Search

Found 9,906 results in 1370ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-31277 high 9.5 KEVFIX rhel slesdebian debian 8mo ago Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corru…
CVE-2025-31223 high 8.0 FIX rhel slesdebian debian 8mo ago The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted w…
CVE-2025-11715 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago Memory safety bugs present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…
CVE-2025-11714 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago Memory safety bugs present in Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume tha…
CVE-2025-11712 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago A malicious page could have used the type attribute of an OBJECT tag to override the default browser behavior when encountering a web resource served without a content-type. This could have contribut…
CVE-2025-11711 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnerability was fixed in Firefox 144, Firefox ESR 115.29, Firefox ESR 140.4, Thunder…
CVE-2025-11710 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago A compromised web process using malicious IPC messages could have caused the privileged browser process to reveal blocks of its memory to the compromised process. This vulnerability was fixed in Fire…
CVE-2025-11709 high 8.0 FIX rocky rheldebian debian 8mo ago A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipulated WebGL textures. This vulnerability was fixed in Firefox 144, Firefox ESR 11…
CVE-2025-11708 high 8.0 FIX rocky rheldebian debian 8mo ago Use-after-free in MediaTrackGraphImpl::GetInstance(). This vulnerability was fixed in Firefox 144, Firefox ESR 140.4, Thunderbird 144, and Thunderbird 140.4.
CVE-2025-39757 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2025-61919 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2023-53629 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: fs: dlm: fix use after free in midcomms commit While working on processing dlm message in softirq context I experienced the follo…
CVE-2022-50552 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: blk-mq: use quiesced elevator switch when reinitializing queues The hctx's run_work may be racing with the elevator switch when r…
CVE-2025-61772 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61771 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61770 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-41244 high 9.5 KEVFIX rhel rocky sles 8mo ago Broadcom VMware Aria Operations and VMware Tools contain a privilege defined with unsafe actions vulnerability. A malicious local actor with non-administrative privileges having access to a VM with V…
CVE-2024-50301 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2021-22555 high 10.0 KEVEXPFIX arch arch sles rocky 8mo ago Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space.
CVE-2025-11275 high 7.8 7.8 debian debian sles assimp 8mo ago A vulnerability was identified in Open Asset Import Library Assimp 6.0.2. Affected by this vulnerability is the function ODDLParser::getNextSeparator in the library assimp/contrib/openddlparser/inclu…
CVE-2023-53543 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: vdpa: Add max vqp attr to vdpa_nl_policy for nlattr length check The vdpa_nl_policy structure is used to validate the nlattr when…
CVE-2025-39913 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: tcp_bpf: Call sk_msg_free() when tcp_bpf_send_verdict() fails to allocate psock->cork. syzbot reported the splat below. [0] The …
CVE-2025-7493 high 8.0 FIX rocky rheldebian debian 8mo ago RHSA-2025:17129: idm:DL1 security update (Important)
CVE-2025-39682 high 7.1 7.1 FIX rhel sles rocky 8mo ago Moderate: kernel security update
CVE-2025-11082 high 7.8 7.8 FIX debian debian sles gnu 8mo ago A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buff…
CVE-2025-11014 high 7.8 7.8 debian debian ogre3d 8mo ago A security flaw has been discovered in OGRECave Ogre up to 14.4.1. This issue affects the function STBIImageCodec::encode of the file /ogre/PlugIns/STBICodec/src/OgreSTBICodec.cpp of the component Im…
CVE-2025-10997 high 7.8 7.8 slesdebian debian openbabel 8mo ago A flaw has been found in Open Babel up to 3.1.1. Impacted is the function ChemKinFormat::CheckSpecies of the file /src/formats/chemkinformat.cpp. Executing manipulation can lead to heap-based buffer …
CVE-2025-10996 high 7.8 7.8 slesdebian debian openbabel 8mo ago A vulnerability was detected in Open Babel up to 3.1.1. This issue affects the function OBSmilesParser::ParseSmiles of the file /src/formats/smilesformat.cpp. Performing manipulation results in heap-…
CVE-2025-10995 high 7.8 7.8 slesdebian debian openbabel 8mo ago A security vulnerability has been detected in Open Babel up to 3.1.1. This vulnerability affects the function zlib_stream::basic_unzip_streambuf::underflow in the library /src/zipstreamimpl.h. Such m…
CVE-2025-10994 high 7.8 7.8 slesdebian debian openbabel 8mo ago A weakness has been identified in Open Babel up to 3.1.1. This affects the function GAMESSOutputFormat::ReadMolecule of the file gamessformat.cpp. This manipulation causes use after free. It is possi…
CVE-2025-59830 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-38001 high 8.0 FIX rhel slesdebian debian 9mo ago In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Address reentrant enqueue adding class to eltree twice Savino says: "We are writing to report that this rece…
