Posts of last 24 hours
A vulnerability classified as problematic has been found in Linux Kernel up to 6.6.88/6.12.25/6.14.4. Affected by this issue is the function xdp_prepare_buff of the component vmxnet3. Performing a manipulation results in uninitialized pointer.
This vulnerability is identified as CVE-2025-37799. The attack can only be performed from the local network. There is not any exploit available.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/307342
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.6.88/6.12.25/6.14.4/6.15-rc3. This affects the function dev_uevent of the component Driver Core. The manipulation results in null pointer dereference.
This vulnerability is known as CVE-2025-37800. Access to the local network is required for this attack. No exploit is available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/307981
A vulnerability identified as critical has been detected in Linux Kernel up to 6.1.135/6.6.88/6.12.25/6.14.4/6.15-rc2. This vulnerability affects the function spi_imx_setupxfer of the component spi. This manipulation causes null pointer dereference.
This vulnerability is handled as CVE-2025-37801. The attack can only be done within the local network. There is not any exploit available.
You should upgrade the affected component.
https://vuldb.com/vuln/307982
A vulnerability labeled as problematic has been found in Linux Kernel up to 6.12.25/6.14.4/6.15-rc2. This issue affects the function wait_event_timeout of the component ksmbd. Such manipulation leads to missing initialization of a variable.
This vulnerability is uniquely identified as CVE-2025-37802. The attack can only be initiated within the local network. No exploit exists.
The affected component should be upgraded.
https://vuldb.com/vuln/307983
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.12.25/6.14.4/6.15-rc3/2714ffdbb79b48dda03334a01af90fb024f39047. Affected is an unknown function of the component tty. Such manipulation leads to injection.
This vulnerability is listed as CVE-2025-37814. The attack must be carried out from within the local network. There is no available exploit.
You should upgrade the affected component.
https://vuldb.com/vuln/307989
A vulnerability was found in Linux Kernel up to 6.12.25/6.14.4/6.15-rc3. It has been classified as problematic. This affects the function test_progs of the component riscv. The manipulation leads to insufficiently random values.
This vulnerability is documented as CVE-2025-37822. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is recommended.
https://vuldb.com/vuln/307992
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.135/6.6.88/6.12.25/6.14.4/6.15-rc3. The impacted element is the function xdp_convert_buff_to_frame of the component xen-netfront. Executing a manipulation can lead to null pointer dereference.
This vulnerability is handled as CVE-2025-37820. The attack can only be done within the local network. There is not any exploit available.
The affected component should be upgraded.
https://vuldb.com/vuln/307997
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.6.88/6.12.25/6.14.4/6.15-rc3/4725344ca645a98a9d8e45e25b01a2244de5b8aa. This affects the function prepare_transfer of the component xhci. Executing a manipulation can lead to null pointer dereference.
This vulnerability is tracked as CVE-2025-37813. The attack is only possible within the local network. No exploit exists.
You should upgrade the affected component.
https://vuldb.com/vuln/308003
A vulnerability was found in Linux Kernel up to 6.15-rc3. It has been declared as critical. The affected element is the function hfsc_dequeue of the component net_sched. Such manipulation leads to use after free.
This vulnerability is documented as CVE-2025-37823. The attack requires being on the local network. There is not any exploit available.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/308007
知道创宇404实验室星链计划项目更新情况。
https://mp.weixin.qq.com/s?__biz=MzAxNDY2MTQ2OQ==&mid=2650991146&idx=1&sn=e86b592e299e155e218f66d17978345c