CVE-2025-37968
- EPSS 0.14%
- Veröffentlicht 20.05.2025 16:47:16
- Zuletzt bearbeitet 12.05.2026 13:16:41
In the Linux kernel, the following vulnerability has been resolved: iio: light: opt3001: fix deadlock due to concurrent flag access The threaded IRQ function in this driver is reading the flag twice: once to lock a mutex and once to unlock it. Even...
CVE-2025-37969
- EPSS 0.14%
- Veröffentlicht 20.05.2025 16:47:16
- Zuletzt bearbeitet 16.12.2025 20:30:57
In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_tagged_fifo Prevent st_lsm6dsx_read_tagged_fifo from falling in an infinite loop in case pattern_len is equal to zero a...
CVE-2025-37967
- EPSS 0.13%
- Veröffentlicht 20.05.2025 16:47:15
- Zuletzt bearbeitet 16.12.2025 20:30:17
In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix deadlock This patch introduces the ucsi_con_mutex_lock / ucsi_con_mutex_unlock functions to the UCSI driver. ucsi_con_mutex_lock ensures the conn...
CVE-2025-37958
- EPSS 0.18%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:37:53
In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix dereferencing invalid pmd migration entry When migrating a THP, concurrent access to the PMD migration entry during a deferred split scan can lead to an invalid...
CVE-2025-37961
- EPSS 0.17%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:38:32
In the Linux kernel, the following vulnerability has been resolved: ipvs: fix uninit-value for saddr in do_output_route4 syzbot reports for uninit-value for the saddr argument [1]. commit 4754957f04f5 ("ipvs: do not use random local source address ...
CVE-2025-37963
- EPSS 0.18%
- Veröffentlicht 20.05.2025 16:15:34
- Zuletzt bearbeitet 16.12.2025 20:29:30
In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Only mitigate cBPF programs loaded by unprivileged users Support for eBPF programs loaded by unprivileged users is typically disabled. This means only cBPF programs nee...
CVE-2025-37951
- EPSS 0.16%
- Veröffentlicht 20.05.2025 16:15:33
- Zuletzt bearbeitet 17.12.2025 20:05:00
In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Add job to pending list if the reset was skipped When a CL/CSD job times out, we check if the GPU has made any progress since the last timeout. If so, instead of resetting...
CVE-2025-37952
- EPSS 0.33%
- Veröffentlicht 20.05.2025 16:15:33
- Zuletzt bearbeitet 30.07.2026 06:22:36
In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix UAF in __close_file_table_ids A use-after-free is possible if one thread destroys the file via __ksmbd_close_fd while another thread holds a reference to it. The existin...
CVE-2025-37954
- EPSS 0.32%
- Veröffentlicht 20.05.2025 16:15:33
- Zuletzt bearbeitet 30.07.2026 06:22:37
In the Linux kernel, the following vulnerability has been resolved: smb: client: Avoid race in open_cached_dir with lease breaks A pre-existing valid cfid returned from find_or_create_cached_dir might race with a lease break, meaning open_cached_di...
CVE-2025-37956
- EPSS 0.33%
- Veröffentlicht 20.05.2025 16:15:33
- Zuletzt bearbeitet 30.07.2026 06:22:37
In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent rename with empty string Client can send empty newname string to ksmbd server. It will cause a kernel oops from d_alloc. This patch return the error when attempting ...