CVE-2025-37970
- EPSS 0.08%
- Veröffentlicht 20.05.2025 16:47:17
- Zuletzt bearbeitet 16.12.2025 20:31:02
In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_fifo Prevent st_lsm6dsx_read_fifo from falling in an infinite loop in case pattern_len is equal to zero and the device ...
CVE-2025-37968
- EPSS 0.09%
- Veröffentlicht 20.05.2025 16:47:16
- Zuletzt bearbeitet 16.12.2025 20:30:50
In the Linux kernel, the following vulnerability has been resolved: iio: light: opt3001: fix deadlock due to concurrent flag access The threaded IRQ function in this driver is reading the flag twice: once to lock a mutex and once to unlock it. Even...
CVE-2025-37969
- EPSS 0.09%
- Veröffentlicht 20.05.2025 16:47:16
- Zuletzt bearbeitet 16.12.2025 20:30:57
In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_tagged_fifo Prevent st_lsm6dsx_read_tagged_fifo from falling in an infinite loop in case pattern_len is equal to zero a...
CVE-2025-37967
- EPSS 0.07%
- Veröffentlicht 20.05.2025 16:47:15
- Zuletzt bearbeitet 16.12.2025 20:30:17
In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix deadlock This patch introduces the ucsi_con_mutex_lock / ucsi_con_mutex_unlock functions to the UCSI driver. ucsi_con_mutex_lock ensures the conn...
CVE-2025-37958
- EPSS 0.12%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:37:53
In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix dereferencing invalid pmd migration entry When migrating a THP, concurrent access to the PMD migration entry during a deferred split scan can lead to an invalid...
CVE-2025-37959
- EPSS 0.1%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:38:15
In the Linux kernel, the following vulnerability has been resolved: bpf: Scrub packet on bpf_redirect_peer When bpf_redirect_peer is used to redirect packets to a device in another network namespace, the skb isn't scrubbed. That can lead skb inform...
CVE-2025-37961
- EPSS 0.1%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:38:32
In the Linux kernel, the following vulnerability has been resolved: ipvs: fix uninit-value for saddr in do_output_route4 syzbot reports for uninit-value for the saddr argument [1]. commit 4754957f04f5 ("ipvs: do not use random local source address ...
CVE-2025-37962
- EPSS 0.09%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:29:12
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix memory leak in parse_lease_state() The previous patch that added bounds check for create lease context introduced a memory leak. When the bounds check fails, the functio...
CVE-2025-37963
- EPSS 0.09%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:29:30
In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Only mitigate cBPF programs loaded by unprivileged users Support for eBPF programs loaded by unprivileged users is typically disabled. This means only cBPF programs nee...
CVE-2025-37964
- EPSS 0.09%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:30:11
In the Linux kernel, the following vulnerability has been resolved: x86/mm: Eliminate window where TLB flushes may be inadvertently skipped tl;dr: There is a window in the mm switching code where the new CR3 is set and the CPU should be getting TLB...