Количество 19 637
Количество 19 637
CVE-2025-23359
NVIDIA Container Toolkit for Linux contains a Time-of-Check Time-of-Use (TOCTOU) vulnerability when used with default configuration, where a crafted container image could gain access to the host file system. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
CVE-2025-23266
NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and denial of service.
CVE-2025-23167
CVE-2025-23166
CVE-2025-23165
CVE-2025-23163
net: vlan: don't propagate flags on open
CVE-2025-23161
PCI: vmd: Make vmd_dev::cfg_lock a raw_spinlock_t type
CVE-2025-23159
media: venus: hfi: add a check to handle OOB in sfr region
CVE-2025-23158
media: venus: hfi: add check to handle incorrect queue size
CVE-2025-23157
media: venus: hfi_parser: add check to avoid out of bound access
CVE-2025-23156
media: venus: hfi_parser: refactor hfi packet parsing logic
CVE-2025-23155
net: stmmac: Fix accessing freed irq affinity_hint
CVE-2025-23150
ext4: fix off-by-one error in do_split
CVE-2025-23148
soc: samsung: exynos-chipid: Add NULL pointer check in exynos_chipid_probe()
CVE-2025-23147
i3c: Add NULL pointer check in i3c_master_queue_ibi()
CVE-2025-23146
mfd: ene-kb3930: Fix a potential NULL pointer dereference
CVE-2025-23145
mptcp: fix NULL pointer in can_accept_new_subflow
CVE-2025-23144
backlight: led_bl: Hold led_access lock when calling led_sysfs_disable()
CVE-2025-23143
net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod.
CVE-2025-23142
sctp: detect and prevent references to a freed transport in sendmsg
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-23359 NVIDIA Container Toolkit for Linux contains a Time-of-Check Time-of-Use (TOCTOU) vulnerability when used with default configuration, where a crafted container image could gain access to the host file system. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. | CVSS3: 8.3 | 4% Низкий | около 1 года назад | |
CVE-2025-23266 NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and denial of service. | CVSS3: 9 | 0% Низкий | около 2 месяцев назад | |
CVSS3: 6.5 | 0% Низкий | 4 месяца назад | ||
CVSS3: 7.5 | 0% Низкий | 9 месяцев назад | ||
CVSS3: 3.7 | 0% Низкий | 9 месяцев назад | ||
CVE-2025-23163 net: vlan: don't propagate flags on open | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23161 PCI: vmd: Make vmd_dev::cfg_lock a raw_spinlock_t type | CVSS3: 3.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-23159 media: venus: hfi: add a check to handle OOB in sfr region | CVSS3: 5.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-23158 media: venus: hfi: add check to handle incorrect queue size | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23157 media: venus: hfi_parser: add check to avoid out of bound access | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23156 media: venus: hfi_parser: refactor hfi packet parsing logic | CVSS3: 5.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-23155 net: stmmac: Fix accessing freed irq affinity_hint | 0% Низкий | 7 месяцев назад | ||
CVE-2025-23150 ext4: fix off-by-one error in do_split | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23148 soc: samsung: exynos-chipid: Add NULL pointer check in exynos_chipid_probe() | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23147 i3c: Add NULL pointer check in i3c_master_queue_ibi() | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23146 mfd: ene-kb3930: Fix a potential NULL pointer dereference | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23145 mptcp: fix NULL pointer in can_accept_new_subflow | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23144 backlight: led_bl: Hold led_access lock when calling led_sysfs_disable() | CVSS3: 5.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-23143 net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod. | CVSS3: 5.5 | 0% Низкий | 5 месяцев назад | |
CVE-2025-23142 sctp: detect and prevent references to a freed transport in sendmsg | CVSS3: 5.5 | 0% Низкий | 9 месяцев назад |
Уязвимостей на страницу