| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 4f51fb0d257ff4d406ec27966902de075e3b118e< 15b8a5b4cdc16e9a8bb2a548e12a0fd92997605a | affected |
ee62ce7a1d909ccba0399680a03c2dee83bcae95< f62934cea32c8f7b11b747975d69bf5afe4264cf | affected | ||
ee62ce7a1d909ccba0399680a03c2dee83bcae95< 95920c2ed02bde551ab654e9749c2ca7bc3100e0 | affected | ||
c30ae60f41f9edd6e1b5cad41cf28ce04dae39e4 | affected | ||
6.12.34< 6.12.54 | affected | ||
6.15.3< 6.16 | affected | ||
6.16 | affected | ||
< 6.16 | unaffected | ||
| … +3 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-40176 | 9.8 CRITICAL | tls: wait for pending async decryptions if tls_strp_msg_hold fails |
| CVE-2025-40140 | 8.8 HIGH | net: usb: Remove disruptive netif_wake_queue in rtl8150_set_multicast |
| CVE-2025-40204 | 8.1 HIGH | sctp: Fix MAC comparison to be constant-time |
| CVE-2025-40135 | 8.1 HIGH | ipv6: use RCU in ip6_xmit() |
| CVE-2025-40158 | 8.1 HIGH | ipv6: use RCU in ip6_output() |
| CVE-2025-40186 | 8.1 HIGH | tcp: Don't call reqsk_fastopen_remove() in tcp_conn_request(). |
| CVE-2025-40168 | 8.1 HIGH | smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). |
| CVE-2025-40133 | 8.1 HIGH | mptcp: Use __sk_dst_get() and dst_dev_rcu() in mptcp_active_enable(). |
| CVE-2025-40141 | 8.0 HIGH | Bluetooth: ISO: Fix possible UAF on iso_conn_free |
| CVE-2025-40198 | 7.8 HIGH | ext4: avoid potential buffer over-read in parse_apply_sb_mount_options() |
| CVE-2025-40172 | 7.8 HIGH | accel/qaic: Treat remaining == 0 as error in find_and_map_user_pages() |
| CVE-2025-40205 | 7.8 HIGH | btrfs: avoid potential out-of-bounds in btrfs_encode_fh() |
| CVE-2025-40203 | 7.8 HIGH | listmount: don't call path_put() under namespace semaphore |
| CVE-2025-40201 | 7.8 HIGH | kernel/sys.c: fix the racy usage of task_lock(tsk->group_leader) in sys_prlimit64() paths |
| CVE-2025-40165 | 7.8 HIGH | media: nxp: imx8-isi: m2m: Fix streaming cleanup on release |
| CVE-2025-40166 | 7.8 HIGH | drm/xe/guc: Check GuC running state before deregistering exec queue |
| CVE-2025-40167 | 7.8 HIGH | ext4: detect invalid INLINE_DATA + EXTENTS flag combination |
| CVE-2025-40159 | 7.8 HIGH | xsk: Harden userspace-supplied xdp_desc validation |
| CVE-2025-40151 | 7.8 HIGH | LoongArch: BPF: No support of struct argument in trampoline programs |
| CVE-2025-40149 | 7.8 HIGH | tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). |
Showing top 20 of 96 CVEs. View all on vendor page → →
No comments yet