CVE-2025-4598
- EPSS 0.04%
- Veröffentlicht 30.05.2025 13:13:26
- Zuletzt bearbeitet 02.02.2026 10:16:05
A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read sensitive data, suc...
CVE-2025-37998
- EPSS 0.03%
- Veröffentlicht 29.05.2025 13:15:56
- Zuletzt bearbeitet 16.12.2025 20:21:07
In the Linux kernel, the following vulnerability has been resolved: openvswitch: Fix unsafe attribute parsing in output_userspace() This patch replaces the manual Netlink attribute iteration in output_userspace() with nla_for_each_nested(), which e...
CVE-2025-37997
- EPSS 0.03%
- Veröffentlicht 29.05.2025 13:15:55
- Zuletzt bearbeitet 16.12.2025 20:20:41
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix region locking in hash types Region locking introduced in v5.6-rc4 contained three macros to handle the region locks: ahash_bucket_start(), ahash_bucket_end()...
CVE-2025-37995
- EPSS 0.03%
- Veröffentlicht 29.05.2025 13:15:54
- Zuletzt bearbeitet 16.12.2025 20:20:35
In the Linux kernel, the following vulnerability has been resolved: module: ensure that kobject_put() is safe for module type kobjects In 'lookup_or_create_module_kobject()', an internal kobject is created using 'module_ktype'. So call to 'kobject_...
CVE-2025-37994
- EPSS 0.03%
- Veröffentlicht 29.05.2025 13:15:53
- Zuletzt bearbeitet 16.12.2025 20:19:55
In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix NULL pointer access This patch ensures that the UCSI driver waits for all pending tasks in the ucsi_displayport_work workqueue to finish executin...
CVE-2025-37992
- EPSS 0.03%
- Veröffentlicht 26.05.2025 14:54:15
- Zuletzt bearbeitet 16.12.2025 20:19:49
In the Linux kernel, the following vulnerability has been resolved: net_sched: Flush gso_skb list too during ->change() Previously, when reducing a qdisc's limit via the ->change() operation, only the main skb queue was trimmed, potentially leaving...
CVE-2025-3887
- EPSS 0.61%
- Veröffentlicht 22.05.2025 00:47:04
- Zuletzt bearbeitet 13.08.2025 15:57:22
GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to ex...
CVE-2025-37990
- EPSS 0.04%
- Veröffentlicht 20.05.2025 17:18:45
- Zuletzt bearbeitet 16.12.2025 20:19:38
In the Linux kernel, the following vulnerability has been resolved: wifi: brcm80211: fmac: Add error handling for brcmf_usb_dl_writeimage() The function brcmf_usb_dl_writeimage() calls the function brcmf_usb_dl_cmd() but dose not check its return v...
CVE-2025-37991
- EPSS 0.02%
- Veröffentlicht 20.05.2025 17:18:45
- Zuletzt bearbeitet 16.12.2025 20:19:43
In the Linux kernel, the following vulnerability has been resolved: parisc: Fix double SIGFPE crash Camm noticed that on parisc a SIGFPE exception will crash an application with a second SIGFPE in the signal handler. Dave analyzed it, and it happe...
CVE-2025-37989
- EPSS 0.02%
- Veröffentlicht 20.05.2025 17:09:21
- Zuletzt bearbeitet 16.12.2025 20:19:33
In the Linux kernel, the following vulnerability has been resolved: net: phy: leds: fix memory leak A network restart test on a router led to an out-of-memory condition, which was traced to a memory leak in the PHY LED trigger code. The root cause...