CVE-2025-38406
- EPSS 0.02%
- Veröffentlicht 25.07.2025 14:15:32
- Zuletzt bearbeitet 23.12.2025 19:45:18
In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: remove WARN on bad firmware input If the firmware gives bad input, that's nothing to do with the driver's stack at this point etc., so the WARN_ON() doesn't add any v...
CVE-2025-38408
- EPSS 0.04%
- Veröffentlicht 25.07.2025 14:15:32
- Zuletzt bearbeitet 17.03.2026 13:42:15
In the Linux kernel, the following vulnerability has been resolved: genirq/irq_sim: Initialize work context pointers properly Initialize `ops` member's pointers properly by using kzalloc() instead of kmalloc() when allocating the simulation work co...
CVE-2025-38409
- EPSS 0.03%
- Veröffentlicht 25.07.2025 14:15:32
- Zuletzt bearbeitet 23.12.2025 19:46:10
In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix another leak in the submit error path put_unused_fd() doesn't free the installed file, if we've already done fd_install(). So we need to also free the sync_file. Pat...
CVE-2025-38410
- EPSS 0.03%
- Veröffentlicht 25.07.2025 14:15:32
- Zuletzt bearbeitet 23.12.2025 19:46:32
In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix a fence leak in submit error path In error paths, we could unref the submit without calling drm_sched_entity_push_job(), so msm_job_free() will never get called. Sinc...
CVE-2025-38403
- EPSS 0.02%
- Veröffentlicht 25.07.2025 14:15:31
- Zuletzt bearbeitet 23.12.2025 19:42:42
In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: Clear the vmci transport packet properly when initializing it In vmci_transport_packet_init memset the vmci_transport_packet before populating the fields to avoid any u...
CVE-2025-38399
- EPSS 0.03%
- Veröffentlicht 25.07.2025 13:15:29
- Zuletzt bearbeitet 23.12.2025 19:37:00
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Fix NULL pointer dereference in core_scsi3_decode_spec_i_port() The function core_scsi3_decode_spec_i_port(), in its error code path, unconditionally calls core_scsi3...
CVE-2025-38400
- EPSS 0.02%
- Veröffentlicht 25.07.2025 13:15:29
- Zuletzt bearbeitet 12.05.2026 13:16:49
In the Linux kernel, the following vulnerability has been resolved: nfs: Clean up /proc/net/rpc/nfs when nfs_fs_proc_net_init() fails. syzbot reported a warning below [1] following a fault injection in nfs_fs_proc_net_init(). [0] When nfs_fs_proc_...
CVE-2025-38401
- EPSS 0.03%
- Veröffentlicht 25.07.2025 13:15:29
- Zuletzt bearbeitet 23.12.2025 19:37:56
In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map the DMA region, the request is not prepared for data receiving, but msdc_start_data() pro...
CVE-2025-38387
- EPSS 0.03%
- Veröffentlicht 25.07.2025 13:15:28
- Zuletzt bearbeitet 16.12.2025 20:12:23
In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Initialize obj_event->obj_sub_list before xa_insert The obj_event may be loaded immediately after inserted, then if the list_head is not initialized then we may get a po...
CVE-2025-38389
- EPSS 0.03%
- Veröffentlicht 25.07.2025 13:15:28
- Zuletzt bearbeitet 16.12.2025 20:13:12
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Fix timeline left held on VMA alloc error The following error has been reported sporadically by CI when a test unbinds the i915 driver on a ring submission platform: ...