CVE-2025-38500
- EPSS 0.02%
- Veröffentlicht 12.08.2025 16:15:27
- Zuletzt bearbeitet 07.01.2026 16:26:54
In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing collect_md xfrm interface collect_md property on xfrm interfaces can only be set on device creation, thus xfrmi_changelink() shou...
CVE-2025-38499
- EPSS 0.02%
- Veröffentlicht 11.08.2025 16:15:30
- Zuletzt bearbeitet 07.01.2026 16:26:47
In the Linux kernel, the following vulnerability has been resolved: clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns What we want is to verify there is that clone won't expose something hidden by a mount we wouldn't ...
CVE-2025-38498
- EPSS 0.03%
- Veröffentlicht 30.07.2025 06:15:27
- Zuletzt bearbeitet 07.01.2026 16:26:42
In the Linux kernel, the following vulnerability has been resolved: do_change_type(): refuse to operate on unmounted/not ours mounts Ensure that propagation settings can only be changed for mounts located in the caller's mount namespace. This chang...
CVE-2025-38497
- EPSS 0.01%
- Veröffentlicht 28.07.2025 11:22:05
- Zuletzt bearbeitet 07.01.2026 16:26:35
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: Fix OOB read on empty string write When writing an empty string to either 'qw_sign' or 'landingPage' sysfs attributes, the store functions attempt to access ...
CVE-2025-38495
- EPSS 0.01%
- Veröffentlicht 28.07.2025 11:22:04
- Zuletzt bearbeitet 07.01.2026 16:26:28
In the Linux kernel, the following vulnerability has been resolved: HID: core: ensure the allocated report buffer can contain the reserved report ID When the report ID is not used, the low level transport drivers expect the first byte to be 0. Howe...
CVE-2025-38494
- EPSS 0.01%
- Veröffentlicht 28.07.2025 11:22:03
- Zuletzt bearbeitet 26.01.2026 20:47:01
In the Linux kernel, the following vulnerability has been resolved: HID: core: do not bypass hid_hw_raw_request hid_hw_raw_request() is actually useful to ensure the provided buffer and length are valid. Directly calling in the low level transport ...
CVE-2025-38491
- EPSS 0.02%
- Veröffentlicht 28.07.2025 11:21:59
- Zuletzt bearbeitet 07.01.2026 16:26:19
In the Linux kernel, the following vulnerability has been resolved: mptcp: make fallback action and fallback decision atomic Syzkaller reported the following splat: WARNING: CPU: 1 PID: 7704 at net/mptcp/protocol.h:1223 __mptcp_do_fallback net/m...
CVE-2025-38488
- EPSS 0.01%
- Veröffentlicht 28.07.2025 11:21:52
- Zuletzt bearbeitet 07.01.2026 16:26:11
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-after-free in crypt_message when using async crypto The CVE-2024-50047 fix removed asynchronous crypto handling from crypt_message(), assuming all crypto opera...
CVE-2025-38487
- EPSS 0.02%
- Veröffentlicht 28.07.2025 11:21:51
- Zuletzt bearbeitet 07.01.2026 16:26:03
In the Linux kernel, the following vulnerability has been resolved: soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled Mitigate e.g. the following: # echo 1e789080.lpc-snoop > /sys/bus/platform/drivers/aspeed-lpc-snoop/unbind ...
CVE-2025-38485
- EPSS 0.02%
- Veröffentlicht 28.07.2025 11:21:49
- Zuletzt bearbeitet 07.01.2026 16:25:52
In the Linux kernel, the following vulnerability has been resolved: iio: accel: fxls8962af: Fix use after free in fxls8962af_fifo_flush fxls8962af_fifo_flush() uses indio_dev->active_scan_mask (with iio_for_each_active_channel()) without making sur...