CVE-2025-38000 high 8.0 FIX rhel slesdebian debian 9mo ago In the Linux kernel, the following vulnerability has been resolved: sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() When enqueuing the first packet to an HFSC class, hfsc_enqueu…
CVE-2025-39860 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free in l2cap_sock_cleanup_listen() syzbot reported the splat below without a repro. In the splat, a si…
CVE-2025-39853 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: i40e: Fix potential invalid access when MAC list is empty list_first_entry() never returns NULL - if the list is empty, it still …
CVE-2025-39839 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix OOB read/write in network-coding decode batadv_nc_skb_decode_packet() trusts coded_len and checks only against sk…
CVE-2025-32988 high 8.2 8.2 FIX rhel rockydebian debian gnuredhat 9mo ago RHSA-2025:17415: gnutls security, bug fix, and enhancement update (Moderate)
CVE-2025-10537 high 8.0 FIX rhel rockydebian debian 9mo ago Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…
CVE-2025-10536 high 8.0 FIX rhel rockydebian debian 9mo ago Information disclosure in the Networking: Cache component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10533 high 8.0 FIX rhel rockydebian debian 9mo ago Integer overflow in the SVG component. This vulnerability was fixed in Firefox 143, Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10532 high 8.0 FIX rhel rockydebian debian 9mo ago Incorrect boundary conditions in the JavaScript: GC component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10529 high 8.0 FIX rhel rockydebian debian 9mo ago Same-origin policy bypass in the Layout component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10528 high 8.0 FIX rhel rockydebian debian 9mo ago Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10527 high 8.0 FIX rhel rockydebian debian 9mo ago Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-4953 high 8.0 FIX rockydebian debian sles 9mo ago RHSA-2025:15904: container-tools:rhel8 security update (Important)
CVE-2025-39835 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: xfs: do not propagate ENODATA disk errors into xattr code ENODATA (aka ENOATTR) has a very specific meaning in the xfs xattr code…
CVE-2025-39828 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: atm: atmtcp: Prevent arbitrary write in atmtcp_recv_control(). syzbot reported the splat below. [0] When atmtcp_v_open() or atmt…
CVE-2025-39826 high 7.0 7.0 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: net: rose: convert 'use' field to refcount_t The 'use' field in struct rose_neigh is used as a reference counter but lacks atomic…
CVE-2025-39824 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix UAF via HID_CLAIMED_INPUT validation After hid_hw_start() is called hidinput_connect() will eventually be called t…
CVE-2025-39823 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: KVM: x86: use array_index_nospec with indices that come from guest min and dest_id are guest-controlled indices. Using array_inde…
CVE-2025-9566 high 8.1 8.1 FIX rocky rheldebian debian 9mo ago RHSA-2025:15904: container-tools:rhel8 security update (Important)
CVE-2025-39790 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpected TREs When a remote device sends a completion event to the host, it contains …
CVE-2025-39788 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS_TYPE On Google gs101, the number of UTP transfer request slots (nutrs) is 32…
CVE-2025-39783 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handling Doing a list_del() on the epf_group field of struct pci_epf_driver in pci_ep…
CVE-2025-39776 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at destroy_args() The mm/debug_vm_pagetable test allocates manually page table entr…
CVE-2025-39759 high 7.0 7.0 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix race between quota disable and quota rescan ioctl There's a race between a task disabling quotas and another r…
CVE-2025-39749 high 7.0 7.0 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: rcu: Protect ->defer_qs_iw_pending from data race On kernels built with CONFIG_IRQ_WORK=y, when rcu_read_unlock() is invoked with…
CVE-2025-39743 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: jfs: truncate good inode pages when hard link is 0 The fileset value of the inode copy from the disk by the reproducer is AGGR_RE…
CVE-2025-39738 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: btrfs: do not allow relocation of partially dropped subvolumes [BUG] There is an internal report that balance triggered transacti…
CVE-2025-58060 high 8.0 FIX rhel rockydebian debian 9mo ago RHSA-2025:15702: cups security update (Important)
CVE-2025-38449 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38352 high 9.5 KEVFIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38332 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38392 high 8.0 FIX rhel slesdebian debian 9mo ago Important: kernel security update
CVE-2025-37803 high 8.0 FIX rhel slesdebian debian 9mo ago Important: kernel security update
CVE-2025-39719 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: iio: imu: bno055: fix OOB access of hw_xlate array Fix a potential out-of-bounds array access of the hw_xlate array in bno055.c. …
