Количество 55
Количество 55
CVE-2025-39757
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses.
CVE-2025-39757
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses.
CVE-2025-39757
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses.
CVE-2025-39757
ALSA: usb-audio: Validate UAC3 cluster segment descriptors
CVE-2025-39757
In the Linux kernel, the following vulnerability has been resolved: A ...
GHSA-55f8-prfx-mfvw
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Decrement TID on RX peer frag setup error handling Currently, TID is not decremented before peer cleanup, during error handling path of ath12k_dp_rx_peer_frag_setup(). This could lead to out-of-bounds access in peer->rx_tid[]. Hence, add a decrement operation for TID, before peer cleanup to ensures proper cleanup and prevents out-of-bounds access issues when the RX peer frag setup fails. Found during code review. Compile tested only.
BDU:2025-15698
Уязвимость компонента drivers/net/wireless/ath/ath12k ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
ELSA-2025-21063
ELSA-2025-21063: kernel security update (MODERATE)
GHSA-jrpg-g4vf-p4hw
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses.
BDU:2025-15543
Уязвимость ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2025:3751-1
Security update for the Linux Kernel
SUSE-SU-2025:03600-1
Security update for the Linux Kernel
SUSE-SU-2025:03634-1
Security update for the Linux Kernel
ROS-20260408-80-0021
Уязвимость kernel-lt
ROS-20260408-73-0016
Уязвимость kernel-lt
ELSA-2025-17377
ELSA-2025-17377: kernel security update (MODERATE)
openSUSE-SU-2025:20081-1
Security update for the Linux Kernel
openSUSE-SU-2025-20011-1
Security update for the Linux Kernel
ELSA-2025-18297
ELSA-2025-18297: kernel security update (MODERATE)
ELSA-2025-23947
ELSA-2025-23947: kernel security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-39757 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses. | CVSS3: 7.1 | 0% Низкий | около 1 года назад | |
CVE-2025-39757 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses. | CVSS3: 7.1 | 0% Низкий | около 1 года назад | |
CVE-2025-39757 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses. | CVSS3: 7.1 | 0% Низкий | около 1 года назад | |
CVE-2025-39757 ALSA: usb-audio: Validate UAC3 cluster segment descriptors | CVSS3: 7.8 | 0% Низкий | около 1 года назад | |
CVE-2025-39757 In the Linux kernel, the following vulnerability has been resolved: A ... | CVSS3: 7.1 | 0% Низкий | около 1 года назад | |
GHSA-55f8-prfx-mfvw In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Decrement TID on RX peer frag setup error handling Currently, TID is not decremented before peer cleanup, during error handling path of ath12k_dp_rx_peer_frag_setup(). This could lead to out-of-bounds access in peer->rx_tid[]. Hence, add a decrement operation for TID, before peer cleanup to ensures proper cleanup and prevents out-of-bounds access issues when the RX peer frag setup fails. Found during code review. Compile tested only. | CVSS3: 7.1 | 0% Низкий | около 1 года назад | |
BDU:2025-15698 Уязвимость компонента drivers/net/wireless/ath/ath12k ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 7 | 0% Низкий | больше 1 года назад | |
ELSA-2025-21063 ELSA-2025-21063: kernel security update (MODERATE) | 9 месяцев назад | |||
GHSA-jrpg-g4vf-p4hw In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment descriptors UAC3 class segment descriptors need to be verified whether their sizes match with the declared lengths and whether they fit with the allocated buffer sizes, too. Otherwise malicious firmware may lead to the unexpected OOB accesses. | CVSS3: 7.1 | 0% Низкий | около 1 года назад | |
BDU:2025-15543 Уязвимость ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.5 | 0% Низкий | около 1 года назад | |
SUSE-SU-2025:3751-1 Security update for the Linux Kernel | 11 месяцев назад | |||
SUSE-SU-2025:03600-1 Security update for the Linux Kernel | 11 месяцев назад | |||
SUSE-SU-2025:03634-1 Security update for the Linux Kernel | 11 месяцев назад | |||
ROS-20260408-80-0021 Уязвимость kernel-lt | CVSS3: 5.5 | 0% Низкий | 6 месяцев назад | |
ROS-20260408-73-0016 Уязвимость kernel-lt | CVSS3: 5.5 | 0% Низкий | 6 месяцев назад | |
ELSA-2025-17377 ELSA-2025-17377: kernel security update (MODERATE) | 12 месяцев назад | |||
openSUSE-SU-2025:20081-1 Security update for the Linux Kernel | 10 месяцев назад | |||
openSUSE-SU-2025-20011-1 Security update for the Linux Kernel | 11 месяцев назад | |||
ELSA-2025-18297 ELSA-2025-18297: kernel security update (MODERATE) | 11 месяцев назад | |||
ELSA-2025-23947 ELSA-2025-23947: kernel security update (MODERATE) | 8 месяцев назад |
Уязвимостей на страницу