CVE-2025-22079
- EPSS 0.06%
- Veröffentlicht 16.04.2025 14:12:29
- Zuletzt bearbeitet 03.11.2025 20:17:42
In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate l_tree_depth to avoid out-of-bounds access The l_tree_depth field is 16-bit (__le16), but the actual maximum depth is limited to OCFS2_MAX_PATH_DEPTH. Add a check ...
CVE-2025-22073
- EPSS 0.09%
- Veröffentlicht 16.04.2025 14:12:25
- Zuletzt bearbeitet 03.11.2025 20:17:42
In the Linux kernel, the following vulnerability has been resolved: spufs: fix a leak on spufs_new_file() failure It's called from spufs_fill_dir(), and caller of that will do spufs_rmdir() in case of failure. That does remove everything we'd mana...
CVE-2025-22072
- EPSS 0.07%
- Veröffentlicht 16.04.2025 14:12:24
- Zuletzt bearbeitet 03.11.2025 20:17:42
In the Linux kernel, the following vulnerability has been resolved: spufs: fix gang directory lifetimes prior to "[POWERPC] spufs: Fix gang destroy leaks" we used to have a problem with gang lifetimes - creation of a gang returns opened gang direct...
CVE-2025-22071
- EPSS 0.11%
- Veröffentlicht 16.04.2025 14:12:23
- Zuletzt bearbeitet 03.11.2025 20:17:41
In the Linux kernel, the following vulnerability has been resolved: spufs: fix a leak in spufs_create_context() Leak fixes back in 2008 missed one case - if we are trying to set affinity and spufs_mkdir() fails, we need to drop the reference to nei...
CVE-2025-22060
- EPSS 0.1%
- Veröffentlicht 16.04.2025 14:12:16
- Zuletzt bearbeitet 03.11.2025 20:17:40
In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: Prevent parser TCAM memory corruption Protect the parser TCAM/SRAM memory, and the cached (shadow) SRAM information, from concurrent modifications. Both the TCAM and S...
CVE-2025-22053
- EPSS 0.07%
- Veröffentlicht 16.04.2025 14:12:11
- Zuletzt bearbeitet 31.10.2025 20:18:11
In the Linux kernel, the following vulnerability has been resolved: net: ibmveth: make veth_pool_store stop hanging v2: - Created a single error handling unlock and exit in veth_pool_store - Greatly expanded commit message with previous explanatory...
CVE-2025-22043
- EPSS 0.06%
- Veröffentlicht 16.04.2025 14:12:04
- Zuletzt bearbeitet 14.11.2025 16:50:00
In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for durable handle context Add missing bounds check for durable handle context.
CVE-2025-22042
- EPSS 0.1%
- Veröffentlicht 16.04.2025 14:12:03
- Zuletzt bearbeitet 06.04.2026 13:44:14
In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for create lease context Add missing bounds check for create lease context.
CVE-2025-22041
- EPSS 0.13%
- Veröffentlicht 16.04.2025 14:11:58
- Zuletzt bearbeitet 02.04.2026 09:16:18
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_sessions_deregister() In multichannel mode, UAF issue can occur in session_deregister when the second channel sets up a session through the conne...
CVE-2025-22038
- EPSS 0.05%
- Veröffentlicht 16.04.2025 14:11:56
- Zuletzt bearbeitet 03.11.2025 20:17:38
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate zero num_subauth before sub_auth is accessed Access psid->sub_auth[psid->num_subauth - 1] without checking if num_subauth is non-zero leads to an out-of-bounds read...