| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 4981b82ba2ff87df6a711fcd7a233c615df5fc79< cd0cbf2713f6e027ebba867cb7409ae345a31312 | affected |
4981b82ba2ff87df6a711fcd7a233c615df5fc79< ab96f08ecedd263ecaab9df8455bfb23b07fdcc2 | affected | ||
4981b82ba2ff87df6a711fcd7a233c615df5fc79< 0aead8197fc1a85b0a89646e418feb49a564b029 | affected | ||
5.1 | affected | ||
< 5.1 | unaffected | ||
6.12.54≤ 6.12.* | unaffected | ||
6.17.4≤ 6.17.* | unaffected | ||
6.18≤ * | unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-40176 | 9.8 CRITICAL | tls: wait for pending async decryptions if tls_strp_msg_hold fails |
| CVE-2025-40140 | 8.8 HIGH | net: usb: Remove disruptive netif_wake_queue in rtl8150_set_multicast |
| CVE-2025-40133 | 8.1 HIGH | mptcp: Use __sk_dst_get() and dst_dev_rcu() in mptcp_active_enable(). |
| CVE-2025-40204 | 8.1 HIGH | sctp: Fix MAC comparison to be constant-time |
| CVE-2025-40168 | 8.1 HIGH | smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). |
| CVE-2025-40158 | 8.1 HIGH | ipv6: use RCU in ip6_output() |
| CVE-2025-40135 | 8.1 HIGH | ipv6: use RCU in ip6_xmit() |
| CVE-2025-40186 | 8.1 HIGH | tcp: Don't call reqsk_fastopen_remove() in tcp_conn_request(). |
| CVE-2025-40141 | 8.0 HIGH | Bluetooth: ISO: Fix possible UAF on iso_conn_free |
| CVE-2025-40167 | 7.8 HIGH | ext4: detect invalid INLINE_DATA + EXTENTS flag combination |
| CVE-2025-40159 | 7.8 HIGH | xsk: Harden userspace-supplied xdp_desc validation |
| CVE-2025-40166 | 7.8 HIGH | drm/xe/guc: Check GuC running state before deregistering exec queue |
| CVE-2025-40165 | 7.8 HIGH | media: nxp: imx8-isi: m2m: Fix streaming cleanup on release |
| CVE-2025-40151 | 7.8 HIGH | LoongArch: BPF: No support of struct argument in trampoline programs |
| CVE-2025-40149 | 7.8 HIGH | tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). |
| CVE-2025-40172 | 7.8 HIGH | accel/qaic: Treat remaining == 0 as error in find_and_map_user_pages() |
| CVE-2025-40169 | 7.8 HIGH | bpf: Reject negative offsets for ALU ops |
| CVE-2025-40201 | 7.8 HIGH | kernel/sys.c: fix the racy usage of task_lock(tsk->group_leader) in sys_prlimit64() paths |
| CVE-2025-40203 | 7.8 HIGH | listmount: don't call path_put() under namespace semaphore |
| CVE-2025-40205 | 7.8 HIGH | btrfs: avoid potential out-of-bounds in btrfs_encode_fh() |
Showing top 20 of 96 CVEs. View all on vendor page → →
No comments yet