Количество 18 763
Количество 18 763
CVE-2025-7068
HDF5 H5FL.c H5FL__malloc memory leak
CVE-2025-7067
HDF5 H5FScache.c H5FS__sinfo_serialize_node_cb heap-based overflow
CVE-2025-7039
Glib: buffer under-read on glib through glib/gfileutils.c via get_tmp_file()
CVE-2025-6965
Integer Truncation on SQLite
CVE-2025-69277
libsodium before ad3004e, in atypical use cases involving certain custom cryptography or untrusted data to crypto_core_ed25519_is_valid_point, mishandles checks for whether an elliptic curve point is valid because it sometimes allows points that aren't in the main cryptographic group.
CVE-2025-68973
In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.)
CVE-2025-68972
In GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an "invalid armor" message is printed during verification). This is related to use of \f as a marker to denote truncation of a long plaintext line.
CVE-2025-68766
irqchip/mchp-eic: Fix error code in mchp_eic_domain_alloc()
CVE-2025-68765
mt76: mt7615: Fix memory leak in mt7615_mcu_wtbl_sta_add()
CVE-2025-68764
NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags
CVE-2025-68763
crypto: starfive - Correctly handle return of sg_nents_for_len
CVE-2025-68759
wifi: rtl818x: Fix potential memory leaks in rtl8180_init_rx_ring()
CVE-2025-68758
backlight: led-bl: Add devlink to supplier LEDs
CVE-2025-68757
drm/vgem-fence: Fix potential deadlock on release
CVE-2025-68756
block: Use RCU in blk_mq_[un]quiesce_tagset() instead of set->tag_list_lock
CVE-2025-68755
staging: most: remove broken i2c driver
CVE-2025-68753
ALSA: firewire-motu: add bounds check in put_user loop for DSP events
CVE-2025-68746
spi: tegra210-quad: Fix timeout handling
CVE-2025-68745
scsi: qla2xxx: Clear cmds after chip reset
CVE-2025-68744
bpf: Free special fields when update [lru_,]percpu_hash maps
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-7068 HDF5 H5FL.c H5FL__malloc memory leak | CVSS3: 3.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-7067 HDF5 H5FScache.c H5FS__sinfo_serialize_node_cb heap-based overflow | CVSS3: 3.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-7039 Glib: buffer under-read on glib through glib/gfileutils.c via get_tmp_file() | CVSS3: 3.7 | 0% Низкий | 5 месяцев назад | |
CVE-2025-6965 Integer Truncation on SQLite | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
CVE-2025-69277 libsodium before ad3004e, in atypical use cases involving certain custom cryptography or untrusted data to crypto_core_ed25519_is_valid_point, mishandles checks for whether an elliptic curve point is valid because it sometimes allows points that aren't in the main cryptographic group. | 0% Низкий | около 1 месяца назад | ||
CVE-2025-68973 In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.) | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2025-68972 In GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an "invalid armor" message is printed during verification). This is related to use of \f as a marker to denote truncation of a long plaintext line. | CVSS3: 5.9 | 0% Низкий | около 1 месяца назад | |
CVE-2025-68766 irqchip/mchp-eic: Fix error code in mchp_eic_domain_alloc() | 0% Низкий | 30 дней назад | ||
CVE-2025-68765 mt76: mt7615: Fix memory leak in mt7615_mcu_wtbl_sta_add() | 0% Низкий | 30 дней назад | ||
CVE-2025-68764 NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags | 0% Низкий | 30 дней назад | ||
CVE-2025-68763 crypto: starfive - Correctly handle return of sg_nents_for_len | 0% Низкий | 30 дней назад | ||
CVE-2025-68759 wifi: rtl818x: Fix potential memory leaks in rtl8180_init_rx_ring() | 0% Низкий | 30 дней назад | ||
CVE-2025-68758 backlight: led-bl: Add devlink to supplier LEDs | 0% Низкий | 30 дней назад | ||
CVE-2025-68757 drm/vgem-fence: Fix potential deadlock on release | 0% Низкий | 30 дней назад | ||
CVE-2025-68756 block: Use RCU in blk_mq_[un]quiesce_tagset() instead of set->tag_list_lock | 0% Низкий | 30 дней назад | ||
CVE-2025-68755 staging: most: remove broken i2c driver | 0% Низкий | 30 дней назад | ||
CVE-2025-68753 ALSA: firewire-motu: add bounds check in put_user loop for DSP events | 0% Низкий | 30 дней назад | ||
CVE-2025-68746 spi: tegra210-quad: Fix timeout handling | 0% Низкий | около 1 месяца назад | ||
CVE-2025-68745 scsi: qla2xxx: Clear cmds after chip reset | 0% Низкий | около 1 месяца назад | ||
CVE-2025-68744 bpf: Free special fields when update [lru_,]percpu_hash maps | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу