CVE-2025-38201
- EPSS 0.19%
- Veröffentlicht 04.07.2025 13:37:22
- Zuletzt bearbeitet 14.07.2026 13:17:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: clamp maximum map bucket size to INT_MAX Otherwise, it is possible to hit WARN_ON_ONCE in __kvmalloc_node_noprof() when resizing hashtable because __GFP_...
CVE-2025-38199
- EPSS 0.13%
- Veröffentlicht 04.07.2025 13:37:21
- Zuletzt bearbeitet 18.11.2025 17:17:24
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix memory leak due to multiple rx_stats allocation rx_stats for each arsta is allocated when adding a station. arsta->rx_stats will be freed when a station is remove...
CVE-2025-38198
- EPSS 0.16%
- Veröffentlicht 04.07.2025 13:37:20
- Zuletzt bearbeitet 12.05.2026 13:16:44
In the Linux kernel, the following vulnerability has been resolved: fbcon: Make sure modelist not set on unregistered console It looks like attempting to write to the "store_modes" sysfs node will run afoul of unregistered consoles: UBSAN: array-i...
CVE-2025-38193
- EPSS 0.17%
- Veröffentlicht 04.07.2025 13:37:17
- Zuletzt bearbeitet 30.07.2026 06:22:59
In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: reject invalid perturb period Gerrard Tai reported that SFQ perturb_period has no range check yet, and this can be used to trigger a race condition fixed in a s...
CVE-2025-38194
- EPSS 0.19%
- Veröffentlicht 04.07.2025 13:37:17
- Zuletzt bearbeitet 18.12.2025 21:26:58
In the Linux kernel, the following vulnerability has been resolved: jffs2: check that raw node were preallocated before writing summary Syzkaller detected a kernel bug in jffs2_link_node_ref, caused by fault injection in jffs2_prealloc_raw_node_ref...
CVE-2025-38190
- EPSS 0.17%
- Veröffentlicht 04.07.2025 13:37:15
- Zuletzt bearbeitet 18.12.2025 17:24:15
In the Linux kernel, the following vulnerability has been resolved: atm: Revert atm_account_tx() if copy_from_iter_full() fails. In vcc_sendmsg(), we account skb->truesize to sk->sk_wmem_alloc by atm_account_tx(). It is expected to be reverted by ...
CVE-2025-38191
- EPSS 1.12%
- Veröffentlicht 04.07.2025 13:37:15
- Zuletzt bearbeitet 30.07.2026 06:22:59
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in destroy_previous_session If client set ->PreviousSessionId on kerberos session setup stage, NULL pointer dereference error will happen. Since...
CVE-2025-38189
- EPSS 0.16%
- Veröffentlicht 04.07.2025 13:37:14
- Zuletzt bearbeitet 30.07.2026 06:22:58
In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Avoid NULL pointer dereference in `v3d_job_update_stats()` The following kernel Oops was recently reported by Mesa CI: [ 800.139824] Unable to handle kernel NULL pointer...
CVE-2025-38185
- EPSS 0.16%
- Veröffentlicht 04.07.2025 13:37:11
- Zuletzt bearbeitet 18.12.2025 16:53:27
In the Linux kernel, the following vulnerability has been resolved: atm: atmtcp: Free invalid length skb in atmtcp_c_send(). syzbot reported the splat below. [0] vcc_sendmsg() copies data passed from userspace to skb and passes it to vcc->dev->ops...
CVE-2025-38180
- EPSS 0.17%
- Veröffentlicht 04.07.2025 13:37:08
- Zuletzt bearbeitet 30.07.2026 06:22:58
In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imb...