Количество 26 124
Количество 26 124
CVE-2025-68973
In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.)
CVE-2025-68972
In GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an "invalid armor" message is printed during verification). This is related to use of \f as a marker to denote truncation of a long plaintext line.
CVE-2025-68823
ublk: fix deadlock when reading partition table
CVE-2025-68822
Input: alps - fix use-after-free bugs caused by dev3_register_work
CVE-2025-68819
media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg()
CVE-2025-68818
scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path"
CVE-2025-68817
ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency
CVE-2025-68816
net/mlx5: fw_tracer, Validate format string parameters
CVE-2025-68815
net/sched: ets: Remove drr class from the active list if it changes to strict
CVE-2025-68814
io_uring: fix filename leak in __io_openat_prep()
CVE-2025-68809
ksmbd: vfs: fix race on m_flags in vfs_cache
CVE-2025-68808
media: vidtv: initialize local pointers upon transfer of memory ownership
CVE-2025-68806
ksmbd: fix buffer validation by including null terminator size in EA length
CVE-2025-68803
NFSD: NFSv4 file creation neglects setting ACL
CVE-2025-68801
mlxsw: spectrum_router: Fix neighbour use-after-free
CVE-2025-68800
mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats
CVE-2025-68799
caif: fix integer underflow in cffrml_receive()
CVE-2025-68798
perf/x86/amd: Check event before enable to avoid GPF
CVE-2025-68797
char: applicom: fix NULL pointer dereference in ac_ioctl
CVE-2025-68796
f2fs: fix to avoid updating zero-sized extent in extent cache
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-68973 In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.) | CVSS3: 7.8 | 0% Низкий | 8 месяцев назад | |
CVE-2025-68972 In GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an "invalid armor" message is printed during verification). This is related to use of \f as a marker to denote truncation of a long plaintext line. | CVSS3: 5.9 | 0% Низкий | 8 месяцев назад | |
CVE-2025-68823 ublk: fix deadlock when reading partition table | 0% Низкий | 7 месяцев назад | ||
CVE-2025-68822 Input: alps - fix use-after-free bugs caused by dev3_register_work | 0% Низкий | 6 месяцев назад | ||
CVE-2025-68819 media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg() | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68818 scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path" | CVSS3: 5.5 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68817 ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency | CVSS3: 7.8 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68816 net/mlx5: fw_tracer, Validate format string parameters | CVSS3: 6.6 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68815 net/sched: ets: Remove drr class from the active list if it changes to strict | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68814 io_uring: fix filename leak in __io_openat_prep() | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68809 ksmbd: vfs: fix race on m_flags in vfs_cache | CVSS3: 6.3 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68808 media: vidtv: initialize local pointers upon transfer of memory ownership | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68806 ksmbd: fix buffer validation by including null terminator size in EA length | CVSS3: 5.5 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68803 NFSD: NFSv4 file creation neglects setting ACL | CVSS3: 5.5 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68801 mlxsw: spectrum_router: Fix neighbour use-after-free | CVSS3: 7.8 | 0% Низкий | 6 месяцев назад | |
CVE-2025-68800 mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68799 caif: fix integer underflow in cffrml_receive() | CVSS3: 5.3 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68798 perf/x86/amd: Check event before enable to avoid GPF | CVSS3: 5.8 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68797 char: applicom: fix NULL pointer dereference in ac_ioctl | CVSS3: 5.5 | 0% Низкий | 7 месяцев назад | |
CVE-2025-68796 f2fs: fix to avoid updating zero-sized extent in extent cache | CVSS3: 5 | 0% Низкий | 7 месяцев назад |
Уязвимостей на страницу