Autore: Angelo Barbosa

CVE-2025-21631 | Linux Kernel up to 6.1.124/6.6.71/6.12.9/6.13-rc6 block bfq_split_bfqq use after free

A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.124/6.6.71/6.12.9/6.13-rc6. This issue affects the function bfq_split_bfqq of the component block. The manipulation leads to use after free. The identification of this vulnerability is CVE-2025-21631. The attack needs to be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21649 | Linux Kernel up to 6.12.9/6.13-rc6 hns3 null pointer dereference

A vulnerability classified as critical was found in Linux Kernel up to 6.12.9/6.13-rc6. This vulnerability affects unknown code of the component hns3. The manipulation leads to null pointer dereference. This vulnerability was named CVE-2025-21649. The attack can only be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21645 | Linux Kernel up to 6.6.71/6.12.9/6.13-rc6 pmc denial of service

A vulnerability classified as critical has been found in Linux Kernel up to 6.6.71/6.12.9/6.13-rc6. This affects an unknown part of the component pmc. The manipulation leads to denial of service. This vulnerability is uniquely identified as CVE-2025-21645. The attack can only be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21644 | Linux Kernel up to 6.12.9/6.13-rc6 drm xe_gt_tlb_invalidation_init null pointer dereference

A vulnerability was found in Linux Kernel up to 6.12.9/6.13-rc6. It has been rated as critical. Affected by this issue is the function xe_gt_tlb_invalidation_init of the component drm. The manipulation leads to null pointer dereference. This vulnerability is handled as CVE-2025-21644. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21642 | Linux Kernel up to 6.6.71/6.12.9/6.13-rc6 sysctl null pointer dereference

A vulnerability was found in Linux Kernel up to 6.6.71/6.12.9/6.13-rc6. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component sysctl. The manipulation leads to null pointer dereference. This vulnerability is known as CVE-2025-21642. Access to the local network is required for this attack to succeed. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più