CVE-2025-39710 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: media: venus: Add a check for packet size after reading from shared memory Add a check to ensure that the packet size does not ex…
CVE-2025-39701 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: ACPI: pfr_update: Fix the driver update version check The security-version-number check should be used rather than the runtime ve…
CVE-2025-39691 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fs/buffer: fix use-after-free when call bh_read() helper There's issue as follows: BUG: KASAN: stack-out-of-bounds in end_buffer_…
CVE-2025-39689 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: ftrace: Also allocate and copy hash for reading of filter files Currently the reader of set_ftrace_filter and set_ftrace_notrace …
CVE-2025-39687 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: iio: light: as73211: Ensure buffer holes are zeroed Given that the buffer is copied to a kfifo that ultimately user space can rea…
CVE-2025-39686 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: comedi: Make insn_rw_emulate_bits() do insn->n samples The `insn_rw_emulate_bits()` function is used as a default handler for `IN…
CVE-2025-39685 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: comedi: pcl726: Prevent invalid irq number The reproducer passed in an irq number(0x80008000) that was too large, which triggered…
CVE-2025-39683 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: tracing: Limit access to parser->buffer when trace_get_user failed When the length of the string written to set_ftrace_filter exc…
CVE-2025-38736 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: net: usb: asix_devices: Fix PHY address mask in MDIO bus initialization Syzbot reported shift-out-of-bounds exception on MDIO bus…
CVE-2025-38729 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 power domain descriptors, too UAC3 power domain descriptors need to be verified with its variable …
CVE-2025-38728 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: smb3: fix for slab out of bounds on mount to ksmbd With KASAN enabled, it is possible to get a slab out of bounds during mount to…
CVE-2025-38715 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: hfs: fix slab-out-of-bounds in hfs_bnode_read() This patch introduces is_bnode_offset_valid() method that checks the requested of…
CVE-2025-38714 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds in hfsplus_bnode_read() The hfsplus_bnode_read() method can trigger the issue: [ 174.852007][ T…
CVE-2025-38713 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() The hfsplus_readdir() method is capable to crash by calling hfsplus_uni…
CVE-2025-38708 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: drbd: add missing kref_get in handle_write_conflicts With `two-primaries` enabled, DRBD tries to detect "concurrent" writes and h…
CVE-2025-38707 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add sanity check for file name The length of the file name should be smaller than the directory entry size.
CVE-2025-38702 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fbdev: fix potential buffer overflow in do_register_framebuffer() The current implementation may lead to buffer overflow when: 1.…
CVE-2025-38699 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: scsi: bfa: Double-free fix When the bfad_im_probe() function fails during initialization, the memory pointed to by bfad->im is fr…
CVE-2025-38697 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: jfs: upper bound check of tree index in dbAllocAG When computing the tree index in dbAllocAG, we never check if we are out of bou…
CVE-2025-38685 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit This issue triggers when a userspace program does an ioctl FBIOPUT_CON2F…
CVE-2025-38680 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix 1-byte out-of-bounds read in uvc_parse_format() The buffer length check before calling uvc_parse_format() on…
CVE-2025-38679 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: media: venus: Fix OOB read due to missing payload bound check Currently, The event_seq_changed() handler processes a variable num…
CVE-2025-8941 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:14557: pam security update (Important)
CVE-2025-6020 high 7.8 7.8 FIX arch arch rhel rocky 9mo ago Important: pam security update
CVE-2025-8067 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15017: udisks2 security update (Important)
CVE-2025-38500 high 7.8 7.8 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38464 high 8.0 FIX almalinux almalinux rhel rocky 9mo ago Important: kernel security update
CVE-2025-38461 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38350 high 7.8 7.8 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38211 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38200 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-37823 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38677 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in dnode page As Jiaming Zhang reported: <TASK> __dump_stack lib/dump_stack.c:94 [in…
CVE-2024-58240 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: tls: separate no-async decryption request handling from async If we're not doing async, the handling is much simpler. There's no …