Search

Found 12,393 results in 4340ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-39913 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: tcp_bpf: Call sk_msg_free() when tcp_bpf_send_verdict() fails to allocate psock->cork. syzbot reported the splat below. [0] The …
CVE-2025-7493 high 8.0 FIX rocky rheldebian debian 8mo ago RHSA-2025:17129: idm:DL1 security update (Important)
CVE-2025-39682 high 7.1 7.1 FIX rhel sles rocky 8mo ago Moderate: kernel security update
CVE-2025-11082 high 7.8 7.8 FIX debian debian sles gnu 8mo ago A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buff…
CVE-2025-11014 high 7.8 7.8 debian debian ogre3d 8mo ago A security flaw has been discovered in OGRECave Ogre up to 14.4.1. This issue affects the function STBIImageCodec::encode of the file /ogre/PlugIns/STBICodec/src/OgreSTBICodec.cpp of the component Im…
CVE-2025-10997 high 7.8 7.8 slesdebian debian openbabel 8mo ago A flaw has been found in Open Babel up to 3.1.1. Impacted is the function ChemKinFormat::CheckSpecies of the file /src/formats/chemkinformat.cpp. Executing manipulation can lead to heap-based buffer …
CVE-2025-10996 high 7.8 7.8 slesdebian debian openbabel 8mo ago A vulnerability was detected in Open Babel up to 3.1.1. This issue affects the function OBSmilesParser::ParseSmiles of the file /src/formats/smilesformat.cpp. Performing manipulation results in heap-…
CVE-2025-10995 high 7.8 7.8 slesdebian debian openbabel 8mo ago A security vulnerability has been detected in Open Babel up to 3.1.1. This vulnerability affects the function zlib_stream::basic_unzip_streambuf::underflow in the library /src/zipstreamimpl.h. Such m…
CVE-2025-10994 high 7.8 7.8 slesdebian debian openbabel 8mo ago A weakness has been identified in Open Babel up to 3.1.1. This affects the function GAMESSOutputFormat::ReadMolecule of the file gamessformat.cpp. This manipulation causes use after free. It is possi…
CVE-2025-59830 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-38001 high 8.0 FIX rhel slesdebian debian 9mo ago In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Address reentrant enqueue adding class to eltree twice Savino says: "We are writing to report that this rece…
CVE-2025-38000 high 8.0 FIX rhel slesdebian debian 9mo ago In the Linux kernel, the following vulnerability has been resolved: sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() When enqueuing the first packet to an HFSC class, hfsc_enqueu…
CVE-2025-39860 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free in l2cap_sock_cleanup_listen() syzbot reported the splat below without a repro. In the splat, a si…
CVE-2025-39853 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: i40e: Fix potential invalid access when MAC list is empty list_first_entry() never returns NULL - if the list is empty, it still …
CVE-2025-39839 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix OOB read/write in network-coding decode batadv_nc_skb_decode_packet() trusts coded_len and checks only against sk…
CVE-2025-32988 high 8.2 8.2 FIX rhel rockydebian debian gnuredhat 9mo ago RHSA-2025:17415: gnutls security, bug fix, and enhancement update (Moderate)
CVE-2025-10537 high 8.0 FIX rhel rockydebian debian 9mo ago Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…
CVE-2025-10536 high 8.0 FIX rhel rockydebian debian 9mo ago Information disclosure in the Networking: Cache component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10533 high 8.0 FIX rhel rockydebian debian 9mo ago Integer overflow in the SVG component. This vulnerability was fixed in Firefox 143, Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10532 high 8.0 FIX rhel rockydebian debian 9mo ago Incorrect boundary conditions in the JavaScript: GC component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10529 high 8.0 FIX rhel rockydebian debian 9mo ago Same-origin policy bypass in the Layout component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10528 high 8.0 FIX rhel rockydebian debian 9mo ago Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10527 high 8.0 FIX rhel rockydebian debian 9mo ago Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-4953 high 8.0 FIX rockydebian debian sles 9mo ago RHSA-2025:15904: container-tools:rhel8 security update (Important)
CVE-2025-39835 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: xfs: do not propagate ENODATA disk errors into xattr code ENODATA (aka ENOATTR) has a very specific meaning in the xfs xattr code…
CVE-2025-39828 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: atm: atmtcp: Prevent arbitrary write in atmtcp_recv_control(). syzbot reported the splat below. [0] When atmtcp_v_open() or atmt…
CVE-2025-39826 high 7.0 7.0 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: net: rose: convert 'use' field to refcount_t The 'use' field in struct rose_neigh is used as a reference counter but lacks atomic…
CVE-2025-39824 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix UAF via HID_CLAIMED_INPUT validation After hid_hw_start() is called hidinput_connect() will eventually be called t…
CVE-2025-39823 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: KVM: x86: use array_index_nospec with indices that come from guest min and dest_id are guest-controlled indices. Using array_inde…
