CVE-2025-23157
- EPSS 0.07%
- Veröffentlicht 01.05.2025 12:55:43
- Zuletzt bearbeitet 05.11.2025 17:56:19
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: add check to avoid out of bound access There is a possibility that init_codecs is invoked multiple times during manipulated payload from video firmware. I...
CVE-2025-23158
- EPSS 0.07%
- Veröffentlicht 01.05.2025 12:55:43
- Zuletzt bearbeitet 05.11.2025 17:55:11
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi: add check to handle incorrect queue size qsize represents size of shared queued between driver and video firmware. Firmware can modify this value to an invalid l...
CVE-2025-23156
- EPSS 0.08%
- Veröffentlicht 01.05.2025 12:55:42
- Zuletzt bearbeitet 05.11.2025 17:57:13
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: refactor hfi packet parsing logic words_count denotes the number of words in total payload, while data points to payload of various property within it. Wh...
CVE-2025-23150
- EPSS 0.06%
- Veröffentlicht 01.05.2025 12:55:38
- Zuletzt bearbeitet 05.11.2025 18:03:36
In the Linux kernel, the following vulnerability has been resolved: ext4: fix off-by-one error in do_split Syzkaller detected a use-after-free issue in ext4_insert_dentry that was caused by out-of-bounds access due to incorrect splitting in do_spli...
CVE-2025-23151
- EPSS 0.05%
- Veröffentlicht 01.05.2025 12:55:38
- Zuletzt bearbeitet 05.11.2025 17:58:11
In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Fix race between unprepare and queue_buf A client driver may use mhi_unprepare_from_transfer() to quiesce incoming data during the client driver's tear down. The cl...
CVE-2025-23147
- EPSS 0.06%
- Veröffentlicht 01.05.2025 12:55:36
- Zuletzt bearbeitet 05.11.2025 18:04:44
In the Linux kernel, the following vulnerability has been resolved: i3c: Add NULL pointer check in i3c_master_queue_ibi() The I3C master driver may receive an IBI from a target device that has not been probed yet. In such cases, the master calls `i...
CVE-2025-23148
- EPSS 0.07%
- Veröffentlicht 01.05.2025 12:55:36
- Zuletzt bearbeitet 05.11.2025 18:04:14
In the Linux kernel, the following vulnerability has been resolved: soc: samsung: exynos-chipid: Add NULL pointer check in exynos_chipid_probe() soc_dev_attr->revision could be NULL, thus, a pointer check is added to prevent potential NULL pointer ...
CVE-2025-23146
- EPSS 0.07%
- Veröffentlicht 01.05.2025 12:55:35
- Zuletzt bearbeitet 05.11.2025 18:05:02
In the Linux kernel, the following vulnerability has been resolved: mfd: ene-kb3930: Fix a potential NULL pointer dereference The off_gpios could be NULL. Add missing check in the kb3930_probe(). This is similar to the issue fixed in commit b1ba8bc...
CVE-2025-23145
- EPSS 0.07%
- Veröffentlicht 01.05.2025 12:55:34
- Zuletzt bearbeitet 05.11.2025 18:05:35
In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer in can_accept_new_subflow When testing valkey benchmark tool with MPTCP, the kernel panics in 'mptcp_can_accept_new_subflow' because subflow_req->msk is NUL...
CVE-2025-23143
- EPSS 0.09%
- Veröffentlicht 01.05.2025 12:55:33
- Zuletzt bearbeitet 12.05.2026 13:16:40
In the Linux kernel, the following vulnerability has been resolved: net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod. When I ran the repro [0] and waited a few seconds, I observed two LOCKDEP splats: a warning immediately follow...