CVE-2025-38613 – Linux Kernel GPib Buffer Overflow
The following table lists the changes that have been made to the CVE-2025-38613 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Aug. 19, 2025 Action […]
CVE-2025-38612 – Linux Kernel Fbtft Framebuffer Memory Leak Vulnerability
The following table lists the changes that have been made to the CVE-2025-38612 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Aug. 19, 2025 Action […]
CVE-2025-38611 – Linux Kernel vmci Information Leak Vulnerability
In the Linux kernel, the following vulnerability has been resolved: vmci: Prevent the dispatching of uninitialized payloads The reproducer executes the host’s unlocked_ioctl call in two different tasks. When init_context fails, the struct vmci_event_ctx is not fully initialized when executing vmci_datagram_dispatch() to send events to all vm contexts. This affects the datagram taken from the […]
CVE-2025-38609 – Linux Kernel Null Pointer Dereference in devfreq Governor
The following table lists the changes that have been made to the CVE-2025-38609 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Aug. 19, 2025 Action […]
CVE-2025-38608 – Linux Kernel ktls Uninitialized Data Corruption
In the Linux kernel, the following vulnerability has been resolved: bpf, ktls: Fix data corruption when using bpf_msg_pop_data() in ktls When sending plaintext data, we initially calculated the corresponding ciphertext length. However, if we later reduced the plaintext data length via socket policy, we failed to recalculate the ciphertext length. This results in transmitting buffers […]
CVE-2025-38606 – Linux Kernel WiFi ath12k: Null Pointer Deref in Beacon Miss Handling
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Avoid accessing uninitialized arvif->ar during beacon miss During beacon miss handling, ath12k driver iterates over active virtual interfaces (vifs) and attempts to access the radio object (ar) via arvif->deflink->ar. However, after commit aa80f12f3bed (“wifi: ath12k: defer vdev creation for MLO”), arvif is linked […]
CVE-2025-38605 – “Qualcomm ath12k Wi-Fi Kernel Panic Vulnerability”
The following table lists the changes that have been made to the CVE-2025-38605 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Aug. 19, 2025 Action […]
CVE-2025-38604 – “RTL8187: Null Pointer Dereference in Wireless Driver”
The following table lists the changes that have been made to the CVE-2025-38604 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Aug. 19, 2025 Action […]
CVE-2025-38603 – AMDGPU Slab-Use-After-Free Vulnerability
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix slab-use-after-free in amdgpu_userq_mgr_fini+0x70c The issue was reproduced on NV10 using IGT pci_unplug test. It is expected that `amdgpu_driver_postclose_kms()` is called prior to `amdgpu_drm_release()`. However, the bug is that `amdgpu_fpriv` was freed in `amdgpu_driver_postclose_kms()`, and then later accessed in `amdgpu_drm_release()` via a call to […]
CVE-2025-38602 – “iwlwifi NULL Pointer Dereference Vulnerability”
The following table lists the changes that have been made to the CVE-2025-38602 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Aug. 19, 2025 Action […]