CVE-2025-40284
- EPSS 0.14%
- Veröffentlicht 06.12.2025 21:51:08
- Zuletzt bearbeitet 30.07.2026 06:24:26
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: cancel mesh send timer when hdev removed mesh_send_done timer is not canceled when hdev is removed, which causes crash if the timer triggers after hdev is gone. C...
CVE-2025-40283
- EPSS 0.14%
- Veröffentlicht 06.12.2025 21:51:07
- Zuletzt bearbeitet 30.07.2026 06:24:26
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: reorder cleanup in btusb_disconnect to avoid UAF There is a KASAN: slab-use-after-free read in btusb_disconnect(). Calling "usb_driver_release_interface(&btusb_dr...
CVE-2025-40282
- EPSS 0.27%
- Veröffentlicht 06.12.2025 21:51:06
- Zuletzt bearbeitet 30.07.2026 06:24:26
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: 6lowpan: reset link-local header on ipv6 recv path Bluetooth 6lowpan.c netdev has header_ops, so it must set link-local header for RX skb, otherwise things crash, eg. wi...
- EPSS 0.21%
- Veröffentlicht 06.12.2025 21:51:05
- Zuletzt bearbeitet 02.06.2026 14:16:33
In the Linux kernel, the following vulnerability has been resolved: sctp: prevent possible shift-out-of-bounds in sctp_transport_update_rto syzbot reported a possible shift-out-of-bounds [1] Blamed commit added rto_alpha_max and rto_beta_max set t...
- EPSS 0.19%
- Veröffentlicht 06.12.2025 21:51:03
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: net: sched: act_connmark: initialize struct tc_ife to fix kernel leak In tcf_connmark_dump(), the variable 'opt' was partially initialized using a designatied initializer. While th...
- EPSS 0.21%
- Veröffentlicht 06.12.2025 21:51:01
- Zuletzt bearbeitet 02.06.2026 14:16:33
In the Linux kernel, the following vulnerability has been resolved: net: sched: act_ife: initialize struct tc_ife to fix KMSAN kernel-infoleak Fix a KMSAN kernel-infoleak detected by the syzbot . [net?] KMSAN: kernel-infoleak in __skb_datagram_it...
CVE-2025-40277
- EPSS 0.23%
- Veröffentlicht 06.12.2025 21:51:00
- Zuletzt bearbeitet 30.07.2026 06:24:25
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Validate command header size against SVGA_CMD_MAX_DATASIZE This data originates from userspace and is used in buffer offset calculations which could potentially overflo...
CVE-2025-40271
- EPSS 0.45%
- Veröffentlicht 06.12.2025 21:50:53
- Zuletzt bearbeitet 30.07.2026 06:24:24
In the Linux kernel, the following vulnerability has been resolved: fs/proc: fix uaf in proc_readdir_de() Pde is erased from subdir rbtree through rb_erase(), but not set the node to EMPTY, which may result in uaf access. We should use RB_CLEAR_NO...
CVE-2025-40269
- EPSS 0.17%
- Veröffentlicht 06.12.2025 21:50:50
- Zuletzt bearbeitet 30.07.2026 06:24:24
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix potential overflow of PCM transfer buffer The PCM stream data in USB-audio driver is transferred over USB URB packet buffers, and each packet size is determine...
- EPSS 0.18%
- Veröffentlicht 06.12.2025 21:50:48
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: cifs: client: fix memory leak in smb3_fs_context_parse_param The user calls fsconfig twice, but when the program exits, free() only frees ctx->source for the second fsconfig, not t...