CVE-2025-39836
- EPSS 0.01%
- Veröffentlicht 16.09.2025 13:08:52
- Zuletzt bearbeitet 14.01.2026 19:16:44
In the Linux kernel, the following vulnerability has been resolved: efi: stmm: Fix incorrect buffer allocation method The communication buffer allocated by setup_mm_hdr() is later on passed to tee_shm_register_kernel_buf(). The latter expects those...
CVE-2025-39835
- EPSS 0.02%
- Veröffentlicht 16.09.2025 13:08:51
- Zuletzt bearbeitet 12.05.2026 13:17:14
In the Linux kernel, the following vulnerability has been resolved: xfs: do not propagate ENODATA disk errors into xattr code ENODATA (aka ENOATTR) has a very specific meaning in the xfs xattr code; namely, that the requested attribute name could n...
CVE-2025-39833
- EPSS 0.02%
- Veröffentlicht 16.09.2025 13:08:50
- Zuletzt bearbeitet 14.01.2026 19:16:44
In the Linux kernel, the following vulnerability has been resolved: mISDN: hfcpci: Fix warning when deleting uninitialized timer With CONFIG_DEBUG_OBJECTS_TIMERS unloading hfcpci module leads to the following splat: [ 250.215892] ODEBUG: assert_i...
CVE-2025-39832
- EPSS 0.01%
- Veröffentlicht 16.09.2025 13:08:49
- Zuletzt bearbeitet 14.01.2026 19:16:44
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix lockdep assertion on sync reset unload event Fix lockdep assertion triggered during sync reset unload event. When the sync reset flow is initiated using the devlink r...
CVE-2025-39829
- EPSS 0.01%
- Veröffentlicht 16.09.2025 13:00:27
- Zuletzt bearbeitet 14.01.2026 19:16:43
In the Linux kernel, the following vulnerability has been resolved: trace/fgraph: Fix the warning caused by missing unregister notifier This warning was triggered during testing on v6.16: notifier callback ftrace_suspend_notifier_call already regi...
CVE-2025-39828
- EPSS 0.01%
- Veröffentlicht 16.09.2025 13:00:26
- Zuletzt bearbeitet 12.05.2026 13:17:14
In the Linux kernel, the following vulnerability has been resolved: atm: atmtcp: Prevent arbitrary write in atmtcp_recv_control(). syzbot reported the splat below. [0] When atmtcp_v_open() or atmtcp_v_close() is called via connect() or close(), at...
CVE-2025-39827
- EPSS 0.02%
- Veröffentlicht 16.09.2025 13:00:25
- Zuletzt bearbeitet 12.05.2026 13:17:14
In the Linux kernel, the following vulnerability has been resolved: net: rose: include node references in rose_neigh refcount Current implementation maintains two separate reference counting mechanisms: the 'count' field in struct rose_neigh tracks...
- EPSS 0.02%
- Veröffentlicht 16.09.2025 13:00:24
- Zuletzt bearbeitet 12.05.2026 13:17:13
In the Linux kernel, the following vulnerability has been resolved: net: rose: convert 'use' field to refcount_t The 'use' field in struct rose_neigh is used as a reference counter but lacks atomicity. This can lead to race conditions where a rose_...
CVE-2025-39824
- EPSS 0.02%
- Veröffentlicht 16.09.2025 13:00:23
- Zuletzt bearbeitet 12.05.2026 13:17:13
In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix UAF via HID_CLAIMED_INPUT validation After hid_hw_start() is called hidinput_connect() will eventually be called to set up the device with the input layer since the ...
CVE-2025-39825
- EPSS 0.02%
- Veröffentlicht 16.09.2025 13:00:23
- Zuletzt bearbeitet 12.05.2026 13:17:13
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix race with concurrent opens in rename(2) Besides sending the rename request to the server, the rename process also involves closing any deferred close, waiting for ...