- EPSS 0.19%
- Veröffentlicht 30.10.2025 09:48:06
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: btrfs: do not assert we found block group item when creating free space tree Currently, when building a free space tree at populate_free_space_tree(), if we are not using the block...
CVE-2025-40099
- EPSS 0.38%
- Veröffentlicht 30.10.2025 09:48:05
- Zuletzt bearbeitet 30.07.2026 06:24:11
In the Linux kernel, the following vulnerability has been resolved: cifs: parse_dfs_referrals: prevent oob on malformed input Malicious SMB server can send invalid reply to FSCTL_DFS_GET_REFERRALS - reply smaller than sizeof(struct get_dfs_referra...
CVE-2025-40095
- EPSS 0.14%
- Veröffentlicht 30.10.2025 09:48:03
- Zuletzt bearbeitet 30.07.2026 06:24:11
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attemp...
CVE-2025-40094
- EPSS 0.14%
- Veröffentlicht 30.10.2025 09:48:02
- Zuletzt bearbeitet 30.07.2026 06:24:11
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_acm: Refactor bind path to use __free() After an bind/unbind cycle, the acm->notify_req is left stale. If a subsequent bind fails, the unified error label attempts t...
CVE-2025-40093
- EPSS 0.14%
- Veröffentlicht 30.10.2025 09:48:00
- Zuletzt bearbeitet 30.07.2026 06:24:11
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ecm: Refactor bind path to use __free() After an bind/unbind cycle, the ecm->notify_req is left stale. If a subsequent bind fails, the unified error label attempts t...
CVE-2025-40092
- EPSS 0.14%
- Veröffentlicht 30.10.2025 09:47:59
- Zuletzt bearbeitet 30.07.2026 06:24:10
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ncm: Refactor bind path to use __free() After an bind/unbind cycle, the ncm->notify_req is left stale. If a subsequent bind fails, the unified error label attempts t...
CVE-2025-40088
- EPSS 0.14%
- Veröffentlicht 30.10.2025 09:47:57
- Zuletzt bearbeitet 30.07.2026 06:24:10
In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_strcasecmp() The hfsplus_strcasecmp() logic can trigger the issue: [ 117.317703][ T9855] =========================================...
CVE-2025-40087
- EPSS 0.47%
- Veröffentlicht 30.10.2025 09:47:56
- Zuletzt bearbeitet 30.07.2026 06:24:10
In the Linux kernel, the following vulnerability has been resolved: NFSD: Define a proc_layoutcommit for the FlexFiles layout type Avoid a crash if a pNFS client should happen to send a LAYOUTCOMMIT operation on a FlexFiles layout.
CVE-2023-7324
- EPSS 0.29%
- Veröffentlicht 29.10.2025 13:46:14
- Zuletzt bearbeitet 04.08.2026 11:16:41
In the Linux kernel, the following vulnerability has been resolved: scsi: ses: Fix possible addl_desc_ptr out-of-bounds accesses Sanitize possible addl_desc_ptr out-of-bounds accesses in ses_enclosure_data_process().
- EPSS 0.19%
- Veröffentlicht 29.10.2025 13:37:01
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix null-deref in agg_dequeue To prevent a potential crash in agg_dequeue (net/sched/sch_qfq.c) when cl->qdisc->ops->peek(cl->qdisc) returns NULL, we check the ...