CVE-2025-38644
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:49
- Zuletzt bearbeitet 07.01.2026 16:21:33
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: reject TDLS operations when station is not associated syzbot triggered a WARN in ieee80211_tdls_oper() by sending NL80211_TDLS_ENABLE_LINK immediately after NL80211...
CVE-2025-38639
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:45
- Zuletzt bearbeitet 07.01.2026 16:25:53
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_nfacct: don't assume acct name is null-terminated BUG: KASAN: slab-out-of-bounds in .. lib/vsprintf.c:721 Read of size 1 at addr ffff88801eac95c8 by task syz-executor...
CVE-2025-38635
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:43
- Zuletzt bearbeitet 07.01.2026 16:27:05
In the Linux kernel, the following vulnerability has been resolved: clk: davinci: Add NULL check in davinci_lpsc_clk_register() devm_kasprintf() returns NULL when memory allocation fails. Currently, davinci_lpsc_clk_register() does not check for th...
CVE-2025-38630
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:38
- Zuletzt bearbeitet 07.01.2026 16:34:15
In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Check fb_add_videomode to prevent null-ptr-deref fb_add_videomode() can fail with -ENOMEM when its internal kmalloc() cannot allocate a struct fb_modelist. If that h...
CVE-2025-38626
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:34
- Zuletzt bearbeitet 25.03.2026 11:16:11
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to trigger foreground gc during f2fs_map_blocks() in lfs mode w/ "mode=lfs" mount option, generic/299 will cause system panic as below: ------------[ cut here ]---------...
CVE-2025-38623
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:38:49
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Fix surprise plug detection and recovery The existing PowerNV hotplug code did not handle surprise plug events correctly, leading to a complete failure of the hotplug...
CVE-2025-38624
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:37:06
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Clean up allocated IRQs on unplug When the root of a nested PCIe bridge configuration is unplugged, the pnv_php driver leaked the allocated IRQ resources for the chil...
CVE-2025-38622
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:31
- Zuletzt bearbeitet 07.01.2026 16:40:00
In the Linux kernel, the following vulnerability has been resolved: net: drop UFO packets in udp_rcv_segment() When sending a packet with virtio_net_hdr to tun device, if the gso_type in virtio_net_hdr is SKB_GSO_UDP and the gso_size is less than u...
CVE-2025-38618
- EPSS 0.02%
- Veröffentlicht 22.08.2025 13:01:24
- Zuletzt bearbeitet 07.01.2026 16:56:23
In the Linux kernel, the following vulnerability has been resolved: vsock: Do not allow binding to VMADDR_PORT_ANY It is possible for a vsock to autobind to VMADDR_PORT_ANY. This can cause a use-after-free when a connection is made to the bound soc...
CVE-2025-38617
- EPSS 0.05%
- Veröffentlicht 22.08.2025 13:01:23
- Zuletzt bearbeitet 18.03.2026 17:16:04
In the Linux kernel, the following vulnerability has been resolved: net/packet: fix a race in packet_set_ring() and packet_notifier() When packet_set_ring() releases po->bind_lock, another thread can run packet_notifier() and process an NETDEV_UP e...