CVE-2024-58240
- EPSS 0.02%
- Veröffentlicht 28.08.2025 10:15:31
- Zuletzt bearbeitet 09.01.2026 19:17:31
In the Linux kernel, the following vulnerability has been resolved: tls: separate no-async decryption request handling from async If we're not doing async, the handling is much simpler. There's no reference counting, we just need to wait for the co...
CVE-2025-38676
- EPSS 0.02%
- Veröffentlicht 26.08.2025 13:15:32
- Zuletzt bearbeitet 08.01.2026 22:30:31
In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Avoid stack buffer overflow from kernel cmdline While the kernel command line is considered trusted in most environments, avoid writing 1 byte past the end of "acpiid" i...
CVE-2025-38671
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:03:02
- Zuletzt bearbeitet 08.01.2026 22:30:42
In the Linux kernel, the following vulnerability has been resolved: i2c: qup: jump out of the loop in case of timeout Original logic only sets the return value but doesn't jump out of the loop if the bus is kept active by a client. This is not expe...
CVE-2025-38670
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:03:01
- Zuletzt bearbeitet 22.01.2026 18:39:45
In the Linux kernel, the following vulnerability has been resolved: arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack() `cpu_switch_to()` and `call_on_irq_stack()` manipulate SP to change to different stacks along with the Shadow Call St...
CVE-2025-38668
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:02:59
- Zuletzt bearbeitet 08.01.2026 22:30:50
In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix NULL dereference on unbind due to stale coupling data Failing to reset coupling_desc.n_coupled after freeing coupled_rdevs can lead to NULL pointer dereference...
CVE-2025-38666
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:58
- Zuletzt bearbeitet 07.01.2026 17:31:53
In the Linux kernel, the following vulnerability has been resolved: net: appletalk: Fix use-after-free in AARP proxy probe The AARP proxy‐probe routine (aarp_proxy_probe_network) sends a probe, releases the aarp_lock, sleeps, then re-acquires the l...
CVE-2025-38665
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:57
- Zuletzt bearbeitet 07.01.2026 17:32:07
In the Linux kernel, the following vulnerability has been resolved: can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode Andrei Lalaev reported a NULL pointer deref when a CAN device is restarted from Bus Off and t...
CVE-2025-38664
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:56
- Zuletzt bearbeitet 07.01.2026 17:32:42
In the Linux kernel, the following vulnerability has been resolved: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() Add check for the return value of devm_kmemdup() to prevent potential null pointer dereference.
CVE-2025-38663
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:55
- Zuletzt bearbeitet 07.01.2026 17:35:08
In the Linux kernel, the following vulnerability has been resolved: nilfs2: reject invalid file types when reading inodes To prevent inodes with invalid file types from tripping through the vfs and causing malfunctions or assertion failures, add a ...
CVE-2025-38653
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:57
- Zuletzt bearbeitet 07.01.2026 17:36:14
In the Linux kernel, the following vulnerability has been resolved: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al Check pde->proc_ops->proc_lseek directly may cause UAF in rmmod scenario. It's a gap in proc_reg_...