CVE-2025-39971
- EPSS 0.14%
- Veröffentlicht 15.10.2025 07:55:54
- Zuletzt bearbeitet 30.07.2026 06:24:02
In the Linux kernel, the following vulnerability has been resolved: i40e: fix idx validation in config queues msg Ensure idx is within range of active/initialized TCs when iterating over vf->ch[idx] in i40e_vc_config_queues_msg().
CVE-2025-39972
- EPSS 0.14%
- Veröffentlicht 15.10.2025 07:55:54
- Zuletzt bearbeitet 30.07.2026 06:24:03
In the Linux kernel, the following vulnerability has been resolved: i40e: fix idx validation in i40e_validate_queue_map Ensure idx is within range of active/initialized TCs when iterating over vf->ch[idx] in i40e_validate_queue_map().
CVE-2025-39970
- EPSS 0.14%
- Veröffentlicht 15.10.2025 07:55:53
- Zuletzt bearbeitet 30.07.2026 06:24:02
In the Linux kernel, the following vulnerability has been resolved: i40e: fix input validation logic for action_meta Fix condition to check 'greater or equal' to prevent OOB dereference.
CVE-2025-39968
- EPSS 0.14%
- Veröffentlicht 15.10.2025 07:55:52
- Zuletzt bearbeitet 30.07.2026 06:24:02
In the Linux kernel, the following vulnerability has been resolved: i40e: add max boundary check for VF filters There is no check for max filters that VF can request. Add it.
CVE-2025-39969
- EPSS 0.14%
- Veröffentlicht 15.10.2025 07:55:52
- Zuletzt bearbeitet 30.07.2026 06:24:02
In the Linux kernel, the following vulnerability has been resolved: i40e: fix validation of VF state in get resources VF state I40E_VF_STATE_ACTIVE is not the only state in which VF is actually active so it should not be used to determine if a VF i...
CVE-2025-39967
- EPSS 0.16%
- Veröffentlicht 15.10.2025 07:55:51
- Zuletzt bearbeitet 30.07.2026 06:24:02
In the Linux kernel, the following vulnerability has been resolved: fbcon: fix integer overflow in fbcon_do_set_font Fix integer overflow vulnerabilities in fbcon_do_set_font() where font size calculations could overflow when handling user-controll...
CVE-2025-39965
- EPSS 0.18%
- Veröffentlicht 13.10.2025 13:48:31
- Zuletzt bearbeitet 30.07.2026 06:24:01
In the Linux kernel, the following vulnerability has been resolved: xfrm: xfrm_alloc_spi shouldn't use 0 as SPI x->id.spi == 0 means "no SPI assigned", but since commit 94f39804d891 ("xfrm: Duplicate SPI Handling"), we now create states and add the...
CVE-2025-39964
- EPSS 0.25%
- Veröffentlicht 13.10.2025 13:48:30
- Zuletzt bearbeitet 19.09.2026 04:17:48
In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg Issuing two writes to the same af_alg socket is bogus as the data will be interleaved in an unpredictable fashion. Fu...
CVE-2025-39961
- EPSS 0.11%
- Veröffentlicht 09.10.2025 12:13:22
- Zuletzt bearbeitet 30.07.2026 06:24:01
In the Linux kernel, the following vulnerability has been resolved: iommu/amd/pgtbl: Fix possible race while increase page table level The AMD IOMMU host page table implementation supports dynamic page table levels (up to 6 levels), starting with a...
CVE-2025-39958
- EPSS 0.13%
- Veröffentlicht 09.10.2025 09:47:35
- Zuletzt bearbeitet 26.02.2026 22:51:27
In the Linux kernel, the following vulnerability has been resolved: iommu/s390: Make attach succeed when the device was surprise removed When a PCI device is removed with surprise hotplug, there may still be attempts to attach the device to the def...