CVE-2025-9566 high 8.1 8.1 FIX rocky rheldebian debian 9mo ago RHSA-2025:15904: container-tools:rhel8 security update (Important)
CVE-2025-39790 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpected TREs When a remote device sends a completion event to the host, it contains …
CVE-2025-39788 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS_TYPE On Google gs101, the number of UTP transfer request slots (nutrs) is 32…
CVE-2025-39783 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handling Doing a list_del() on the epf_group field of struct pci_epf_driver in pci_ep…
CVE-2025-39776 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at destroy_args() The mm/debug_vm_pagetable test allocates manually page table entr…
CVE-2025-39759 high 7.0 7.0 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix race between quota disable and quota rescan ioctl There's a race between a task disabling quotas and another r…
CVE-2025-39749 high 7.0 7.0 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: rcu: Protect ->defer_qs_iw_pending from data race On kernels built with CONFIG_IRQ_WORK=y, when rcu_read_unlock() is invoked with…
CVE-2025-39743 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: jfs: truncate good inode pages when hard link is 0 The fileset value of the inode copy from the disk by the reproducer is AGGR_RE…
CVE-2025-39738 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: btrfs: do not allow relocation of partially dropped subvolumes [BUG] There is an internal report that balance triggered transacti…
CVE-2025-58060 high 8.0 FIX rhel rockydebian debian 9mo ago RHSA-2025:15702: cups security update (Important)
CVE-2025-38449 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38352 high 9.5 KEVFIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38332 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38392 high 8.0 FIX rhel slesdebian debian 9mo ago Important: kernel security update
CVE-2025-37803 high 8.0 FIX rhel slesdebian debian 9mo ago Important: kernel security update
CVE-2025-39719 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: iio: imu: bno055: fix OOB access of hw_xlate array Fix a potential out-of-bounds array access of the hw_xlate array in bno055.c. …
CVE-2025-39710 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: media: venus: Add a check for packet size after reading from shared memory Add a check to ensure that the packet size does not ex…
CVE-2025-39701 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: ACPI: pfr_update: Fix the driver update version check The security-version-number check should be used rather than the runtime ve…
CVE-2025-39691 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fs/buffer: fix use-after-free when call bh_read() helper There's issue as follows: BUG: KASAN: stack-out-of-bounds in end_buffer_…
CVE-2025-39689 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: ftrace: Also allocate and copy hash for reading of filter files Currently the reader of set_ftrace_filter and set_ftrace_notrace …
CVE-2025-39687 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: iio: light: as73211: Ensure buffer holes are zeroed Given that the buffer is copied to a kfifo that ultimately user space can rea…
CVE-2025-39686 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: comedi: Make insn_rw_emulate_bits() do insn->n samples The `insn_rw_emulate_bits()` function is used as a default handler for `IN…
CVE-2025-39685 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: comedi: pcl726: Prevent invalid irq number The reproducer passed in an irq number(0x80008000) that was too large, which triggered…
CVE-2025-39683 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: tracing: Limit access to parser->buffer when trace_get_user failed When the length of the string written to set_ftrace_filter exc…
CVE-2025-38736 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: net: usb: asix_devices: Fix PHY address mask in MDIO bus initialization Syzbot reported shift-out-of-bounds exception on MDIO bus…
CVE-2025-38729 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 power domain descriptors, too UAC3 power domain descriptors need to be verified with its variable …
CVE-2025-38728 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: smb3: fix for slab out of bounds on mount to ksmbd With KASAN enabled, it is possible to get a slab out of bounds during mount to…
CVE-2025-38715 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: hfs: fix slab-out-of-bounds in hfs_bnode_read() This patch introduces is_bnode_offset_valid() method that checks the requested of…
CVE-2025-38714 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds in hfsplus_bnode_read() The hfsplus_bnode_read() method can trigger the issue: [ 174.852007][ T…
CVE-2025-38713 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() The hfsplus_readdir() method is capable to crash by calling hfsplus_uni…
CVE-2025-38708 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: drbd: add missing kref_get in handle_write_conflicts With `two-primaries` enabled, DRBD tries to detect "concurrent" writes and h…
CVE-2025-38707 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add sanity check for file name The length of the file name should be smaller than the directory entry size.
