CVE-2025-38718
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:33:12
- Zuletzt bearbeitet 09.01.2026 16:06:35
In the Linux kernel, the following vulnerability has been resolved: sctp: linearize cloned gso packets in sctp_rcv A cloned head skb still shares these frag skbs in fraglist with the original head skb. It's not safe to access these frag skbs. syzb...
CVE-2025-38715
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:33:09
- Zuletzt bearbeitet 27.01.2026 16:26:02
In the Linux kernel, the following vulnerability has been resolved: hfs: fix slab-out-of-bounds in hfs_bnode_read() This patch introduces is_bnode_offset_valid() method that checks the requested offset value. Also, it introduces check_and_correct_r...
CVE-2025-38714
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:33:09
- Zuletzt bearbeitet 09.01.2026 16:09:49
In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds in hfsplus_bnode_read() The hfsplus_bnode_read() method can trigger the issue: [ 174.852007][ T9784] =============================================...
CVE-2025-38713
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:33:03
- Zuletzt bearbeitet 27.01.2026 16:25:44
In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() The hfsplus_readdir() method is capable to crash by calling hfsplus_uni2asc(): [ 667.121659][ T9805] ===================...
CVE-2025-38712
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:33:02
- Zuletzt bearbeitet 27.01.2026 16:25:33
In the Linux kernel, the following vulnerability has been resolved: hfsplus: don't use BUG_ON() in hfsplus_create_attributes_file() When the volume header contains erroneous values that do not reflect the actual state of the filesystem, hfsplus_fil...
CVE-2025-38711
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:33:01
- Zuletzt bearbeitet 09.01.2026 16:11:13
In the Linux kernel, the following vulnerability has been resolved: smb/server: avoid deadlock when linking with ReplaceIfExists If smb2_create_link() is called with ReplaceIfExists set and the name does exist then a deadlock will happen. ksmbd_vf...
CVE-2025-38708
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:32:59
- Zuletzt bearbeitet 27.01.2026 16:25:22
In the Linux kernel, the following vulnerability has been resolved: drbd: add missing kref_get in handle_write_conflicts With `two-primaries` enabled, DRBD tries to detect "concurrent" writes and handle write conflicts, so that even if you write to...
CVE-2025-38707
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:32:58
- Zuletzt bearbeitet 09.01.2026 16:12:31
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add sanity check for file name The length of the file name should be smaller than the directory entry size.
CVE-2025-38706
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:32:57
- Zuletzt bearbeitet 23.01.2026 20:32:43
In the Linux kernel, the following vulnerability has been resolved: ASoC: core: Check for rtd == NULL in snd_soc_remove_pcm_runtime() snd_soc_remove_pcm_runtime() might be called with rtd == NULL which will leads to null pointer dereference. This w...
CVE-2025-38702
- EPSS 0.01%
- Veröffentlicht 04.09.2025 15:32:53
- Zuletzt bearbeitet 23.01.2026 20:31:27
In the Linux kernel, the following vulnerability has been resolved: fbdev: fix potential buffer overflow in do_register_framebuffer() The current implementation may lead to buffer overflow when: 1. Unregistration creates NULL gaps in registered_fb...