Логотип exploitDog
bind:"CVE-2025-38079" OR bind:"CVE-2025-38292"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-38079" OR bind:"CVE-2025-38292"

Количество 77

Количество 77

oracle-oval логотип

ELSA-2025-13602

3 месяца назад

ELSA-2025-13602: kernel security update (MODERATE)

EPSS: Низкий
rocky логотип

RLSA-2025:13598

около 1 месяца назад

Moderate: kernel security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-13598

3 месяца назад

ELSA-2025-13598: kernel security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2025-38292

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

EPSS: Низкий
redhat логотип

CVE-2025-38292

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2025-38292

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

EPSS: Низкий
msrc логотип

CVE-2025-38292

2 месяца назад

wifi: ath12k: fix invalid access to memory

EPSS: Низкий
debian логотип

CVE-2025-38292

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: w ...

EPSS: Низкий
ubuntu логотип

CVE-2025-38079

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

EPSS: Низкий
redhat логотип

CVE-2025-38079

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2025-38079

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

EPSS: Низкий
msrc логотип

CVE-2025-38079

3 месяца назад

crypto: algif_hash - fix double free in hash_accept

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2025-38079

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: c ...

EPSS: Низкий
github логотип

GHSA-mhmh-rgmh-rf63

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

EPSS: Низкий
fstec логотип

BDU:2025-08632

7 месяцев назад

Уязвимость функции ath12k_dp_rx_msdu_coalesce() модуля drivers/net/wireless/ath/ath12k/dp_rx.c ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-r6vx-mj26-9m2q

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

EPSS: Низкий
oracle-oval логотип

ELSA-2025-14987

около 2 месяцев назад

ELSA-2025-14987: kernel security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-12058

6 месяцев назад

Уязвимость функции hash_accept() компонента crypto/algif_hash.c ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02936-1

3 месяца назад

Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP4)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02933-1

3 месяца назад

Security update for the Linux Kernel (Live Patch 59 for SLE 15 SP3)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2025-13602

ELSA-2025-13602: kernel security update (MODERATE)

3 месяца назад
rocky логотип
RLSA-2025:13598

Moderate: kernel security update

около 1 месяца назад
oracle-oval логотип
ELSA-2025-13598

ELSA-2025-13598: kernel security update (MODERATE)

3 месяца назад
ubuntu логотип
CVE-2025-38292

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-38292

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

CVSS3: 7.3
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-38292

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

0%
Низкий
4 месяца назад
msrc логотип
CVE-2025-38292

wifi: ath12k: fix invalid access to memory

0%
Низкий
2 месяца назад
debian логотип
CVE-2025-38292

In the Linux kernel, the following vulnerability has been resolved: w ...

0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2025-38079

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-38079

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

CVSS3: 7
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-38079

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-38079

crypto: algif_hash - fix double free in hash_accept

CVSS3: 7
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-38079

In the Linux kernel, the following vulnerability has been resolved: c ...

0%
Низкий
5 месяцев назад
github логотип
GHSA-mhmh-rgmh-rf63

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxcb is fetched from skb and boolean is_continuation is part of rxcb. Currently, after freeing the skb, the rxcb->is_continuation accessed again which is wrong since the memory is already freed. This might lead use-after-free error. Hence, fix by locally defining bool is_continuation from rxcb, so that after freeing skb, is_continuation can be used. Compile tested only.

0%
Низкий
4 месяца назад
fstec логотип
BDU:2025-08632

Уязвимость функции ath12k_dp_rx_msdu_coalesce() модуля drivers/net/wireless/ath/ath12k/dp_rx.c ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.3
0%
Низкий
7 месяцев назад
github логотип
GHSA-r6vx-mj26-9m2q

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.

0%
Низкий
5 месяцев назад
oracle-oval логотип
ELSA-2025-14987

ELSA-2025-14987: kernel security update (MODERATE)

около 2 месяцев назад
fstec логотип
BDU:2025-12058

Уязвимость функции hash_accept() компонента crypto/algif_hash.c ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7
0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02936-1

Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP4)

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02933-1

Security update for the Linux Kernel (Live Patch 59 for SLE 15 SP3)

3 месяца назад

Уязвимостей на страницу