CVE-2025-38702 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fbdev: fix potential buffer overflow in do_register_framebuffer() The current implementation may lead to buffer overflow when: 1.…
CVE-2025-38699 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: scsi: bfa: Double-free fix When the bfad_im_probe() function fails during initialization, the memory pointed to by bfad->im is fr…
CVE-2025-38697 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: jfs: upper bound check of tree index in dbAllocAG When computing the tree index in dbAllocAG, we never check if we are out of bou…
CVE-2025-38685 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit This issue triggers when a userspace program does an ioctl FBIOPUT_CON2F…
CVE-2025-38680 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix 1-byte out-of-bounds read in uvc_parse_format() The buffer length check before calling uvc_parse_format() on…
CVE-2025-38679 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: media: venus: Fix OOB read due to missing payload bound check Currently, The event_seq_changed() handler processes a variable num…
CVE-2025-8941 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:14557: pam security update (Important)
CVE-2025-6020 high 7.8 7.8 FIX arch arch rhel rocky 9mo ago Important: pam security update
CVE-2025-8067 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15017: udisks2 security update (Important)
CVE-2025-38500 high 7.8 7.8 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38464 high 8.0 FIX almalinux almalinux rhel rocky 9mo ago Important: kernel security update
CVE-2025-38461 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38350 high 7.8 7.8 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38211 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38200 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-37823 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38677 high 7.1 7.1 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in dnode page As Jiaming Zhang reported: <TASK> __dump_stack lib/dump_stack.c:94 [in…
CVE-2024-58240 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: tls: separate no-async decryption request handling from async If we're not doing async, the handling is much simpler. There's no …
CVE-2025-8715 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15115: postgresql:12 security update (Important)
CVE-2025-8714 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15115: postgresql:12 security update (Important)
CVE-2025-8713 high 8.0 FIX rhel slesdebian debian 9mo ago PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access. Separately, statistics allow a user to read sampled data that a row security policy inten…
CVE-2025-4207 high 8.0 FIX arch arch rhel sles 9mo ago RHSA-2025:15022: postgresql:15 security update (Important)
CVE-2025-38676 high 7.8 7.8 FIX slesdebian debian linux-kernel 9mo ago In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Avoid stack buffer overflow from kernel cmdline While the kernel command line is considered trusted in most environmen…
CVE-2025-9185 high 8.0 FIX rhel rockydebian debian 10mo ago Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbird ESR 128.13, Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these bugs showed evid…
CVE-2025-9182 high 8.0 FIX rhel rockydebian debian 10mo ago Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderbird 142, and Thunderbird 140.2.
CVE-2025-9181 high 8.0 FIX rhel rockydebian debian 10mo ago Uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 142, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
CVE-2025-9180 high 8.0 FIX rhel rockydebian debian 10mo ago Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128…
CVE-2025-9179 high 8.0 FIX rhel rockydebian debian 10mo ago An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is also heavily sandboxed, but represents slightly different privileges from the con…
CVE-2025-54389 high 8.0 FIX debian debian rhel rocky 10mo ago RHSA-2025:14573: aide security update (Important)
CVE-2025-38417 high 8.0 FIX rhel sles rocky 10mo ago Important: kernel security update
CVE-2025-37914 high 8.0 FIX rhel sles rocky 10mo ago Important: kernel security update
CVE-2025-22058 high 8.0 FIX rhel sles rocky 10mo ago Important: kernel security update
CVE-2025-38670 high 7.1 7.1 FIX slesdebian debian linux-kernel 10mo ago In the Linux kernel, the following vulnerability has been resolved: arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack() `cpu_switch_to()` and `call_on_irq_stack()` manipulate SP to chang…
CVE-2025-38627 high 7.8 7.8 FIX slesdebian debian linux-kernel 10mo ago In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix UAF of f2fs_inode_info in f2fs_free_dic The decompress_io_ctx may be released asynchronously after I/O comple…
CVE-2025-9300 high 7.8 7.8 FIX debian debian saitoha 10mo ago A vulnerability was found in saitoha libsixel up to 1.10.3. Affected by this issue is the function sixel_debug_print_palette of the file src/encoder.c of the component img2sixel. The manipulation res…
CVE-2025-5914 high 7.8 7.8 FIX rhel rockydebian debian 10mo ago A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to…
CVE-2025-53506 high 8.0 FIX rhel rocky sles 10mo ago Uncontrolled Resource Consumption vulnerability in Apache Tomcat if an HTTP/2 client did not acknowledge the initial settings frame that reduces the maximum permitted concurrent streams. This issue …
CVE-2025-52520 high 8.0 FIX rhel rocky sles 10mo ago For some unlikely configurations of multipart upload, an Integer Overflow vulnerability in Apache Tomcat could lead to a DoS via bypassing of size limits. This issue affects Apache Tomcat: from 11.0…
CVE-2025-52434 high 8.0 FIX rhel rocky sles 10mo ago Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in Apache Tomcat when using the APR/Native connector. This was particularly noticeable with c…