CVE-2025-38639
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:45
- Zuletzt bearbeitet 07.01.2026 16:25:53
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_nfacct: don't assume acct name is null-terminated BUG: KASAN: slab-out-of-bounds in .. lib/vsprintf.c:721 Read of size 1 at addr ffff88801eac95c8 by task syz-executor...
CVE-2025-38630
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:38
- Zuletzt bearbeitet 07.01.2026 16:34:15
In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Check fb_add_videomode to prevent null-ptr-deref fb_add_videomode() can fail with -ENOMEM when its internal kmalloc() cannot allocate a struct fb_modelist. If that h...
CVE-2025-38626
- EPSS 0.02%
- Veröffentlicht 22.08.2025 16:00:34
- Zuletzt bearbeitet 25.03.2026 11:16:11
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to trigger foreground gc during f2fs_map_blocks() in lfs mode w/ "mode=lfs" mount option, generic/299 will cause system panic as below: ------------[ cut here ]---------...
CVE-2025-38623
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:38:49
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Fix surprise plug detection and recovery The existing PowerNV hotplug code did not handle surprise plug events correctly, leading to a complete failure of the hotplug...
CVE-2025-38624
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:32
- Zuletzt bearbeitet 07.01.2026 16:37:06
In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Clean up allocated IRQs on unplug When the root of a nested PCIe bridge configuration is unplugged, the pnv_php driver leaked the allocated IRQ resources for the chil...
CVE-2025-38621
- EPSS 0.03%
- Veröffentlicht 22.08.2025 16:00:30
- Zuletzt bearbeitet 26.11.2025 17:46:17
In the Linux kernel, the following vulnerability has been resolved: md: make rdev_addable usable for rcu mode Our testcase trigger panic: BUG: kernel NULL pointer dereference, address: 00000000000000e0 ... Oops: Oops: 0000 [#1] SMP NOPTI CPU: 2 UI...
CVE-2025-38618
- EPSS 0.02%
- Veröffentlicht 22.08.2025 13:01:24
- Zuletzt bearbeitet 07.01.2026 16:56:23
In the Linux kernel, the following vulnerability has been resolved: vsock: Do not allow binding to VMADDR_PORT_ANY It is possible for a vsock to autobind to VMADDR_PORT_ANY. This can cause a use-after-free when a connection is made to the bound soc...
CVE-2025-38617
- EPSS 0.05%
- Veröffentlicht 22.08.2025 13:01:23
- Zuletzt bearbeitet 18.03.2026 17:16:04
In the Linux kernel, the following vulnerability has been resolved: net/packet: fix a race in packet_set_ring() and packet_notifier() When packet_set_ring() releases po->bind_lock, another thread can run packet_notifier() and process an NETDEV_UP e...
CVE-2025-38614
- EPSS 0.03%
- Veröffentlicht 19.08.2025 17:15:40
- Zuletzt bearbeitet 12.05.2026 13:16:52
In the Linux kernel, the following vulnerability has been resolved: eventpoll: Fix semi-unbounded recursion Ensure that epoll instances can never form a graph deeper than EP_MAX_NESTS+1 links. Currently, ep_loop_check_proc() ensures that the graph...
- EPSS 0.04%
- Veröffentlicht 19.08.2025 17:15:39
- Zuletzt bearbeitet 05.09.2025 20:15:34
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.