CVE-2025-38084
- EPSS 0.03%
- Veröffentlicht 28.06.2025 07:44:25
- Zuletzt bearbeitet 18.12.2025 21:20:39
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: unshare page tables during VMA split, not before Currently, __split_vma() triggers hugetlb page table unsharing through vm_ops->may_split(). This happens before the VM...
CVE-2014-7210
- EPSS 0.11%
- Veröffentlicht 26.06.2025 20:52:47
- Zuletzt bearbeitet 06.08.2025 16:38:04
pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user. It was discovered that the maintainer scripts of pdns-backend-mysql grant too wide database permissions for the pdns user. Other backends are not affec...
CVE-2025-38083
- EPSS 0.03%
- Veröffentlicht 20.06.2025 11:21:51
- Zuletzt bearbeitet 17.12.2025 17:01:23
In the Linux kernel, the following vulnerability has been resolved: net_sched: prio: fix a race in prio_tune() Gerrard Tai reported a race condition in PRIO, whenever SFQ perturb timer fires at the wrong time. The race is as follows: CPU 0 ...
CVE-2025-38079
- EPSS 0.03%
- Veröffentlicht 18.06.2025 09:33:53
- Zuletzt bearbeitet 17.12.2025 17:03:52
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it...
CVE-2025-38078
- EPSS 0.02%
- Veröffentlicht 18.06.2025 09:33:52
- Zuletzt bearbeitet 17.12.2025 17:57:43
In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race of buffer access at PCM OSS layer The PCM OSS layer tries to clear the buffer with the silence data at initialization (or reconfiguration) of a stream with the ...
CVE-2025-38077
- EPSS 0.02%
- Veröffentlicht 18.06.2025 09:33:51
- Zuletzt bearbeitet 17.12.2025 17:58:32
In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Avoid buffer overflow in current_password_store() If the 'buf' array received from the user contains an empty string, the 'length' variable will be z...
CVE-2025-38074
- EPSS 0.03%
- Veröffentlicht 18.06.2025 09:33:50
- Zuletzt bearbeitet 17.12.2025 18:54:49
In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: protect vq->log_used with vq->mutex The vhost-scsi completion path may access vq->log_base when vq->log_used is already set to false. vhost-thread ...
CVE-2025-38075
- EPSS 0.04%
- Veröffentlicht 18.06.2025 09:33:50
- Zuletzt bearbeitet 17.12.2025 16:39:34
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix timeout on deleted connection NOPIN response timer may expire on a deleted connection and crash with such logs: Did not receive response to NOPIN on CID: ...
CVE-2025-38072
- EPSS 0.03%
- Veröffentlicht 18.06.2025 09:33:48
- Zuletzt bearbeitet 17.12.2025 18:54:13
In the Linux kernel, the following vulnerability has been resolved: libnvdimm/labels: Fix divide error in nd_label_data_init() If a faulty CXL memory device returns a broken zero LSA size in its memory device information (Identify Memory Device (Op...
CVE-2025-38071
- EPSS 0.03%
- Veröffentlicht 18.06.2025 09:33:47
- Zuletzt bearbeitet 17.12.2025 18:54:05
In the Linux kernel, the following vulnerability has been resolved: x86/mm: Check return value from memblock_phys_alloc_range() At least with CONFIG_PHYSICAL_START=0x100000, if there is < 4 MiB of contiguous free memory available at this point, the...