CVE-2025-21973 – Here is the title: ASUS PRIME Z690-P D4 bnxt_en NULL Pointer Dereference Vulnerability
In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: fix kernel panic in the bnxt_get_queue_stats{rx | tx} When qstats-get operation is executed, callbacks of netdev_stats_ops are called. The bnxt_get_queue_stats{rx | tx} collect per-queue stats from sw_stats in the rings. But {rx | tx | cp}_ring are allocated when the interface is up. […]
CVE-2025-21972 – Linux Kernel MCTP Net Fragment Reassembly Vulnerability
The following table lists the changes that have been made to the CVE-2025-21972 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Apr. 01, 2025 Action […]
CVE-2025-21970 – “mlx5 Bridge LAG State Check Crash”
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Bridge, fix the crash caused by LAG state check When removing LAG device from bridge, NETDEV_CHANGEUPPER event is triggered. Driver finds the lower devices (PFs) to flush all the offloaded entries. And mlx5_lag_is_shared_fdb is checked, it returns false if one of PF is unloaded. […]
CVE-2025-21971 – “Linux Kernel net_sched TC_H_ROOT Class Creation Vulnerability”
In the Linux kernel, the following vulnerability has been resolved: net_sched: Prevent creation of classes with TC_H_ROOT The function qdisc_tree_reduce_backlog() uses TC_H_ROOT as a termination condition when traversing up the qdisc tree to update parent backlog counters. However, if a class is created with classid TC_H_ROOT, the traversal terminates prematurely at this class instead of […]
CVE-2025-21968 – AMD Display Slab-Use-After-Free Vulnerability
The following table lists the changes that have been made to the CVE-2025-21968 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Apr. 01, 2025 Action […]
CVE-2025-21969 – Android Bluetooth L2CAP Slab-Use-After-Free Vulnerability
The following table lists the changes that have been made to the CVE-2025-21969 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Apr. 01, 2025 Action […]
CVE-2025-21967 – Samba Linux Kernel Use-After-Free Vulnerability
The following table lists the changes that have been made to the CVE-2025-21967 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Apr. 01, 2025 Action […]
CVE-2025-21966 – Linux Kernel dm-flakey Memory Corruption Vulnerability
The following table lists the changes that have been made to the CVE-2025-21966 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Apr. 01, 2025 Action […]
VMware Aria Operations Vulnerability Exposes Systems to Privilege Escalation Attacks
VMware Aria Operations Vulnerability Exposes Systems to Privilege Escalation Attacks VMware has issued a critical security advisory (VMSA-2025-0006) addressing a high-severity local privilege escalation vulnerability (CVE-2025-22231) in its Aria Operations platform. The flaw, rated 7. … Read more Published Date: Apr 01, 2025 (1 hour, 15 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-22231
Attackers are targeting CrushFTP vulnerability with public PoC (CVE-2025-2825)
Attackers are targeting CrushFTP vulnerability with public PoC (CVE-2025-2825) Exploitation attempts targeting the CVE-2025-2825 vulnerability on internet-facing CrushFTP instances are happening, the Shadowserver Foundation has shared on Monday, and the attackers have been lever … Read more Published Date: Apr 01, 2025 (1 hour, 44 minutes ago) Vulnerabilities has been mentioned in this article.