CVE-2025-38666
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:58
- Zuletzt bearbeitet 07.01.2026 17:31:53
In the Linux kernel, the following vulnerability has been resolved: net: appletalk: Fix use-after-free in AARP proxy probe The AARP proxy‐probe routine (aarp_proxy_probe_network) sends a probe, releases the aarp_lock, sleeps, then re-acquires the l...
CVE-2025-38665
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:57
- Zuletzt bearbeitet 07.01.2026 17:32:07
In the Linux kernel, the following vulnerability has been resolved: can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode Andrei Lalaev reported a NULL pointer deref when a CAN device is restarted from Bus Off and t...
CVE-2025-38664
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:56
- Zuletzt bearbeitet 07.01.2026 17:32:42
In the Linux kernel, the following vulnerability has been resolved: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() Add check for the return value of devm_kmemdup() to prevent potential null pointer dereference.
CVE-2025-38663
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:02:55
- Zuletzt bearbeitet 07.01.2026 17:35:08
In the Linux kernel, the following vulnerability has been resolved: nilfs2: reject invalid file types when reading inodes To prevent inodes with invalid file types from tripping through the vfs and causing malfunctions or assertion failures, add a ...
CVE-2025-38653
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:57
- Zuletzt bearbeitet 07.01.2026 17:36:14
In the Linux kernel, the following vulnerability has been resolved: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al Check pde->proc_ops->proc_lseek directly may cause UAF in rmmod scenario. It's a gap in proc_reg_...
CVE-2025-38652
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:56
- Zuletzt bearbeitet 07.01.2026 17:36:25
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in devs.path - touch /mnt/f2fs/012345678901234567890123456789012345678901234567890123 - truncate -s $((1024*1024*1024)) \ /mnt/f2fs/0123...
CVE-2025-38650
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:54
- Zuletzt bearbeitet 07.01.2026 17:36:34
In the Linux kernel, the following vulnerability has been resolved: hfsplus: remove mutex_lock check in hfsplus_free_extents Syzbot reported an issue in hfsplus filesystem: ------------[ cut here ]------------ WARNING: CPU: 0 PID: 4400 at fs/hfspl...
CVE-2025-38645
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:50
- Zuletzt bearbeitet 07.01.2026 17:36:41
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Check device memory pointer before usage Add a NULL check before accessing device memory to prevent a crash if dev->dm allocation in mlx5_init_once() fails.
CVE-2025-38644
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:49
- Zuletzt bearbeitet 07.01.2026 16:21:33
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: reject TDLS operations when station is not associated syzbot triggered a WARN in ieee80211_tdls_oper() by sending NL80211_TDLS_ENABLE_LINK immediately after NL80211...
CVE-2025-38639
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:45
- Zuletzt bearbeitet 07.01.2026 16:25:53
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_nfacct: don't assume acct name is null-terminated BUG: KASAN: slab-out-of-bounds in .. lib/vsprintf.c:721 Read of size 1 at addr ffff88801eac95c8 by task syz-executor...