CVE-2025-21819 – AMD Display System Hang Vulnerability

The following table lists the changes that have been made to the CVE-2025-21819 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Feb. 27, 2025 Action […]

CVE-2025-21820 – Xilinx tty UART Lock Deadlock Vulnerability

The following table lists the changes that have been made to the CVE-2025-21820 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Feb. 27, 2025 Action […]

CVE-2025-21818 – Xen Linux XenPVH Guest Register Clobber Vulnerability

The following table lists the changes that have been made to the CVE-2025-21818 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Feb. 27, 2025 Action […]

CVE-2025-21814 – Linux PTP NULL Pointer Dereference Vulnerability

The following table lists the changes that have been made to the CVE-2025-21814 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Feb. 27, 2025 Action […]

CVE-2025-21812 – Linux Kernel ax25 Lock Dependency Vulnerability

In the Linux kernel, the following vulnerability has been resolved: ax25: rcu protect dev->ax25_ptr syzbot found a lockdep issue [1]. We should remove ax25 RTNL dependency in ax25_setsockopt() This should also fix a variety of possible UAF in ax25. [1] WARNING: possible circular locking dependency detected 6.13.0-rc3-syzkaller-00762-g9268abe611b0 #0 Not tainted —————————————————— syz.5.1818/12806 is trying to […]

CVE-2025-21813 – Linux Kernel Timers Migration Off-By-One Root Connection Vulnerability

In the Linux kernel, the following vulnerability has been resolved: timers/migration: Fix off-by-one root mis-connection Before attaching a new root to the old root, the children counter of the new root is checked to verify that only the upcoming CPU’s top group have been connected to it. However since the recently added commit b729cc1ec21a (“timers/migration: […]

CVE-2025-21811 – “Nilfs2 Linux Kernel Use After Free Vulnerability”

In the Linux kernel, the following vulnerability has been resolved: nilfs2: protect access to buffers with no active references nilfs_lookup_dirty_data_buffers(), which iterates through the buffers attached to dirty data folios/pages, accesses the attached buffers without locking the folios/pages. For data cache, nilfs_clear_folio_dirty() may be called asynchronously when the file system degenerates to read only, so […]

CVE-2025-21810 – Linux Kernel Driver Core Class Wild Pointer Dereference Vulnerability

In the Linux kernel, the following vulnerability has been resolved: driver core: class: Fix wild pointer dereferences in API class_dev_iter_next() There are a potential wild pointer dereferences issue regarding APIs class_dev_iter_(init|next|exit)(), as explained by below typical usage: // All members of @iter are wild pointers. struct class_dev_iter iter; // class_dev_iter_init(@iter, @class, …) checks parameter @class […]

CVE-2025-22624 – FooGallery Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-22624 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 27, 2025 Action […]

CVE-2025-0767 – WordPress Activity Log Deserialization Vulnerability

CVE ID : CVE-2025-0767 Published : Feb. 27, 2025, 7:15 p.m. | 15 minutes ago Description : WP Activity Log 5.3.2 was found to be vulnerable. Unvalidated user input is used directly in an unserialize function in myapp/classes/Writers/class-csv-writer.php. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and […]