CVE-2025-4215
- EPSS 0.22%
- Veröffentlicht 02.05.2025 20:31:05
- Zuletzt bearbeitet 17.06.2025 14:17:53
A vulnerability was found in gorhill uBlock Origin up to 1.63.3b16. It has been classified as problematic. Affected is the function currentStateChanged of the file src/js/1p-filters.js of the component UI. The manipulation leads to inefficient regula...
CVE-2025-37798
- EPSS 0.02%
- Veröffentlicht 02.05.2025 14:16:02
- Zuletzt bearbeitet 06.11.2025 20:49:48
In the Linux kernel, the following vulnerability has been resolved: codel: remove sch->q.qlen check before qdisc_tree_reduce_backlog() After making all ->qlen_notify() callbacks idempotent, now it is safe to remove the check of qlen!=0 from both fq...
CVE-2025-37797
- EPSS 0.02%
- Veröffentlicht 02.05.2025 14:16:01
- Zuletzt bearbeitet 06.11.2025 20:48:20
In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Fix a UAF vulnerability in class handling This patch fixes a Use-After-Free vulnerability in the HFSC qdisc class handling. The issue occurs due to a time-of-check...
CVE-2025-37792
- EPSS 0.02%
- Veröffentlicht 01.05.2025 13:07:24
- Zuletzt bearbeitet 04.11.2025 18:21:05
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: Prevent potential NULL dereference The btrtl_initialize() function checks that rtl_load_file() either had an error or it loaded a zero length file. However, if i...
CVE-2025-37790
- EPSS 0.02%
- Veröffentlicht 01.05.2025 13:07:23
- Zuletzt bearbeitet 06.11.2025 17:49:56
In the Linux kernel, the following vulnerability has been resolved: net: mctp: Set SOCK_RCU_FREE Bind lookup runs under RCU, so ensure that a socket doesn't go away in the middle of a lookup.
CVE-2025-37789
- EPSS 0.02%
- Veröffentlicht 01.05.2025 13:07:22
- Zuletzt bearbeitet 06.11.2025 17:27:39
In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix nested key length validation in the set() action It's not safe to access nla_len(ovs_key) if the data is smaller than the netlink header. Check that the attr...
CVE-2025-37788
- EPSS 0.02%
- Veröffentlicht 01.05.2025 13:07:22
- Zuletzt bearbeitet 06.11.2025 17:23:04
In the Linux kernel, the following vulnerability has been resolved: cxgb4: fix memory leak in cxgb4_init_ethtool_filters() error path In the for loop used to allocate the loc_array and bmap for each port, a memory leak is possible when the allocati...
CVE-2025-37781
- EPSS 0.02%
- Veröffentlicht 01.05.2025 13:07:18
- Zuletzt bearbeitet 06.11.2025 17:20:10
In the Linux kernel, the following vulnerability has been resolved: i2c: cros-ec-tunnel: defer probe if parent EC is not present When i2c-cros-ec-tunnel and the EC driver are built-in, the EC parent device will not be found, leading to NULL pointer...
CVE-2025-37780
- EPSS 0.01%
- Veröffentlicht 01.05.2025 13:07:17
- Zuletzt bearbeitet 06.11.2025 19:11:28
In the Linux kernel, the following vulnerability has been resolved: isofs: Prevent the use of too small fid syzbot reported a slab-out-of-bounds Read in isofs_fh_to_parent. [1] The handle_bytes value passed in by the reproducing program is equal t...
CVE-2025-37773
- EPSS 0.02%
- Veröffentlicht 01.05.2025 13:07:12
- Zuletzt bearbeitet 05.11.2025 17:49:05
In the Linux kernel, the following vulnerability has been resolved: virtiofs: add filesystem context source name check In certain scenarios, for example, during fuzz testing, the source name may be NULL, which could lead to a kernel panic. Therefor...