CVE-2025-36423
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:27:38
- Zuletzt bearbeitet 05.02.2026 19:43:00
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 12.1.0 - 12.1.3 could allow a local user to cause a denial of service due to improper neutralization of special elements in data query logic.
CVE-2025-36424
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:27:34
- Zuletzt bearbeitet 11.02.2026 20:57:25
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to improper neutralization of special elements in data query logic.
CVE-2025-36427
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:27:31
- Zuletzt bearbeitet 11.02.2026 20:57:17
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to insufficient validation of special elements in data query logic.
CVE-2025-36428
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:27:26
- Zuletzt bearbeitet 05.02.2026 19:39:41
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an authenticated user to cause a denial of service due to improper neutralization of special elements in data query logic when the RPSCA...
CVE-2025-36442
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:18:24
- Zuletzt bearbeitet 05.02.2026 19:39:37
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query with XML columns.
CVE-2026-23011
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:24
- Zuletzt bearbeitet 25.03.2026 19:51:11
In the Linux kernel, the following vulnerability has been resolved: ipv4: ip_gre: make ipgre_header() robust Analog to commit db5b4e39c4e6 ("ip6_gre: make ip6gre_header() robust") Over the years, syzbot found many ways to crash the kernel in ipgre...
CVE-2026-23010
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:23
- Zuletzt bearbeitet 27.04.2026 14:16:29
In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix use-after-free in inet6_addr_del(). syzbot reported use-after-free of inet6_ifaddr in inet6_addr_del(). [0] The cited commit accidentally moved ipv6_del_addr() for mngtm...
CVE-2026-23005
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:19
- Zuletzt bearbeitet 25.03.2026 19:22:06
In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Clear XSTATE_BV[i] in guest XSAVE state whenever XFD[i]=1 When loading guest XSAVE state via KVM_SET_XSAVE, and when updating XFD in response to a guest WRMSR, clear XFD-d...
CVE-2026-23006
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:19
- Zuletzt bearbeitet 25.03.2026 19:21:56
In the Linux kernel, the following vulnerability has been resolved: ASoC: tlv320adcx140: fix null pointer The "snd_soc_component" in "adcx140_priv" was only used once but never set. It was only used for reaching "dev" which is already present in "a...
CVE-2026-23004
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:18
- Zuletzt bearbeitet 27.04.2026 14:16:29
In the Linux kernel, the following vulnerability has been resolved: dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list() syzbot was able to crash the kernel in rt6_uncached_list_flush_dev() in an interesting way [1] Crash happens i...