CVE-2025-38639
- EPSS 0.18%
- Veröffentlicht 22.08.2025 16:00:45
- Zuletzt bearbeitet 30.07.2026 06:23:32
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_nfacct: don't assume acct name is null-terminated BUG: KASAN: slab-out-of-bounds in .. lib/vsprintf.c:721 Read of size 1 at addr ffff88801eac95c8 by task syz-executor...
CVE-2025-38635
- EPSS 0.17%
- Veröffentlicht 22.08.2025 16:00:43
- Zuletzt bearbeitet 07.01.2026 16:27:05
In the Linux kernel, the following vulnerability has been resolved: clk: davinci: Add NULL check in davinci_lpsc_clk_register() devm_kasprintf() returns NULL when memory allocation fails. Currently, davinci_lpsc_clk_register() does not check for th...
CVE-2025-38634
- EPSS 0.16%
- Veröffentlicht 22.08.2025 16:00:42
- Zuletzt bearbeitet 07.01.2026 16:28:09
In the Linux kernel, the following vulnerability has been resolved: power: supply: cpcap-charger: Fix null check for power_supply_get_by_name In the cpcap_usb_detect() function, the power_supply_get_by_name() function may return `NULL` instead of a...
CVE-2025-38630
- EPSS 0.16%
- Veröffentlicht 22.08.2025 16:00:38
- Zuletzt bearbeitet 07.01.2026 16:34:15
In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Check fb_add_videomode to prevent null-ptr-deref fb_add_videomode() can fail with -ENOMEM when its internal kmalloc() cannot allocate a struct fb_modelist. If that h...
CVE-2025-38624
- EPSS 0.16%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:37:06
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Clean up allocated IRQs on unplug When the root of a nested PCIe bridge configuration is unplugged, the pnv_php driver leaked the allocated IRQ resources for the chil...
CVE-2025-38623
- EPSS 0.16%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:38:49
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Fix surprise plug detection and recovery The existing PowerNV hotplug code did not handle surprise plug events correctly, leading to a complete failure of the hotplug...
CVE-2025-38622
- EPSS 0.17%
- Veröffentlicht 22.08.2025 16:00:31
- Zuletzt bearbeitet 07.01.2026 16:40:00
In the Linux kernel, the following vulnerability has been resolved: net: drop UFO packets in udp_rcv_segment() When sending a packet with virtio_net_hdr to tun device, if the gso_type in virtio_net_hdr is SKB_GSO_UDP and the gso_size is less than u...
CVE-2025-38618
- EPSS 0.16%
- Veröffentlicht 22.08.2025 13:01:24
- Zuletzt bearbeitet 30.07.2026 06:23:31
In the Linux kernel, the following vulnerability has been resolved: vsock: Do not allow binding to VMADDR_PORT_ANY It is possible for a vsock to autobind to VMADDR_PORT_ANY. This can cause a use-after-free when a connection is made to the bound soc...
CVE-2025-38617
- EPSS 0.33%
- Veröffentlicht 22.08.2025 13:01:23
- Zuletzt bearbeitet 30.07.2026 06:23:31
In the Linux kernel, the following vulnerability has been resolved: net/packet: fix a race in packet_set_ring() and packet_notifier() When packet_set_ring() releases po->bind_lock, another thread can run packet_notifier() and process an NETDEV_UP e...
CVE-2025-38614
- EPSS 0.17%
- Veröffentlicht 19.08.2025 17:15:40
- Zuletzt bearbeitet 30.07.2026 06:23:30
In the Linux kernel, the following vulnerability has been resolved: eventpoll: Fix semi-unbounded recursion Ensure that epoll instances can never form a graph deeper than EP_MAX_NESTS+1 links. Currently, ep_loop_check_proc() ensures that the graph...