Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 26

Количество 26

fstec логотип

BDU:2025-12276

больше 1 года назад

Уязвимость компонента acpi ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
EPSS: Низкий
redos логотип

ROS-20260121-80-0021

8 месяцев назад

Уязвимость kernel-lt

CVSS3: 5.5
EPSS: Низкий
redos логотип

ROS-20260121-73-0036

8 месяцев назад

Уязвимость kernel-lt

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2025-22044

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 7.1
EPSS: Низкий
redhat логотип

CVE-2025-22044

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2025-22044

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2025-22044

7 месяцев назад

acpi: nfit: fix narrowing conversion in acpi_nfit_ctl

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2025-22044

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: a ...

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-65j3-jrj3-4mgp

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 5.5
EPSS: Низкий
altlinux логотип

ALT-PU-2025-16453

больше 1 года назад

ALT-PU-2025-16453: package `kernel-image-pine` update to version 6.12.23-alt2

CVSS3: 9.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-6606

больше 1 года назад

ALT-PU-2025-6606: package `kernel-image-rt` update to version 5.10.237-alt1.rt131

CVSS3: 7.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-6382

больше 1 года назад

ALT-PU-2025-6382: package `kernel-image-std-def` update to version 5.10.237-alt1

CVSS3: 7.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-5774

больше 1 года назад

ALT-PU-2025-5774: package `kernel-image-6.12` update to version 6.12.24-alt1

CVSS3: 9.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-7195

больше 1 года назад

ALT-PU-2025-7195: package `kernel-image-un-def` update to version 6.1.140-alt1

CVSS3: 9.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-5786

больше 1 года назад

ALT-PU-2025-5786: package `kernel-image-rt` update to version 6.12.24-alt1

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01972-1

больше 1 года назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01707-1

больше 1 года назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01614-1

больше 1 года назад

Security update for the Linux Kernel

EPSS: Низкий
altlinux логотип

ALT-PU-2025-12647

12 месяцев назад

ALT-PU-2025-12647: package `kernel-image-rpi-un` update to version 6.12.49-alt1

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01951-1

больше 1 года назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-12276

Уязвимость компонента acpi ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
больше 1 года назад
redos логотип
ROS-20260121-80-0021

Уязвимость kernel-lt

CVSS3: 5.5
8 месяцев назад
redos логотип
ROS-20260121-73-0036

Уязвимость kernel-lt

CVSS3: 5.5
8 месяцев назад
ubuntu логотип
CVE-2025-22044

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 7.1
больше 1 года назад
redhat логотип
CVE-2025-22044

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 5.5
больше 1 года назад
nvd логотип
CVE-2025-22044

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 7.1
больше 1 года назад
msrc логотип
CVE-2025-22044

acpi: nfit: fix narrowing conversion in acpi_nfit_ctl

CVSS3: 5.5
7 месяцев назад
debian логотип
CVE-2025-22044

In the Linux kernel, the following vulnerability has been resolved: a ...

CVSS3: 7.1
больше 1 года назад
github логотип
GHSA-65j3-jrj3-4mgp

In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: fix narrowing conversion in acpi_nfit_ctl Syzkaller has reported a warning in to_nfit_bus_uuid(): "only secondary bus families can be translated". This warning is emited if the argument is equal to NVDIMM_BUS_FAMILY_NFIT == 0. Function acpi_nfit_ctl() first verifies that a user-provided value call_pkg->nd_family of type u64 is not equal to 0. Then the value is converted to int, and only after that is compared to NVDIMM_BUS_FAMILY_MAX. This can lead to passing an invalid argument to acpi_nfit_ctl(), if call_pkg->nd_family is non-zero, while the lower 32 bits are zero. Furthermore, it is best to return EINVAL immediately upon seeing the invalid user input. The WARNING is insufficient to prevent further undefined behavior based on other invalid user input. All checks of the input value should be applied to the original variable call_pkg->nd_family. [iweiny: update commit message]

CVSS3: 5.5
больше 1 года назад
altlinux логотип
ALT-PU-2025-16453

ALT-PU-2025-16453: package `kernel-image-pine` update to version 6.12.23-alt2

CVSS3: 9.8
больше 1 года назад
altlinux логотип
ALT-PU-2025-6606

ALT-PU-2025-6606: package `kernel-image-rt` update to version 5.10.237-alt1.rt131

CVSS3: 7.8
больше 1 года назад
altlinux логотип
ALT-PU-2025-6382

ALT-PU-2025-6382: package `kernel-image-std-def` update to version 5.10.237-alt1

CVSS3: 7.8
больше 1 года назад
altlinux логотип
ALT-PU-2025-5774

ALT-PU-2025-5774: package `kernel-image-6.12` update to version 6.12.24-alt1

CVSS3: 9.8
больше 1 года назад
altlinux логотип
ALT-PU-2025-7195

ALT-PU-2025-7195: package `kernel-image-un-def` update to version 6.1.140-alt1

CVSS3: 9.8
больше 1 года назад
altlinux логотип
ALT-PU-2025-5786

ALT-PU-2025-5786: package `kernel-image-rt` update to version 6.12.24-alt1

CVSS3: 9.8
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01972-1

Security update for the Linux Kernel

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01707-1

Security update for the Linux Kernel

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01614-1

Security update for the Linux Kernel

больше 1 года назад
altlinux логотип
ALT-PU-2025-12647

ALT-PU-2025-12647: package `kernel-image-rpi-un` update to version 6.12.49-alt1

CVSS3: 9.8
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01951-1

Security update for the Linux Kernel

больше 1 года назад

Уязвимостей на страницу