CVE-2025-38671
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:03:02
- Zuletzt bearbeitet 08.01.2026 22:30:42
In the Linux kernel, the following vulnerability has been resolved: i2c: qup: jump out of the loop in case of timeout Original logic only sets the return value but doesn't jump out of the loop if the bus is kept active by a client. This is not expe...
CVE-2025-38670
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:03:01
- Zuletzt bearbeitet 22.01.2026 18:39:45
In the Linux kernel, the following vulnerability has been resolved: arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack() `cpu_switch_to()` and `call_on_irq_stack()` manipulate SP to change to different stacks along with the Shadow Call St...
CVE-2025-38668
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:59
- Zuletzt bearbeitet 08.01.2026 22:30:50
In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix NULL dereference on unbind due to stale coupling data Failing to reset coupling_desc.n_coupled after freeing coupled_rdevs can lead to NULL pointer dereference...
CVE-2025-38666
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:02:58
- Zuletzt bearbeitet 07.01.2026 17:31:53
In the Linux kernel, the following vulnerability has been resolved: net: appletalk: Fix use-after-free in AARP proxy probe The AARP proxy‐probe routine (aarp_proxy_probe_network) sends a probe, releases the aarp_lock, sleeps, then re-acquires the l...
CVE-2025-38665
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:57
- Zuletzt bearbeitet 07.01.2026 17:32:07
In the Linux kernel, the following vulnerability has been resolved: can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode Andrei Lalaev reported a NULL pointer deref when a CAN device is restarted from Bus Off and t...
CVE-2025-38664
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:02:56
- Zuletzt bearbeitet 07.01.2026 17:32:42
In the Linux kernel, the following vulnerability has been resolved: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() Add check for the return value of devm_kmemdup() to prevent potential null pointer dereference.
CVE-2025-38663
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:02:55
- Zuletzt bearbeitet 07.01.2026 17:35:08
In the Linux kernel, the following vulnerability has been resolved: nilfs2: reject invalid file types when reading inodes To prevent inodes with invalid file types from tripping through the vfs and causing malfunctions or assertion failures, add a ...
CVE-2025-38653
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:57
- Zuletzt bearbeitet 07.01.2026 17:36:14
In the Linux kernel, the following vulnerability has been resolved: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al Check pde->proc_ops->proc_lseek directly may cause UAF in rmmod scenario. It's a gap in proc_reg_...
CVE-2025-38652
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:56
- Zuletzt bearbeitet 07.01.2026 17:36:25
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in devs.path - touch /mnt/f2fs/012345678901234567890123456789012345678901234567890123 - truncate -s $((1024*1024*1024)) \ /mnt/f2fs/0123...
CVE-2025-38650
- EPSS 0.01%
- Veröffentlicht 22.08.2025 16:00:54
- Zuletzt bearbeitet 07.01.2026 17:36:34
In the Linux kernel, the following vulnerability has been resolved: hfsplus: remove mutex_lock check in hfsplus_free_extents Syzbot reported an issue in hfsplus filesystem: ------------[ cut here ]------------ WARNING: CPU: 0 PID: 4400 at fs/hfspl...