue as follows: BUG: KASAN: stack-out-of-bounds in end_buffer_read_sync+0xe3/0x110 Read of size 8 at addr ffffc90...
CVE-2025-39689
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:55
- Zuletzt bearbeitet 08.01.2026 14:52:36
In the Linux kernel, the following vulnerability has been resolved: ftrace: Also allocate and copy hash for reading of filter files Currently the reader of set_ftrace_filter and set_ftrace_notrace just adds the pointer to the global tracer hash to ...
CVE-2025-39687
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:54
- Zuletzt bearbeitet 17.03.2026 16:25:43
In the Linux kernel, the following vulnerability has been resolved: iio: light: as73211: Ensure buffer holes are zeroed Given that the buffer is copied to a kfifo that ultimately user space can read, ensure we zero it.
CVE-2025-39686
- EPSS 0.02%
- Veröffentlicht 05.09.2025 17:20:53
- Zuletzt bearbeitet 08.01.2026 15:08:56
In the Linux kernel, the following vulnerability has been resolved: comedi: Make insn_rw_emulate_bits() do insn->n samples The `insn_rw_emulate_bits()` function is used as a default handler for `INSN_READ` instructions for subdevices that have a ha...
CVE-2025-39685
- EPSS 0.02%
- Veröffentlicht 05.09.2025 17:20:51
- Zuletzt bearbeitet 08.01.2026 15:11:32
In the Linux kernel, the following vulnerability has been resolved: comedi: pcl726: Prevent invalid irq number The reproducer passed in an irq number(0x80008000) that was too large, which triggered the oob. Added an interrupt number check to preve...
CVE-2025-39684
- EPSS 0.02%
- Veröffentlicht 05.09.2025 17:20:50
- Zuletzt bearbeitet 08.01.2026 15:17:40
In the Linux kernel, the following vulnerability has been resolved: comedi: Fix use of uninitialized memory in do_insn_ioctl() and do_insnlist_ioctl() syzbot reports a KMSAN kernel-infoleak in `do_insn_ioctl()`. A kernel buffer is allocated to hol...
CVE-2025-39683
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:49
- Zuletzt bearbeitet 08.01.2026 15:32:49
In the Linux kernel, the following vulnerability has been resolved: tracing: Limit access to parser->buffer when trace_get_user failed When the length of the string written to set_ftrace_filter exceeds FTRACE_BUFF_MAX, the following KASAN alarm wil...
CVE-2025-39682
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:48
- Zuletzt bearbeitet 17.03.2026 16:22:25
In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg() call must process either - only contiguous DATA records (any number of them) - one non-DATA record If the ...
CVE-2025-39681
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:47
- Zuletzt bearbeitet 08.01.2026 15:33:38
In the Linux kernel, the following vulnerability has been resolved: x86/cpu/hygon: Add missing resctrl_cpu_detect() in bsp_init helper Since 923f3a2b48bd ("x86/resctrl: Query LLC monitoring properties once during boot") resctrl_cpu_detect() has...
CVE-2025-39676
- EPSS 0.01%
- Veröffentlicht 05.09.2025 17:20:42
- Zuletzt bearbeitet 07.01.2026 21:50:27
In the Linux kernel, the following vulnerability has been resolved: scsi: qla4xxx: Prevent a potential error pointer dereference The qla4xxx_get_ep_fwdb() function is supposed to return NULL on error, but qla4xxx_ep_connect() returns error pointers...